|
Plagegeister aller Art und deren Bekämpfung: Egal wo ich hin klicke WerbungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.11.2014, 13:42 | #1 |
| Egal wo ich hin klicke Werbung Hallo Trojaner Board ich habe ein problem ich glaube ich habe einen virus auf meinem neuen Notebook. Und zwar Wenn ich z.b irgendwo ich nehme mal youtube was anklicken weill öffnen sich neue tabs ode gar ein ganz neuer browser mit z.b solchen sachen hxxp://de.reimageplus.com/lp/sys/index.php?tracking=revenuewire&banner=direct&adgroup=direct&ads_name=direct&keyword=direct Ich finde das ganz schön blöd auch wenn ich von dem textfeld hier auf z.b nen smiley oder leeres feld klicke öffnet sich wieder son teil das ist ganz schön blöd. Ich kann nichts mehr im browser anklicken ohne dass sich ein neuer tab oder neues fenster öffnet virenscanner kriegts auchnicht hin hilfe# es kam auch schon mcaffe store und eine fake version von java |
19.11.2014, 13:42 | #2 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke Werbung hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
19.11.2014, 13:43 | #3 |
| Egal wo ich hin klicke Werbung Und so manche wörter z.b neuen notebook oder bowser in meinem beitrag oben sind jetzt bei mir in caps geschrieben und ich kanns anklicken dann komme ich zu sowas neue notebook - Web Search Results
__________________ |
19.11.2014, 13:58 | #4 |
| Egal wo ich hin klicke Werbung Muss es als Archiv enhängen sonst zu viele zeichen. |
19.11.2014, 19:07 | #5 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke Werbung Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.11.2014, 15:25 | #6 |
| Egal wo ich hin klicke Werbung Ok Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-11-2014 Ran by Niklas at 2014-11-19 13:50:30 Running from C:\Users\Niklas\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Norton AntiVirus (Disabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB} AS: Norton AntiVirus (Enabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Benutzerhandbuch (x32 Version: 1.0.0.17 - Lenovo) Hidden Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Click Caption 1.10.0.2 (HKLM-x32\...\ClickCaption_1.10.0.2) (Version: 1.10.0.2 - ClickCaption) <==== ATTENTION Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.3.53 - Conexant) Craften Terminal 4.0.2 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 4.0.2 - Craften.de) Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.3.2.2 - Dolby Laboratories Inc) Elsword (HKLM-x32\...\Elsword_de_is1) (Version: - ) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.14 - Lenovo) Energy Management (x32 Version: 8.0.2.14 - Lenovo) Hidden Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North) IncrediMail (x32 Version: 6.6.0.5288 - IncrediMail) Hidden IncrediMail 2.5 (HKLM-x32\...\IncrediMail) (Version: 6.6.0.5288 - IncrediMail Ltd.) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1327.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0362 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) LCPD First Response (HKLM-x32\...\LCPD First Response) (Version: 1.0.0.0b - G17 Media) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.7850 - Broadcom Corporation) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10240 - Realtek Semiconductor Corp.) Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.143 - Lenovo) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 (HKLM-x32\...\{1f407217-9aec-4146-8504-e64ac959c534}) (Version: 12.0.20617.1 - Microsoft Corporation) MultIV (HKLM-x32\...\{A30833E0-EC35-4DE7-96CD-AFF4FB5976EA}) (Version: 0.2.0 - MultIV Development Team) NetController (web controller) (HKLM-x32\...\NetController) (Version: 3.0.0.7 - Inquiro SA) Norton AntiVirus (HKLM-x32\...\NAV) (Version: 21.6.0.32 - Symantec Corporation) Norton Identity Safe (HKLM-x32\...\NST) (Version: 2014.6.0.27 - Symantec Corporation) Photo Notifier and Animation Creator (HKLM-x32\...\Photo Notifier and Animation Creator) (Version: 1.0.0.1009 - IncrediMail Ltd.) Photo Notifier and Animation Creator (x32 Version: 1.0.0.1009 - Ihr Firmenname) Hidden Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39048 - Realtek Semiconductor Corp.) Software (web controller) (HKLM-x32\...\Software) (Version: 3.0.0.7 - Inquiro SA) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated) TeamSpeak 3 Client (HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.17 - Lenovo) Windows-Treiberpaket - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo) Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo) WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 14-11-2014 18:03:56 Geplanter Prüfpunkt 15-11-2014 19:23:08 DirectX wurde installiert 18-11-2014 16:05:24 Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 18-11-2014 16:05:49 Installed MultIV ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-06-16 04:17 - 2013-06-16 04:17 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0B80546C-59D5-437B-BD68-BB1CBDC71A8E} - System32\Tasks\Norton AntiVirus\Norton Error Processor => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {3E875574-86C8-4CC6-9439-14E00B1BD6E1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.) Task: {5374B6E8-6A1E-4878-B30A-2DA35663641B} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {58135C79-42C7-448D-8BE1-A4E7C1068EF8} - System32\Tasks\Microsoft\Windows\AppReadiness\TriggerTask Task: {946AFE7D-2F1C-4E74-B550-0BDD041C20D0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.) Task: {C37E67A0-C232-4AF2-B603-441826AE6B44} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\WSCStub.exe [2014-09-21] (Symantec Corporation) Task: {CA9747FF-6FA7-4B1B-B03A-718903C7191C} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {F5C6A89E-D21C-46A7-A682-847A036B9910} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\SymErr.exe [2014-01-30] (Symantec Corporation) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-04 19:13 - 2013-09-04 19:13 - 00049368 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll 2014-10-16 09:23 - 2014-10-16 09:23 - 00187168 _____ () C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe 2014-10-16 09:23 - 2014-10-29 18:26 - 00795424 _____ () C:\Users\Niklas\AppData\Roaming\NetController\netcontroller.exe 2014-02-28 10:14 - 2014-02-28 10:14 - 00173568 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\quazip.dll 2014-02-27 15:51 - 2014-02-27 15:51 - 01080832 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\platforms\qwindows.dll 2014-02-27 15:51 - 2014-02-27 15:51 - 00833024 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2014-08-04 14:43 - 2014-08-04 14:43 - 00102344 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2014-08-04 14:43 - 2014-08-04 14:43 - 00108488 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-02-27 15:51 - 2014-02-27 15:51 - 00030208 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\imageformats\qgif.dll 2014-02-27 15:51 - 2014-02-27 15:51 - 00233984 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\imageformats\qjpeg.dll 2014-08-04 14:46 - 2014-08-04 14:46 - 00563656 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2014-08-04 14:46 - 2014-08-04 14:46 - 00579016 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-02-27 15:51 - 2014-02-27 15:51 - 00159232 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-10-22 18:59 - 2014-10-22 18:59 - 00363520 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\bcb97267f7a1fa3f3cbb7a6e70523162\Windows.Foundation.ni.dll 2014-10-22 20:11 - 2013-08-08 12:23 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-10-22 21:06 - 2014-10-22 21:06 - 00272808 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImLookExU.dll 2014-10-22 21:06 - 2014-10-22 21:06 - 00033128 _____ () C:\Program Files (x86)\IncrediMail\Bin\IMHttpComm.dll 2014-10-22 21:06 - 2014-10-22 21:06 - 00072104 _____ () C:\Program Files (x86)\IncrediMail\Bin\wlessfp1.dll 2013-10-01 14:02 - 2013-10-01 14:02 - 00108888 _____ () C:\Program Files (x86)\IncrediMail\Bin\pmc.dll 2014-10-22 21:06 - 2014-10-22 21:06 - 00133544 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImComUtlU.dll 2014-10-22 21:06 - 2014-10-22 21:06 - 00080296 _____ () C:\Program Files (x86)\IncrediMail\bin\ImAppRU.dll 2014-10-29 18:35 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll 2014-10-29 18:35 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 01171456 _____ () D:\Steam\libavcodec-56.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00332800 _____ () D:\Steam\libavresample-2.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00442368 _____ () D:\Steam\libavutil-54.dll 2014-11-13 14:34 - 2014-11-11 19:47 - 00774656 _____ () D:\Steam\SDL2.dll 2014-11-13 14:34 - 2014-11-12 02:04 - 02227904 _____ () D:\Steam\video.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00403968 _____ () D:\Steam\libavformat-56.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00485888 _____ () D:\Steam\libswscale-3.dll 2014-11-13 14:34 - 2014-11-12 02:04 - 00690880 _____ () D:\Steam\bin\chromehtml.DLL 2014-10-29 18:35 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll 2014-10-29 18:35 - 2014-10-22 05:05 - 14902600 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 34589888 _____ () D:\Steam\bin\libcef.dll 2014-10-29 18:35 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3923384574-3896416257-2954023665-500 - Administrator - Disabled) Gast (S-1-5-21-3923384574-3896416257-2954023665-501 - Limited - Disabled) Niklas (S-1-5-21-3923384574-3896416257-2954023665-1001 - Administrator - Enabled) => C:\Users\Niklas ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/18/2014 05:14:47 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm IncMail.exe, Version 6.6.0.5288 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 39c Startzeit: 01d0033ed98d6bdb Endzeit: 4294967295 Anwendungspfad: C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe Berichts-ID: 03460780-6f3e-11e4-9b33-142d27f3a596 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/16/2014 08:57:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: hl2.exe, Version: 0.0.0.0, Zeitstempel: 0x53948b55 Name des fehlerhaften Moduls: client.dll, Version: 1.0.0.1, Zeitstempel: 0x53bf14c7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0015acaa ID des fehlerhaften Prozesses: 0x2da4 Startzeit der fehlerhaften Anwendung: 0xhl2.exe0 Pfad der fehlerhaften Anwendung: hl2.exe1 Pfad des fehlerhaften Moduls: hl2.exe2 Berichtskennung: hl2.exe3 Vollständiger Name des fehlerhaften Pakets: hl2.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: hl2.exe5 Error: (11/16/2014 04:32:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTAIV.exe, Version: 1.0.7.0, Zeitstempel: 0x4bd9efbe Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf91f Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e341c ID des fehlerhaften Prozesses: 0x1db8 Startzeit der fehlerhaften Anwendung: 0xGTAIV.exe0 Pfad der fehlerhaften Anwendung: GTAIV.exe1 Pfad des fehlerhaften Moduls: GTAIV.exe2 Berichtskennung: GTAIV.exe3 Vollständiger Name des fehlerhaften Pakets: GTAIV.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GTAIV.exe5 Error: (11/16/2014 00:45:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm IncMail.exe, Version 6.6.0.5288 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: f1c Startzeit: 01d00192c47439dd Endzeit: 4294967295 Anwendungspfad: C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe Berichts-ID: 135e0446-6d86-11e4-9b33-142d27f3a596 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/15/2014 10:58:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: hl2.exe, Version: 0.0.0.0, Zeitstempel: 0x53948b55 Name des fehlerhaften Moduls: client.dll, Version: 1.0.0.1, Zeitstempel: 0x53bf14c7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0015acaa ID des fehlerhaften Prozesses: 0xba4 Startzeit der fehlerhaften Anwendung: 0xhl2.exe0 Pfad der fehlerhaften Anwendung: hl2.exe1 Pfad des fehlerhaften Moduls: hl2.exe2 Berichtskennung: hl2.exe3 Vollständiger Name des fehlerhaften Pakets: hl2.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: hl2.exe5 Error: (11/15/2014 08:47:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GFWLClient.exe, Version: 3.5.67.0, Zeitstempel: 0x52178fb2 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf867 Ausnahmecode: 0xc000041d Fehleroffset: 0x00013f29 ID des fehlerhaften Prozesses: 0x183c Startzeit der fehlerhaften Anwendung: 0xGFWLClient.exe0 Pfad der fehlerhaften Anwendung: GFWLClient.exe1 Pfad des fehlerhaften Moduls: GFWLClient.exe2 Berichtskennung: GFWLClient.exe3 Vollständiger Name des fehlerhaften Pakets: GFWLClient.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GFWLClient.exe5 Error: (11/15/2014 08:46:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GFWLClient.exe, Version: 3.5.67.0, Zeitstempel: 0x52178fb2 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf867 Ausnahmecode: 0xe0434352 Fehleroffset: 0x00013f29 ID des fehlerhaften Prozesses: 0x183c Startzeit der fehlerhaften Anwendung: 0xGFWLClient.exe0 Pfad der fehlerhaften Anwendung: GFWLClient.exe1 Pfad des fehlerhaften Moduls: GFWLClient.exe2 Berichtskennung: GFWLClient.exe3 Vollständiger Name des fehlerhaften Pakets: GFWLClient.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GFWLClient.exe5 Error: (11/15/2014 08:46:59 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: GFWLClient.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.InvalidCastException Stapel: bei System.StubHelpers.StubHelpers.GetCOMIPFromRCW(System.Object, IntPtr, IntPtr ByRef, Boolean ByRef) bei Microsoft.Net.BITS.Interop.BackgroundCopyManager2_0Class.EnumJobs(UInt32, Microsoft.Net.BITS.Interop.IEnumBackgroundCopyJobs ByRef) bei Microsoft.Net.BITS.BackgroundCopyJobCollection.GetEnumerator() bei System.Linq.Enumerable+<CastIterator>d__b1`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].MoveNext() bei System.Linq.Buffer`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]..ctor(System.Collections.Generic.IEnumerable`1<System.__Canon>) bei System.Linq.Enumerable.ToArray[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.Collections.Generic.IEnumerable`1<System.__Canon>) bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.FormatDownloadJobs() bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.WriteDownloadAndPackageState(Microsoft.GamesForWindows.XLiveServices.Logger.ClientTask, Microsoft.GamesForWindows.XLiveServices.Logger.ClientSeverity, System.String) bei Microsoft.GamesForWindows.XLiveServices.ContentManagement.DownloadManager.Shutdown() bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Dispose(Boolean) bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Shutdown() bei Microsoft.GamesForWindows.LiveClient.App.HandleExit() bei Microsoft.GamesForWindows.LiveClient.App.OnSessionEnding(System.Windows.SessionEndingCancelEventArgs) bei System.Windows.Application.WmQueryEndSession(IntPtr, IntPtr ByRef) bei System.Windows.Application.AppFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32) bei MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32) bei System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Microsoft.GamesForWindows.LiveClient.App.Main() Error: (11/15/2014 08:23:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/15/2014 08:22:34 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". System errors: ============= Error: (11/18/2014 03:18:06 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook) Description: {AB807329-7324-431B-8B36-DBD581F56E0B} Error: (11/18/2014 03:17:29 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook) Description: {AB807329-7324-431B-8B36-DBD581F56E0B} Error: (11/17/2014 08:31:25 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook) Description: {AB807329-7324-431B-8B36-DBD581F56E0B} Error: (11/17/2014 08:30:54 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook) Description: {AB807329-7324-431B-8B36-DBD581F56E0B} Error: (11/17/2014 05:29:06 PM) (Source: Ntfs) (EventID: 55) (User: NT-AUTORITÄT) Description: In der Dateisystemstruktur auf Volume "??" wurde eine Beschädigung erkannt. Die Masterdateitabelle (MFT) beinhaltet einen beschädigten Dateidatensatz. Die Dateireferenznummer ist 0x1f00000001b613. Der Name der Datei ist "<Dateiname kann nicht bestimmt werden>". Error: (11/17/2014 05:24:45 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung vom Remoteendpunkt empfangen. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Error: (11/16/2014 08:58:02 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (11/16/2014 00:44:40 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\System32\bcmihvsrv64.dll Fehlercode: 126 Error: (11/16/2014 00:44:40 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 16.11.2014 um 12:42:25 unerwartet heruntergefahren. Error: (11/16/2014 00:44:05 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT-AUTORITÄT) Description: 32212256844771296350106296 Microsoft Office Sessions: ========================= Error: (11/18/2014 05:14:47 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IncMail.exe6.6.0.528839c01d0033ed98d6bdb4294967295C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe03460780-6f3e-11e4-9b33-142d27f3a596 Error: (11/16/2014 08:57:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: hl2.exe0.0.0.053948b55client.dll1.0.0.153bf14c7c00000050015acaa2da401d001d5ffbef137D:\Steam\steamapps\common\GarrysMod\hl2.exed:\steam\steamapps\common\garrysmod\garrysmod\bin\client.dlld797e393-6dca-11e4-9b33-142d27f3a596 Error: (11/16/2014 04:32:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: GTAIV.exe1.0.7.04bd9efbentdll.dll6.3.9431.051bcf91fc0000374000e341c1db801d001aebd625005D:\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\GTAIV.exeC:\Windows\SYSTEM32\ntdll.dlld2de17bd-6da5-11e4-9b33-142d27f3a596 Error: (11/16/2014 00:45:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IncMail.exe6.6.0.5288f1c01d00192c47439dd4294967295C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe135e0446-6d86-11e4-9b33-142d27f3a596 Error: (11/15/2014 10:58:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: hl2.exe0.0.0.053948b55client.dll1.0.0.153bf14c7c00000050015acaaba401d001121b4e24edD:\Steam\steamapps\common\GarrysMod\hl2.exed:\steam\steamapps\common\garrysmod\garrysmod\bin\client.dll863a2d85-6d12-11e4-9b32-142d27f3a596 Error: (11/15/2014 08:47:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: GFWLClient.exe3.5.67.052178fb2KERNELBASE.dll6.3.9431.051bcf867c000041d00013f29183c01d0010b28bc2896C:\Program Files (x86)\Microsoft Games for Windows - LIVE\Client\GFWLClient.exeC:\Windows\SYSTEM32\KERNELBASE.dll2ba0bd07-6d00-11e4-9b32-142d27f3a596 Error: (11/15/2014 08:46:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: GFWLClient.exe3.5.67.052178fb2KERNELBASE.dll6.3.9431.051bcf867e043435200013f29183c01d0010b28bc2896C:\Program Files (x86)\Microsoft Games for Windows - LIVE\Client\GFWLClient.exeC:\Windows\SYSTEM32\KERNELBASE.dll28f35fd1-6d00-11e4-9b32-142d27f3a596 Error: (11/15/2014 08:46:59 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: GFWLClient.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.InvalidCastException Stapel: bei System.StubHelpers.StubHelpers.GetCOMIPFromRCW(System.Object, IntPtr, IntPtr ByRef, Boolean ByRef) bei Microsoft.Net.BITS.Interop.BackgroundCopyManager2_0Class.EnumJobs(UInt32, Microsoft.Net.BITS.Interop.IEnumBackgroundCopyJobs ByRef) bei Microsoft.Net.BITS.BackgroundCopyJobCollection.GetEnumerator() bei System.Linq.Enumerable+<CastIterator>d__b1`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].MoveNext() bei System.Linq.Buffer`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]..ctor(System.Collections.Generic.IEnumerable`1<System.__Canon>) bei System.Linq.Enumerable.ToArray[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.Collections.Generic.IEnumerable`1<System.__Canon>) bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.FormatDownloadJobs() bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.WriteDownloadAndPackageState(Microsoft.GamesForWindows.XLiveServices.Logger.ClientTask, Microsoft.GamesForWindows.XLiveServices.Logger.ClientSeverity, System.String) bei Microsoft.GamesForWindows.XLiveServices.ContentManagement.DownloadManager.Shutdown() bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Dispose(Boolean) bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Shutdown() bei Microsoft.GamesForWindows.LiveClient.App.HandleExit() bei Microsoft.GamesForWindows.LiveClient.App.OnSessionEnding(System.Windows.SessionEndingCancelEventArgs) bei System.Windows.Application.WmQueryEndSession(IntPtr, IntPtr ByRef) bei System.Windows.Application.AppFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32) bei MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32) bei System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Microsoft.GamesForWindows.LiveClient.App.Main() Error: (11/15/2014 08:23:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert Error: (11/15/2014 08:22:34 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\IncrediMail\Bin\MFC80U.DLL ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage of memory in use: 43% Total physical RAM: 8092.85 MB Available physical RAM: 4586.98 MB Total Pagefile: 16284.85 MB Available Pagefile: 12770.95 MB Total Virtual: 131072 MB Available Virtual: 131071.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.66 GB) (Free:56.78 GB) NTFS Drive d: (Daten) (Fixed) (Total:367.13 GB) (Free:306.99 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9FA2484) Partition 1: (Active) - (Size=1000 MB) - (Type=0B) Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=367.1 GB) - (Type=07 NTFS)A ==================== End Of Log ============================ |
21.11.2014, 13:00 | #7 |
| Egal wo ich hin klicke Werbung FRST FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-11-2014 Ran by Niklas (administrator) on NIKLASNOTEBOOK on 19-11-2014 13:47:55 Running from C:\Users\Niklas\Downloads Loaded Profile: Niklas (Available profiles: Niklas) Platform: Windows 8.1 Pro Preview (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe () C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ClickCaption) C:\Program Files (x86)\ClickCaption_1.10.0.2\Service\ccsvc.exe (AMD) C:\Windows\System32\atieclxx.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe () C:\Users\Niklas\AppData\Roaming\NetController\netcontroller.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (TeamSpeak Systems GmbH) D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek semiconductor) C:\Windows\RTFTrack.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IncrediMail, Ltd.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (IncrediMail, Ltd.) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Valve Corporation) D:\Steam\Steam.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Valve Corporation) D:\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Niklas\Downloads\FRST64 (1).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-24] (Conexant Systems, Inc.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-10-22] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-10-22] (Lenovo(beijing) Limited) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Run: [IncrediMail] => C:\Program Files (x86)\IncrediMail\bin\IncMail.exe [444840 2014-10-22] (IncrediMail, Ltd.) HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Policies\system: [EnableLUA] 0 HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Policies\Explorer: [NofolderOptions] 0 Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x1C675895D6FACF01 HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE BHO: ClickCaption -> {A18EA34C-6D33-4298-8A54-7F16499904C0} -> C:\Program Files\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll (ClickCaption) BHO: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\coIEPlg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation) BHO-x32: ClickCaption -> {A18EA34C-6D33-4298-8A54-7F16499904C0} -> C:\Program Files (x86)\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll (ClickCaption) BHO-x32: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\coIEPlg.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\coIEPlg.dll (Symantec Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF [2014-10-23] FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn [2014-11-16] Chrome: ======= CHR Profile: C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-22] CHR Extension: (Google Docs) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-22] CHR Extension: (Google Drive) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-22] CHR Extension: (YouTube) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-22] CHR Extension: (Google-Suche) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-22] CHR Extension: (Google Tabellen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-22] CHR Extension: (Google Wallet) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-22] CHR Extension: (Norton Security Toolbar) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob [2014-10-24] CHR Extension: (Google Mail) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-22] CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\Exts\Chrome.crx [2014-10-30] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.) R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-04] (Broadcom Corporation.) R2 ccsvc_1.10.0.2; C:\Program Files (x86)\ClickCaption_1.10.0.2\Service\ccsvc.exe [277584 2014-10-30] (ClickCaption) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-08-02] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\NAV.exe [262968 2014-09-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe [129424 2013-10-06] (Symantec Corporation) R2 NetControllerService; C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe [187168 2014-10-16] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [345336 2013-06-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-06-16] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.) R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation) R1 BHDrvx64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\BASHDefs\20141107.001\BHDrvx64.sys [1587416 2014-10-16] (Symantec Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [225792 2013-06-16] (Microsoft Corporation) R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132920 2013-04-23] (Motorola Solutions, Inc.) R1 ccnfd_1_10_0_2; C:\Windows\System32\drivers\ccnfd_1_10_0_2.sys [58232 2014-10-30] (ClickCaption) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1506000.020\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DE06000.01B\ccSetx64.sys [162392 2013-09-27] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-10-23] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-10-23] (Symantec Corporation) R1 IDSVia64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\IPSDefs\20141118.003\IDSvia64.sys [637656 2014-11-18] (Symantec Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 NAVENG; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20141118.035\ENG64.SYS [129752 2014-10-23] (Symantec Corporation) R3 NAVEX15; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20141118.035\EX64.SYS [2137304 2014-10-23] (Symantec Corporation) R1 ncdevice; C:\Windows\system32\DRIVERS\ncdevice.sys [41248 2014-05-22] (NT Kernel Resources) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated) R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1506000.020\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1506000.020\SymELAM.sys [23568 2013-09-10] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-10-23] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [126216 2013-06-16] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-19 13:47 - 2014-11-19 13:48 - 00000000 ____D () C:\FRST 2014-11-19 13:47 - 2014-11-19 13:47 - 00018195 _____ () C:\Users\Niklas\Downloads\FRST.txt 2014-11-19 13:46 - 2014-11-19 13:46 - 02117120 _____ (Farbar) C:\Users\Niklas\Downloads\frst64.exe 2014-11-19 13:46 - 2014-11-19 13:46 - 02117120 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64 (1).exe 2014-11-19 13:44 - 2014-11-19 13:45 - 00717808 _____ ( ) C:\Users\Niklas\Downloads\IDM2-Win-EN.exe 2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip 2014-11-18 17:12 - 2014-08-11 18:28 - 00007168 _____ () C:\Users\Niklas\Desktop\Robbery.net.dll 2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip 2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip 2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\MultIV 2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultIV 2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\ProgramData\Caphyon 2014-11-18 17:04 - 2014-11-18 17:06 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\MultIV Development Team 2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe 2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar 2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe 2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Sparta 2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Program Files\ClickCaption_1.10.0.2 2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Program Files (x86)\ClickCaption_1.10.0.2 2014-11-17 19:38 - 2014-11-17 19:38 - 00762160 _____ ( ) C:\Users\Niklas\Downloads\autotune_Mv_DM.exe 2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar 2014-11-16 13:24 - 2014-11-17 19:57 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml 2014-11-16 13:23 - 2014-11-16 13:23 - 00110256 _____ () C:\Users\Niklas\Downloads\Tutorial (1).rar 2014-11-16 13:23 - 2014-01-02 22:03 - 00000717 _____ () C:\Users\Niklas\Desktop\README.txt 2014-11-16 13:23 - 2013-12-07 16:49 - 00015872 _____ () C:\Users\Niklas\Desktop\Alexander.dll 2014-11-16 13:23 - 2013-07-28 11:21 - 00103282 _____ () C:\Users\Niklas\Desktop\ttt3.lua 2014-11-16 13:23 - 2012-10-20 14:28 - 00187392 _____ (master131) C:\Users\Niklas\Desktop\Extreme Injector.exe 2014-11-16 13:19 - 2014-11-16 13:19 - 00412791 _____ () C:\Users\Niklas\Downloads\GMOD Hack Pack (1).rar 2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC 2014-11-16 13:15 - 2014-11-16 13:18 - 00412775 _____ () C:\Users\Niklas\Downloads\GMOD Hack Pack.rar 2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe 2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe 2014-11-16 12:09 - 2014-11-16 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LCPD First Response 2014-11-16 12:01 - 2014-11-16 12:05 - 24341200 _____ () C:\Users\Niklas\Downloads\1. LCPD First Response 1.0c Automatic Install.zip 2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games 2014-11-15 20:42 - 2014-11-15 20:42 - 00000000 __SHD () C:\ProgramData\SecuROM 2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos 2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe 2014-11-15 20:25 - 2014-11-15 20:42 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Rockstar Games 2014-11-15 20:24 - 2014-11-15 20:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-11-15 20:24 - 2014-11-15 20:24 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll 2014-11-15 20:24 - 2014-11-15 20:24 - 00000000 __RHD () C:\Users\Niklas\AppData\Roaming\SecuROM 2014-11-15 20:24 - 2014-11-15 20:24 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip 2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip 2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup 2014-11-14 18:48 - 2014-11-14 18:56 - 00000000 ____D () C:\Users\Niklas\AppData\Local\GVSE 2014-11-14 18:48 - 2014-11-14 18:48 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe 2014-11-14 18:46 - 2014-11-14 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Spoon 2014-11-13 19:53 - 2014-11-13 19:53 - 00110256 _____ () C:\Users\Niklas\Downloads\Tutorial.rar 2014-11-12 15:30 - 2014-11-13 18:22 - 00000000 ____D () C:\Users\Niklas\Desktop\Gmodhack 2014-11-12 15:30 - 2014-11-12 15:30 - 00468453 _____ () C:\Users\Niklas\Downloads\New Gmod Hack with Bypass 2014.rar 2014-11-07 15:34 - 2014-11-07 15:34 - 00000903 _____ () C:\Users\Public\Desktop\Elsword.lnk 2014-11-07 15:34 - 2014-11-07 15:34 - 00000787 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk 2014-11-07 15:34 - 2014-11-07 15:34 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Gameforge4d 2014-11-07 15:34 - 2014-11-07 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe 2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe 2014-11-06 22:06 - 2014-11-06 22:06 - 797623184 _____ () C:\Windows\MEMORY.DMP 2014-11-06 22:06 - 2014-11-06 22:06 - 00281176 _____ () C:\Windows\Minidump\110614-16078-01.dmp 2014-11-06 22:06 - 2014-11-06 22:06 - 00000000 ____D () C:\Windows\Minidump 2014-11-06 01:44 - 2014-11-06 01:44 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live 2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe 2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games 2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\AppData\Local\CDWLauncher 2014-11-05 23:37 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-11-05 23:37 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-11-05 23:37 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-11-05 23:37 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-11-05 23:37 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-11-05 23:37 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-11-05 23:37 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-11-05 23:37 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-11-05 23:37 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-11-05 23:37 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-11-05 23:37 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-11-05 23:37 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-11-05 23:37 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-11-05 23:37 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-11-05 23:37 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-11-05 23:37 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-11-05 23:37 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-11-05 23:37 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-11-05 23:37 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-11-05 23:37 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-11-05 23:37 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-11-05 23:37 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-11-05 23:37 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-11-05 23:37 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-11-05 23:37 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-11-05 23:37 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-11-05 23:37 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-11-05 23:37 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-11-05 23:37 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-11-05 23:37 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-11-05 23:37 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-11-05 23:37 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-11-05 23:37 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-11-05 23:37 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-11-05 23:37 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-11-05 23:37 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-11-05 23:37 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-11-05 23:37 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-11-05 23:37 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-11-05 23:37 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-11-05 23:37 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-11-05 23:37 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-11-05 23:37 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-11-05 23:37 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-11-05 23:37 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-11-05 23:37 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-11-05 23:37 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-11-05 23:37 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-11-05 23:37 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-11-05 23:37 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-11-05 23:37 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-11-05 23:37 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-11-05 23:37 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-11-05 23:37 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-11-05 23:37 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-11-05 23:37 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-11-05 23:37 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-11-05 23:37 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-11-05 23:37 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-11-05 23:37 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-11-05 23:37 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-11-05 23:37 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-11-05 23:37 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-11-05 23:37 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-11-05 23:37 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-11-05 23:37 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-11-05 23:37 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-11-05 23:37 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-11-05 23:37 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-11-05 23:37 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-11-05 23:37 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-11-05 23:37 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-11-05 23:37 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-11-05 23:37 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-11-05 23:37 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-11-05 23:37 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-11-05 23:37 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-11-05 23:37 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-11-05 23:37 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-11-05 23:37 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-11-05 23:37 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-11-05 23:37 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-11-05 23:37 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-11-05 23:37 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-11-05 23:37 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-11-05 23:37 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-11-05 23:37 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-11-05 23:37 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-11-05 23:37 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-11-05 23:37 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-11-05 23:37 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-11-05 23:37 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-11-05 23:37 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-11-05 23:37 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-11-05 23:37 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-11-05 23:37 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-11-05 23:37 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-11-05 23:37 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-11-05 23:37 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-11-05 23:37 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-11-05 23:37 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-11-05 23:37 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-11-05 23:37 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-11-05 23:37 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-11-05 23:37 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-11-05 23:37 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-11-05 23:37 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-11-05 23:37 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-11-05 23:37 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-11-05 23:37 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-11-05 23:37 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-11-05 23:37 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-11-05 23:37 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-11-05 23:37 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-11-05 23:37 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-11-05 22:54 - 2014-11-14 21:45 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Craften Terminal 2014-11-05 22:54 - 2014-11-05 22:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Craften Terminal 2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe 2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar 2014-11-05 19:39 - 2014-11-05 19:39 - 00000000 ____D () C:\ProgramData\ATI 2014-11-05 19:38 - 2014-11-05 19:38 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201411051938170284.log 2014-11-05 19:38 - 2014-11-05 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-11-05 19:38 - 2014-11-05 19:38 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Program Files\AMD 2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-11-05 19:35 - 2014-11-05 19:35 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-11-05 19:31 - 2014-11-05 19:31 - 00066294 _____ () C:\Windows\SysWOW64\CCCInstall_201411051931020738.log 2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD 2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip 2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe 2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe 2014-11-05 16:30 - 2014-11-05 16:30 - 00001105 _____ () C:\Users\Niklas\Desktop\TeamSpeak 3 Client.lnk 2014-11-05 16:30 - 2014-11-05 16:30 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2014-10-30 22:39 - 2014-10-30 22:39 - 00058232 _____ (ClickCaption) C:\Windows\system32\Drivers\ccnfd_1_10_0_2.sys 2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft 32x MC18.zip 2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip 2014-10-24 20:26 - 2014-10-24 20:26 - 00323592 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-10-24 12:57 - 2014-10-24 12:57 - 00000000 ____D () C:\Windows\System32\Tasks\Norton AntiVirus 2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe 2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe 2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe 2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe 2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip 2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe 2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe 2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames 2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband 2014-10-24 11:21 - 2014-10-24 11:24 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Mount&Blade Warband 2014-10-24 11:05 - 2014-10-24 11:05 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Identity Safe 2014-10-24 09:58 - 2014-11-16 20:57 - 00000000 ____D () C:\Users\Niklas\AppData\Local\CrashDumps 2014-10-23 21:47 - 2014-10-30 11:32 - 00000000 ____D () C:\Windows\system32\Drivers\NSTx64 2014-10-23 21:47 - 2014-10-24 12:49 - 00003218 _____ () C:\Windows\System32\Tasks\Norton WSC Integration 2014-10-23 21:47 - 2014-10-24 12:49 - 00002417 _____ () C:\Users\Public\Desktop\Norton AntiVirus.lnk 2014-10-23 21:47 - 2014-10-23 21:47 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2014-10-23 21:47 - 2014-10-23 21:47 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\NCOTEMP 2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Identity Safe 2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\Program Files (x86)\Norton Identity Safe 2014-10-23 21:46 - 2014-10-24 12:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus 2014-10-23 21:46 - 2014-10-24 12:49 - 00000000 ____D () C:\Windows\system32\Drivers\NAVx64 2014-10-23 21:46 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\Norton 2014-10-23 21:46 - 2014-10-23 21:46 - 00000000 ____D () C:\Program Files (x86)\Norton AntiVirus 2014-10-23 21:36 - 2014-10-23 21:40 - 221119464 ____N (Symantec Corporation) C:\Users\Niklas\Downloads\NAV-TW-21.1.0-GE.exe 2014-10-23 21:22 - 2014-10-23 21:22 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files 2014-10-23 21:18 - 2014-10-23 21:20 - 202853696 _____ () C:\Users\Niklas\Downloads\kav15.0.1.415de_6845.exe 2014-10-23 17:42 - 2013-08-08 04:39 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-10-23 17:42 - 2013-08-08 04:36 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-10-23 15:29 - 2014-11-18 16:44 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\.minecraft 2014-10-23 15:29 - 2014-10-23 15:29 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\java 2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\ProgramData\Sun 2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-10-23 15:28 - 2014-10-23 15:28 - 00000000 ____D () C:\ProgramData\Oracle 2014-10-23 15:28 - 2014-10-23 15:28 - 00000000 ____D () C:\Program Files (x86)\Java 2014-10-23 15:27 - 2014-10-23 15:27 - 00675988 _____ () C:\Users\Niklas\Downloads\Minecraft.exe 2014-10-23 15:27 - 2014-10-23 15:27 - 00638888 _____ (Oracle Corporation) C:\Users\Niklas\Downloads\chromeinstall-8u25.exe 2014-10-23 01:56 - 2014-10-23 01:56 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Intel_Corporation 2014-10-22 23:36 - 2010-05-26 10:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-10-22 23:36 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-10-22 23:35 - 2014-11-15 20:23 - 00044519 _____ () C:\Windows\DirectX.log 2014-10-22 23:32 - 2014-10-22 23:36 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-10-22 23:32 - 2014-10-22 23:32 - 00292184 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dxwebsetup.exe 2014-10-22 23:30 - 2014-10-22 23:30 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\WinRAR 2014-10-22 23:29 - 2014-10-22 23:29 - 02034552 _____ () C:\Users\Niklas\Downloads\winrar-x64-511d.exe 2014-10-22 23:29 - 2014-10-22 23:29 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-10-22 23:29 - 2014-10-22 23:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-10-22 22:57 - 2014-10-22 22:57 - 691624892 _____ () C:\Users\Niklas\Downloads\CSS Content Addon (Jul2014).rar 2014-10-22 22:57 - 2013-09-02 09:05 - 05823008 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2014-10-22 22:57 - 2013-09-02 09:05 - 01414128 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2014-10-22 22:57 - 2013-09-02 09:05 - 00246896 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2014-10-22 22:57 - 2013-07-03 07:47 - 13506048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-10-22 22:57 - 2013-07-03 07:23 - 17929216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2014-10-22 22:56 - 2013-06-27 05:40 - 01356800 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-10-22 22:56 - 2013-06-27 05:16 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-10-22 22:56 - 2013-06-20 07:59 - 12849152 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2014-10-22 22:56 - 2013-06-20 06:15 - 11428352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2014-10-22 22:56 - 2013-06-20 05:20 - 05914624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2014-10-22 22:56 - 2013-06-20 05:17 - 04016128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2014-10-22 22:48 - 2013-08-16 13:40 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-10-22 22:48 - 2013-08-16 06:50 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-10-22 22:42 - 2013-10-12 09:24 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-10-22 22:42 - 2013-10-12 08:53 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-10-22 22:42 - 2013-09-17 05:48 - 04173824 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-10-22 22:42 - 2013-07-09 05:10 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll 2014-10-22 22:42 - 2013-06-29 05:03 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2014-10-22 22:42 - 2013-06-29 04:09 - 00294400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll 2014-10-22 22:42 - 2013-06-21 10:57 - 00986440 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2014-10-22 22:42 - 2013-06-21 10:57 - 00817504 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-10-22 22:42 - 2013-06-21 10:57 - 00778264 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll 2014-10-22 22:42 - 2013-06-21 10:57 - 00705936 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2014-10-22 22:42 - 2013-06-21 08:27 - 00784408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2014-10-22 22:42 - 2013-06-21 08:27 - 00638256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2014-10-22 22:42 - 2013-06-21 08:27 - 00597992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll 2014-10-22 22:42 - 2013-06-21 08:27 - 00553056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2014-10-22 22:41 - 2013-07-29 08:17 - 00432904 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2014-10-22 22:41 - 2013-07-29 08:17 - 00258264 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll 2014-10-22 22:41 - 2013-07-29 05:43 - 00338896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2014-10-22 22:41 - 2013-07-29 05:43 - 00206048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll 2014-10-22 22:41 - 2013-07-29 02:36 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2014-10-22 22:41 - 2013-07-29 02:22 - 00613376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2014-10-22 22:41 - 2013-07-12 03:34 - 04208128 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-10-22 22:41 - 2013-06-28 03:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2014-10-22 22:41 - 2013-06-28 03:27 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2014-10-22 22:41 - 2013-06-28 03:11 - 00590336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2014-10-22 22:37 - 2014-10-22 22:37 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-10-22 22:32 - 2014-10-29 18:35 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-10-22 22:32 - 2014-10-22 22:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-10-22 22:29 - 2014-11-19 13:39 - 00001148 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-22 22:29 - 2014-11-19 13:29 - 00001144 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-22 22:29 - 2014-11-16 12:34 - 00004120 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-10-22 22:29 - 2014-11-16 12:34 - 00003884 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-10-22 22:29 - 2014-10-22 22:32 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Google 2014-10-22 22:29 - 2014-10-22 22:31 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files\MSBuild 2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-10-22 22:19 - 2013-05-29 02:35 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2014-10-22 22:19 - 2013-05-29 02:35 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2014-10-22 22:19 - 2013-05-29 02:35 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-10-22 22:19 - 2013-05-29 02:35 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-10-22 22:18 - 2014-09-22 07:42 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-10-22 22:18 - 2013-10-29 00:25 - 16979968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-10-22 22:18 - 2013-10-29 00:24 - 22566400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-10-22 22:18 - 2013-10-28 23:23 - 05636608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-10-22 22:18 - 2013-10-28 23:19 - 04247040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-10-22 22:18 - 2013-10-28 23:00 - 12829184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-10-22 22:18 - 2013-10-28 22:50 - 11087360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-10-22 22:18 - 2013-10-28 22:32 - 02207232 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-10-22 22:18 - 2013-10-28 22:24 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-10-22 22:18 - 2013-10-28 22:16 - 01788928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-10-22 22:18 - 2013-10-28 22:16 - 01140224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-10-22 22:18 - 2013-10-19 10:30 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-10-22 22:18 - 2013-10-19 07:18 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-10-22 22:18 - 2013-10-05 09:57 - 01337704 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-10-22 22:18 - 2013-10-05 03:41 - 01066496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-10-22 22:18 - 2013-08-24 08:52 - 00360448 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-10-22 22:18 - 2013-08-24 08:44 - 00043520 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-10-22 22:18 - 2013-08-24 07:56 - 00297984 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-10-22 22:18 - 2013-08-24 07:48 - 00036352 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-10-22 22:18 - 2013-06-28 02:55 - 00617472 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe 2014-10-22 22:18 - 2013-06-28 02:54 - 00505344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe 2014-10-22 22:15 - 2014-11-18 20:59 - 01230770 _____ () C:\Users\Public\CAFADEBUG.log 2014-10-22 22:02 - 2013-06-20 11:36 - 01538304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-10-22 22:02 - 2013-06-20 11:36 - 00395520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-10-22 21:41 - 2014-10-22 21:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-10-22 21:06 - 2014-10-22 21:13 - 00000000 ____D () C:\Users\Niklas\AppData\Local\IM 2014-10-22 21:06 - 2014-10-22 21:06 - 00002117 _____ () C:\Users\Public\Desktop\Passwörter sichern.lnk 2014-10-22 21:06 - 2014-10-22 21:06 - 00002041 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail.lnk 2014-10-22 21:06 - 2014-10-22 21:06 - 00002029 _____ () C:\Users\Public\Desktop\IncrediMail.lnk 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Photo Notifier and Animation Creator 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\IncrediMail 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\IM 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\Program Files (x86)\Photo Notifier and Animation Creator 2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\Program Files (x86)\IncrediMail 2014-10-22 21:03 - 2014-10-22 21:03 - 00000000 ____D () C:\Program Files (x86)\Company Name 2014-10-22 21:02 - 2014-11-18 18:27 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\NetController 2014-10-22 21:02 - 2014-10-22 21:02 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Software 2014-10-22 21:02 - 2014-10-22 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software 2014-10-22 21:01 - 2014-10-22 21:04 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Company Name 2014-10-22 20:55 - 2014-10-22 20:55 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\ATI 2014-10-22 20:55 - 2014-10-22 20:55 - 00000000 ____D () C:\Users\Niklas\AppData\Local\ATI 2014-10-22 20:52 - 2014-10-22 20:52 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia 2014-10-22 20:49 - 2014-10-22 20:49 - 00002088 _____ () C:\Users\Public\Desktop\Benutzerhandbuch.lnk 2014-10-22 20:49 - 2014-10-22 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-10-22 20:47 - 2014-10-22 20:47 - 00000000 __SHD () C:\UserGuidePDF 2014-10-22 20:46 - 2014-10-22 20:46 - 00000000 ____D () C:\Program Files\DIFX 2014-10-22 20:46 - 2014-10-22 20:45 - 00039008 _____ (Lenovo.) C:\Windows\system32\Drivers\LhdX64.sys 2014-10-22 20:46 - 2014-10-22 20:45 - 00019872 _____ (Lenovo (Beijing) Limited) C:\Windows\system32\LenovoSDKEmSubSystem.dll 2014-10-22 20:45 - 2014-10-22 20:45 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-10-22 20:44 - 2013-07-19 09:58 - 06340312 _____ (Realtek semiconductor) C:\Windows\RTFTrack.exe 2014-10-22 20:44 - 2013-07-19 09:58 - 02628312 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCamU64.exe 2014-10-22 20:44 - 2013-07-19 09:58 - 01157563 _____ () C:\Windows\FTDataP.xml 2014-10-22 20:44 - 2013-07-19 09:58 - 00946032 _____ () C:\Windows\FTData.xml 2014-10-22 20:44 - 2013-07-19 09:58 - 00817241 _____ () C:\Windows\FTDataR1.xml 2014-10-22 20:44 - 2013-07-19 09:58 - 00817191 _____ () C:\Windows\FTDataR0.xml 2014-10-22 20:44 - 2013-07-19 09:58 - 00473304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCamX64.dll 2014-10-22 20:44 - 2013-07-19 09:58 - 00421080 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtCamX.dll 2014-10-22 20:43 - 2013-07-19 09:58 - 08247640 ____R (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\rtsuvc.sys 2014-10-22 20:42 - 2014-10-22 20:42 - 00000000 ____D () C:\Users\Niklas\Documents\Bluetooth-Exchange-Ordner 2014-10-22 20:42 - 2014-10-22 20:42 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Broadcom 2014-10-22 20:41 - 2014-10-22 20:41 - 00000000 ____D () C:\Program Files\Lenovo 2014-10-22 20:41 - 2013-07-11 22:11 - 00228568 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys 2014-10-22 20:41 - 2013-07-11 22:11 - 00186584 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys 2014-10-22 20:41 - 2013-07-11 22:11 - 00038616 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys 2014-10-22 20:41 - 2012-07-27 00:48 - 00040248 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys 2014-10-22 20:40 - 2014-10-22 20:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmaux_01009.Wdf 2014-10-22 20:40 - 2014-10-22 20:39 - 00000000 ____D () C:\Windows\system32\Drivers\Win64 2014-10-22 20:40 - 2013-08-02 07:18 - 00020614 _____ () C:\Windows\system32\Drivers\ibtfltcoex_wp8.cat 2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____D () C:\Program Files\Synaptics 2014-10-22 20:39 - 2013-09-13 09:14 - 00532208 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys 2014-10-22 20:39 - 2013-09-13 09:14 - 00422640 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo19.dll 2014-10-22 20:39 - 2013-09-13 09:14 - 00251632 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll 2014-10-22 20:39 - 2013-09-13 09:14 - 00169712 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll 2014-10-22 20:39 - 2013-09-13 09:13 - 00723184 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll 2014-10-22 20:39 - 2013-09-13 09:13 - 00400112 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll 2014-10-22 20:38 - 2014-10-22 20:46 - 00015078 _____ () C:\Windows\DPINST.LOG 2014-10-22 20:38 - 2014-10-22 20:39 - 00001454 _____ () C:\Windows\Synaptics.log 2014-10-22 20:38 - 2013-09-13 09:14 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-10-22 20:28 - 2014-10-22 20:49 - 00000000 ____D () C:\Program Files (x86)\Lenovo 2014-10-22 20:28 - 2013-08-07 12:37 - 07474864 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS 2014-10-22 20:28 - 2013-08-07 11:17 - 04011520 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll 2014-10-22 20:28 - 2013-08-07 11:16 - 03777024 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll 2014-10-22 20:26 - 2014-10-22 20:43 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-22 20:26 - 2014-10-22 20:26 - 00000000 ____D () C:\Windows\SysWOW64\sda 2014-10-22 20:26 - 2013-07-18 09:48 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsUVStoricon.dll 2014-10-22 20:26 - 2013-07-18 09:48 - 00329944 ____R (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUVStor.sys 2014-10-22 20:26 - 2013-07-18 06:55 - 00130248 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C63x64.sys 2014-10-22 20:25 - 2014-10-22 20:25 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e 2014-10-22 20:24 - 2014-10-22 20:24 - 00000000 ____D () C:\Program Files\Dolby Digital Plus 2014-10-22 20:24 - 2011-09-01 08:23 - 00447104 _____ (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe 2014-10-22 20:22 - 2013-07-25 07:39 - 00206552 _____ (Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe 2014-10-22 20:21 - 2014-10-22 20:24 - 00000000 ____D () C:\Program Files\CONEXANT 2014-10-22 20:21 - 2014-10-22 20:21 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-10-22 20:21 - 2014-10-22 20:21 - 00000000 ____D () C:\ProgramData\Conexant 2014-10-22 20:21 - 2013-08-20 06:28 - 02832088 _____ (Conexant Systems, Inc.) C:\Windows\system32\UCI64A40.DLL 2014-10-22 20:21 - 2013-08-19 08:56 - 00936128 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64BP04.dll 2014-10-22 20:21 - 2013-08-08 03:52 - 01387712 _____ (Conexant Systems Inc.) C:\Windows\system32\Drivers\CHDRT64.sys 2014-10-22 20:21 - 2013-08-05 06:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-10-22 20:21 - 2013-08-05 06:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-10-22 20:21 - 2013-08-05 06:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-10-22 20:21 - 2013-08-05 06:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-10-22 20:21 - 2013-05-15 08:27 - 00406208 _____ (Conexant Systems, Inc.) C:\Windows\system32\CSpkExt64.dll 2014-10-22 20:21 - 2012-06-29 06:04 - 00050848 _____ (Conexant Systems Inc.) C:\Windows\system32\CxPageMaster64.dll 2014-10-22 20:21 - 2011-01-18 01:35 - 00030893 _____ () C:\Windows\system32\Drivers\Mixer.ini 2014-10-22 20:20 - 2014-11-05 19:38 - 00000000 ____D () C:\ProgramData\AMD 2014-10-22 20:20 - 2014-10-22 20:20 - 00067139 _____ () C:\Windows\SysWOW64\CCCInstall_201410222120320047.log 2014-10-22 20:19 - 2014-10-22 20:19 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-22 20:19 - 2014-10-22 20:19 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-10-22 20:19 - 2013-08-19 18:50 - 00127488 _____ (AMD) C:\Windows\system32\coinst_13.151.dll 2014-10-22 20:19 - 2013-08-19 18:49 - 01187342 _____ () C:\Windows\system32\amdocl_as64.exe 2014-10-22 20:19 - 2013-08-19 18:49 - 01061902 _____ () C:\Windows\system32\amdocl_ld64.exe 2014-10-22 20:19 - 2013-08-19 18:49 - 00995342 _____ () C:\Windows\SysWOW64\amdocl_as32.exe 2014-10-22 20:19 - 2013-08-19 18:49 - 00798734 _____ () C:\Windows\SysWOW64\amdocl_ld32.exe 2014-10-22 20:19 - 2013-08-19 18:06 - 00204952 _____ () C:\Windows\SysWOW64\ativvsvl.dat 2014-10-22 20:19 - 2013-08-19 18:06 - 00204952 _____ () C:\Windows\system32\ativvsvl.dat 2014-10-22 20:19 - 2013-08-19 18:06 - 00157144 _____ () C:\Windows\SysWOW64\ativvsva.dat 2014-10-22 20:19 - 2013-08-19 18:06 - 00157144 _____ () C:\Windows\system32\ativvsva.dat 2014-10-22 20:19 - 2013-05-04 20:22 - 00047164 _____ () C:\Windows\atiogl.xml 2014-10-22 20:19 - 2011-09-12 23:06 - 00003917 _____ () C:\Windows\SysWOW64\atipblag.dat 2014-10-22 20:19 - 2011-09-12 23:06 - 00003917 _____ () C:\Windows\system32\atipblag.dat 2014-10-22 20:18 - 2014-11-18 17:05 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-22 20:18 - 2014-10-22 20:18 - 00000000 ____D () C:\Program Files\ATI 2014-10-22 20:15 - 2014-10-24 12:43 - 00000732 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-10-22 20:15 - 2013-09-19 22:22 - 25982976 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 20943360 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 12100096 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 11387392 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 04432896 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 04177920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-10-22 20:15 - 2013-09-19 22:22 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 04009632 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 03523072 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 03292672 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 02974208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-10-22 20:15 - 2013-09-19 22:22 - 02474712 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiVAD64.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 02064896 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 01814016 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 01423008 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00844760 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 00769496 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 00650400 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00631456 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00623104 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00598688 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00517120 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00513024 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00492032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00393688 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 00391128 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-10-22 20:15 - 2013-09-19 22:22 - 00365568 _____ () C:\Windows\system32\igdmd64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00344224 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00303104 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-10-22 20:15 - 2013-09-19 22:22 - 00279000 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-10-22 20:15 - 2013-09-19 22:22 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00241664 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00207008 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00193536 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3308.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00176288 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00158720 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00148992 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00132608 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00127488 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00121504 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00093344 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00029184 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-10-22 20:15 - 2013-09-19 22:22 - 00002944 _____ () C:\Windows\system32\iglhxs64.vp 2014-10-22 20:15 - 2013-09-19 22:22 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-10-22 20:15 - 2013-09-19 22:21 - 13760512 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 13153792 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 07840256 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 07587800 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 06224384 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00771032 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 00754648 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 00530392 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 00396248 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00265385 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00251862 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00233588 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00223744 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00220672 _____ () C:\Windows\system32\igdde64.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00199481 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00197044 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00191088 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00180736 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00179353 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00179230 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00176940 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00176666 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00176638 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00175259 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00174244 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00173953 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00173813 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00173495 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00172750 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00172041 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00171709 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00171547 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00171310 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00170996 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00170175 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00166672 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00165374 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00164698 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00159947 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00153249 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00153048 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-10-22 20:15 - 2013-09-19 22:21 - 00151473 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-10-22 20:15 - 2013-09-19 22:21 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll 2014-10-22 20:12 - 2013-09-17 01:21 - 00449528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-10-22 20:11 - 2014-10-22 20:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-10-22 20:11 - 2013-08-08 12:23 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-10-22 20:10 - 2014-10-24 12:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-10-22 20:10 - 2014-10-22 22:17 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-22 20:10 - 2014-10-22 20:11 - 00000000 ____D () C:\ProgramData\Intel 2014-10-22 20:10 - 2014-10-22 20:10 - 01715596 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-10-22 20:10 - 2014-10-22 20:10 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Intel Corporation 2014-10-22 20:10 - 2014-10-22 20:10 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\InstallShield 2014-10-22 20:10 - 2013-08-08 12:23 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-10-22 20:10 - 2013-08-08 12:23 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-10-22 20:09 - 2014-10-22 22:37 - 00000000 ____D () C:\Program Files\Intel 2014-10-22 20:07 - 2014-10-22 20:40 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-10-22 20:07 - 2014-10-22 20:07 - 00000000 ____D () C:\Users\Niklas\Intel 2014-10-22 20:07 - 2013-08-05 04:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-10-22 20:06 - 2014-10-22 20:06 - 00000000 ____D () C:\Intel 2014-10-22 20:05 - 2014-10-22 20:05 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww.exe 2014-10-22 19:52 - 2014-10-22 19:52 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-10-22 19:40 - 2014-10-22 20:32 - 00000000 ____D () C:\Windows\Panther 2014-10-22 19:17 - 2014-11-19 13:47 - 00003958 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{C3FD5E37-D5A1-4B31-8D29-4700A322E84F} 2014-10-22 18:52 - 2014-11-18 19:52 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001 2014-10-22 18:48 - 2014-11-19 13:32 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-22 18:47 - 2014-10-22 18:47 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-10-22 18:46 - 2014-11-14 22:01 - 00000000 ____D () C:\Users\Niklas 2014-10-22 18:46 - 2014-10-22 18:48 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages 2014-10-22 18:46 - 2014-10-22 18:46 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-10-22 18:46 - 2014-10-22 18:46 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Startmenü 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore 2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\ProgramData\PRICache 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-10-22 18:45 - 2014-11-19 13:29 - 02004978 _____ () C:\Windows\WindowsUpdate.log 2014-10-22 18:44 - 2014-10-22 18:44 - 00000000 ____D () C:\Windows\CSC 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Programme 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-10-22 18:42 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery 2014-10-22 18:41 - 2014-11-16 12:44 - 00008146 _____ () C:\Windows\PFRO.log ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-19 13:32 - 2013-06-16 11:51 - 00766620 _____ () C:\Windows\system32\perfh007.dat 2014-11-19 13:32 - 2013-06-16 11:51 - 00159902 _____ () C:\Windows\system32\perfc007.dat 2014-11-18 21:00 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\sru 2014-11-16 12:44 - 2013-06-16 05:42 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-11-14 18:48 - 2013-06-16 05:42 - 00011812 _____ () C:\Windows\setupact.log 2014-11-13 19:23 - 2013-06-16 04:17 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-11-13 19:19 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\NDF 2014-11-06 22:12 - 2013-06-16 04:17 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-10-30 20:27 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\rescache 2014-10-24 20:26 - 2013-06-16 06:37 - 00000000 ___HD () C:\Windows\ELAMBKUP 2014-10-24 12:47 - 2013-06-16 06:37 - 00000000 ___RD () C:\Windows\ToastData 2014-10-24 12:47 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\WinStore 2014-10-24 12:47 - 2013-06-16 06:28 - 00000000 ____D () C:\Windows\CbsTemp 2014-10-23 17:51 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\AppReadiness 2014-10-22 22:20 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-10-22 22:20 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\MUI 2014-10-22 20:45 - 2012-07-08 19:22 - 00035600 _____ (Lenovo Corporation) C:\Windows\system32\Drivers\AcpiVpc.sys 2014-10-22 20:45 - 2012-02-21 04:48 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll 2014-10-22 20:28 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\tracing 2014-10-22 20:11 - 2013-06-16 06:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-10-22 20:09 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\restore 2014-10-22 19:40 - 2013-06-16 06:37 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\FileManager 2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\Camera 2014-10-22 18:43 - 2013-06-16 06:37 - 00000000 ____D () C:\Program Files\Windows NT 2014-10-22 18:43 - 2013-06-16 04:28 - 00000000 __RHD () C:\Users\Default 2014-10-22 18:42 - 2013-06-16 06:37 - 00001720 _____ () C:\Windows\DtcInstall.log 2014-10-22 18:42 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\Recovery Some content of TEMP: ==================== C:\Users\Niklas\AppData\Local\Temp\DelB3CF.exe C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7370014.dll C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7380014.dll C:\Users\Niklas\AppData\Local\Temp\_is15B1.exe C:\Users\Niklas\AppData\Local\Temp\_is169F.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-18 15:16 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- So jetzt wurde ich auf diese seite umgeleitet hxxp://importantjavaupgrade.info/update-flash/de/03acd46b2845413023eb9bd99194fee3/?subid=charlie-mor-f76qFmFi&subid2=RFYwMzBiMThiMjcwYzMxMWU0OWIyNDEyNDVlNDMxZWNhZjE0MTY0OTQzNTk&transaction_id=9d0af2da-a67f-4cdc-8fd6-7d6af28e23a4&rand=546dfd1956001&source=DEZP-CH&entry=y&auto=y Und hat sich sofort was gedownloadet was mein Virenscanner aber entfernt hat Hoffe übrigens auf schnelle antwort da diese Tabs ganzschön nerven. So ich warte immernoch Bitte eine Antwort |
22.11.2014, 11:13 | #8 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke Werbung Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.11.2014, 00:23 | #9 |
| Egal wo ich hin klicke Werbung JRST Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.3.9 (11.15.2014:2) OS: Windows 8.1 Pro x64 Ran by Niklas on 23.11.2014 at 0:10:47,90 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 23.11.2014 at 0:11:41,54 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter # AdwCleaner v4.101 - Bericht erstellt am 23/11/2014 um 00:06:23 # Aktualisiert 09/11/2014 von Xplode # Database : 2014-11-22.1 [Live] # Betriebssystem : Windows 8.1 Pro (64 bits) # Benutzername : Niklas - NIKLASNOTEBOOK # Gestartet von : C:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\AdwCleaner_4.101.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090} ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17126 ************************* AdwCleaner[R0].txt - [954 octets] - [23/11/2014 00:05:16] AdwCleaner[S0].txt - [785 octets] - [23/11/2014 00:06:23] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [844 octets] ########## Noch ne andere kp auch ADW Code:
ATTFilter # AdwCleaner v4.101 - Bericht erstellt am 23/11/2014 um 00:05:16 # Aktualisiert 09/11/2014 von Xplode # Database : 2014-11-22.1 [Live] # Betriebssystem : Windows 8.1 Pro (64 bits) # Benutzername : Niklas - NIKLASNOTEBOOK # Gestartet von : C:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\AdwCleaner_4.101.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090} Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090} ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17126 ************************* AdwCleaner[R0].txt - [812 octets] - [23/11/2014 00:05:16] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [871 octets] ########## Nochmal die FRST FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-11-2014 01 Ran by Niklas (administrator) on NIKLASNOTEBOOK on 23-11-2014 00:22:30 Running from C:\Users\Niklas\Downloads Loaded Profile: Niklas (Available profiles: Niklas) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek semiconductor) C:\Windows\RTFTrack.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9D93F528A806D001 HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5 Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.) R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-09-24] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-23 00:22 - 2014-11-23 00:22 - 00000000 ____D () C:\Users\Niklas\Downloads\FRST-OlderVersion 2014-11-23 00:11 - 2014-11-23 00:11 - 00000619 _____ () C:\Users\Niklas\Desktop\JRT.txt 2014-11-23 00:10 - 2014-11-23 00:10 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-11-23 00:05 - 2014-11-23 00:06 - 00000000 ____D () C:\AdwCleaner 2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieUserList 2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieSiteList 2014-11-23 00:00 - 2014-11-23 00:00 - 00003958 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A8883146-0AFF-457E-97C0-AC3285E0593E} 2014-11-23 00:00 - 2014-11-23 00:00 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia 2014-11-22 23:57 - 2014-11-23 00:16 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001 2014-11-22 23:53 - 2014-11-22 23:53 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\PackageStaging 2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages 2014-11-22 23:49 - 2014-11-22 23:49 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-11-22 23:49 - 2014-11-22 23:49 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin 2014-11-22 23:34 - 2014-11-23 00:20 - 00193583 _____ () C:\WINDOWS\WindowsUpdate.log 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 ____D () C:\WINDOWS\CSC 2014-11-22 23:33 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas 2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagwrn.xml 2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagerr.xml 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Startmenü 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten 2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____D () C:\ProgramData\Conexant 2014-11-22 23:24 - 2014-11-22 23:24 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Synaptics 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Intel 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\CONEXANT 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\AMD 2014-11-22 23:22 - 2014-11-23 00:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-11-22 23:21 - 2014-11-22 23:21 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-11-22 23:21 - 2014-11-22 23:21 - 00000000 ____D () C:\Windows.old 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\MSBuild 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-11-22 23:17 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-11-22 23:17 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-11-22 22:08 - 2014-11-23 00:08 - 00000000 ___DO () C:\Users\Niklas\SkyDrive 2014-11-22 21:43 - 2014-11-22 21:46 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (2).zip 2014-11-22 20:43 - 2014-11-22 20:44 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Niklas\Downloads\mbam-setup-2.0.3.1025.exe 2014-11-22 20:40 - 2014-11-22 20:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Niklas\Downloads\revosetup95.exe 2014-11-22 20:40 - 2014-11-22 20:40 - 00000960 _____ () C:\Users\Niklas\Desktop\Revo Uninstaller.lnk 2014-11-21 15:44 - 2014-11-21 15:44 - 07891393 _____ () C:\Users\Niklas\Downloads\Wurst 1.3.1.zip 2014-11-20 19:09 - 2014-11-20 19:09 - 00000000 ____D () C:\Users\Niklas\Documents\My Cheat Tables 2014-11-20 19:08 - 2014-11-20 19:08 - 09052192 _____ (Cheat Engine ) C:\Users\Niklas\Downloads\CheatEngine64.exe 2014-11-20 19:08 - 2014-11-20 19:08 - 00000803 _____ () C:\Users\Niklas\Desktop\Cheat Engine.lnk 2014-11-20 16:09 - 2014-11-17 21:16 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 10889312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 09314984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 08295784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 08045488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 07208104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 01342760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 01118720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2014-11-20 16:09 - 2014-11-17 21:13 - 00297672 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2014-11-20 16:09 - 2014-11-17 21:11 - 16756736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2014-11-20 16:09 - 2014-11-17 20:57 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00235008 _____ () C:\WINDOWS\system32\clinfo.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll 2014-11-20 16:09 - 2014-11-17 20:57 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 33869824 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll 2014-11-20 16:09 - 2014-11-17 20:53 - 28772352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2014-11-20 16:09 - 2014-11-17 20:50 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2014-11-20 16:09 - 2014-11-17 20:50 - 00058880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2014-11-20 16:09 - 2014-11-17 20:43 - 05316608 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhsasc64.dll 2014-11-20 16:09 - 2014-11-17 20:43 - 04335616 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdhsasc.dll 2014-11-20 16:09 - 2014-11-17 20:12 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 05836800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2014-11-20 16:09 - 2014-11-17 20:10 - 28356608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2014-11-20 16:09 - 2014-11-17 20:03 - 00418304 _____ () C:\WINDOWS\system32\amdmiracast.dll 2014-11-20 16:09 - 2014-11-17 19:54 - 04590080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2014-11-20 16:09 - 2014-11-17 19:49 - 23627264 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb 2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\system32\atiapfxx.blb 2014-11-20 16:09 - 2014-11-17 19:40 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2014-11-20 16:09 - 2014-11-17 19:40 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2014-11-20 16:09 - 2014-11-17 19:40 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2014-11-20 16:09 - 2014-11-17 19:36 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2014-11-20 16:09 - 2014-11-17 19:22 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2014-11-20 16:09 - 2014-11-17 19:21 - 00623616 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2014-11-20 16:09 - 2014-11-17 19:21 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2014-11-20 16:09 - 2014-11-17 19:21 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2014-11-20 16:09 - 2014-11-17 19:20 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2014-11-20 16:09 - 2014-11-17 19:17 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2014-11-20 16:09 - 2014-11-17 19:17 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2014-11-20 16:09 - 2014-11-17 19:12 - 03437632 _____ () C:\WINDOWS\system32\atiumd6a.cap 2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat 2014-11-20 16:09 - 2014-11-17 19:06 - 00839168 _____ (AMD) C:\WINDOWS\system32\coinst_14.30.dll 2014-11-20 16:09 - 2014-11-17 19:01 - 03471376 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap 2014-11-20 16:09 - 2014-11-17 18:55 - 01211392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2014-11-20 16:09 - 2014-11-17 18:55 - 00901120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2014-11-20 16:09 - 2014-11-17 18:54 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2014-11-20 16:09 - 2014-11-17 18:51 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2014-11-20 16:09 - 2014-11-17 18:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2014-11-20 16:09 - 2014-09-24 07:36 - 00765851 _____ () C:\WINDOWS\system32\amdicdxx.dat 2014-11-20 16:09 - 2014-08-31 15:58 - 00322868 _____ () C:\WINDOWS\system32\ativvaxy_vi.dat 2014-11-20 16:09 - 2014-08-31 15:56 - 00321200 _____ () C:\WINDOWS\system32\ativvaxy_vi_nd.dat 2014-11-20 16:09 - 2014-08-28 22:52 - 00157224 _____ () C:\WINDOWS\system32\amde31a.dat 2014-11-20 16:09 - 2014-08-28 17:58 - 00158928 _____ () C:\WINDOWS\system32\ativce03.dat 2014-11-20 16:09 - 2014-08-14 21:19 - 00082128 _____ () C:\WINDOWS\system32\ativce02.dat 2014-11-20 16:09 - 2014-07-15 16:54 - 00290080 _____ () C:\WINDOWS\system32\ativvaxy_cz_nd.dat 2014-11-20 16:09 - 2014-07-10 21:02 - 00046128 _____ () C:\WINDOWS\system32\kapp_ci.sbin 2014-11-20 16:09 - 2014-07-10 21:02 - 00041936 _____ () C:\WINDOWS\system32\kapp_si.sbin 2014-11-20 16:09 - 2014-07-02 19:40 - 00234164 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat 2014-11-20 16:09 - 2014-07-02 19:38 - 00232752 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat 2014-11-20 16:09 - 2014-06-18 18:28 - 00140240 _____ () C:\WINDOWS\system32\samu_krnl_ci.sbin 2014-11-20 16:09 - 2014-04-01 06:21 - 00734861 _____ () C:\WINDOWS\system32\atiicdxx.dat 2014-11-20 16:09 - 2013-12-12 14:53 - 00138832 _____ () C:\WINDOWS\system32\samu_krnl_isv_ci.sbin 2014-11-20 16:09 - 2013-04-10 16:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2014-11-20 16:09 - 2013-04-10 16:34 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe 2014-11-20 16:09 - 2013-04-10 16:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat 2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat 2014-11-20 16:03 - 2014-11-20 16:07 - 286079600 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.11.2beta-64bit-win8.1-win7-nov19.exe 2014-11-19 19:26 - 2013-04-25 11:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2014-11-19 19:23 - 2014-11-19 19:25 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (1).zip 2014-11-19 19:16 - 2014-11-19 19:20 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql (1).exe 2014-11-19 17:19 - 2014-11-19 17:19 - 00015872 _____ () C:\Users\Niklas\Desktop\alexander.dll 2014-11-19 16:25 - 2014-11-19 16:25 - 07882013 _____ () C:\Users\Niklas\Downloads\1406634576_iCEnhancer 3.0 Pack.rar 2014-11-19 14:58 - 2014-11-19 14:58 - 00011859 _____ () C:\Users\Niklas\Downloads\1377766248_Brain Control ver6.0.rar 2014-11-19 14:57 - 2014-11-19 14:57 - 07990833 _____ () C:\Users\Niklas\Downloads\1391535720_1391345301_GTATerminalsIVHostages.zip 2014-11-19 14:14 - 2014-11-19 14:14 - 00006054 _____ () C:\Users\Niklas\Downloads\1411200668_Robbery Mod V2.rar 2014-11-19 13:58 - 2014-11-19 13:58 - 00023706 _____ () C:\Users\Niklas\Downloads\Logs.Rar 2014-11-19 13:56 - 2014-11-19 13:56 - 00023706 _____ () C:\Users\Niklas\Desktop\Logs.Rar 2014-11-19 13:50 - 2014-11-19 13:51 - 00033255 _____ () C:\Users\Niklas\Downloads\Addition.txt 2014-11-19 13:47 - 2014-11-23 00:22 - 00004577 _____ () C:\Users\Niklas\Downloads\FRST.txt 2014-11-19 13:47 - 2014-11-23 00:22 - 00000000 ____D () C:\FRST 2014-11-19 13:46 - 2014-11-23 00:22 - 02118144 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64.exe 2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip 2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip 2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip 2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe 2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar 2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe 2014-11-17 19:38 - 2014-11-17 19:38 - 00762160 _____ ( ) C:\Users\Niklas\Downloads\autotune_Mv_DM.exe 2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar 2014-11-16 13:24 - 2014-11-19 18:26 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml 2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC 2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe 2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe 2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games 2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos 2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe 2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip 2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip 2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup 2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe 2014-11-07 15:34 - 2014-11-07 15:34 - 00000903 _____ () C:\Users\Public\Desktop\Elsword.lnk 2014-11-07 15:34 - 2014-11-07 15:34 - 00000787 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk 2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe 2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe 2014-11-06 01:44 - 2014-11-20 19:01 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live 2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe 2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games 2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe 2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar 2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD 2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip 2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe 2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe 2014-11-05 16:30 - 2014-11-05 16:30 - 00001105 _____ () C:\Users\Niklas\Desktop\TeamSpeak 3 Client.lnk 2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft 32x MC18.zip 2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip 2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe 2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe 2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe 2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe 2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip 2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe 2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe 2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames 2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-23 00:12 - 2014-09-24 07:16 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-11-23 00:12 - 2014-09-24 06:43 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-11-23 00:12 - 2014-09-24 06:43 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-11-23 00:07 - 2014-09-23 22:06 - 00002788 _____ () C:\WINDOWS\PFRO.log 2014-11-23 00:07 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-11-23 00:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-11-23 00:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-11-22 23:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-11-22 23:53 - 2013-08-22 15:46 - 00038154 _____ () C:\WINDOWS\setupact.log 2014-11-22 23:51 - 2014-09-24 16:19 - 00000000 ___HD () C:\$Windows.~BT 2014-11-22 23:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-11-22 23:34 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default 2014-11-22 23:32 - 2013-08-22 15:44 - 00338016 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-11-22 23:28 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery 2014-11-22 23:28 - 2013-08-22 16:37 - 00002664 _____ () C:\WINDOWS\DtcInstall.log 2014-11-22 23:21 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-10-24 12:43 - 2014-10-22 20:15 - 00000732 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk Some content of TEMP: ==================== C:\Users\Niklas\AppData\Local\Temp\Quarantine.exe C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-22 23:23 ==================== End Of Log ============================ --- --- --- |
23.11.2014, 15:01 | #10 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke WerbungESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.11.2014, 17:20 | #11 |
| Egal wo ich hin klicke Werbung Eset Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=bde8e82225484b40826bf5512d95bc27 # engine=21227 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-11-23 04:00:17 # local_time=2014-11-23 05:00:17 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 5213933 41639710 0 0 # scanned=354772 # found=1 # cleaned=1 # scan_time=5224 sh=C2284B2096434D8C2677D455FD34E5525DE8A66B ft=1 fh=79aaa72e5f4771c0 vn="Variante von Win32/InstallCore.RO evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Niklas\Downloads\autotune_Mv_DM.exe" Code:
ATTFilter Results of screen317's Security Check version 0.99.90 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe Windows Defender MpCmdRun.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014 Ran by Niklas (administrator) on NIKLASNOTEBOOK on 23-11-2014 17:16:23 Running from C:\Users\Niklas\Downloads\FRST-OlderVersion Loaded Profile: Niklas (Available profiles: Niklas) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek semiconductor) C:\Windows\RTFTrack.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Valve Corporation) D:\Steam\Steam.exe (Valve Corporation) D:\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9D93F528A806D001 HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5 Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.) R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-09-24] (Microsoft Corporation) R4 cm_km_w; system32\DRIVERS\cm_km_w.sys [X] R4 kl1; system32\DRIVERS\kl1.sys [X] R4 kldisk; \SystemRoot\system32\DRIVERS\kldisk.sys [X] R4 klflt; \SystemRoot\system32\DRIVERS\klflt.sys [X] R4 klhk; \SystemRoot\system32\DRIVERS\klhk.sys [X] R4 KLIF; system32\DRIVERS\klif.sys [X] R4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X] R4 klpd; \SystemRoot\system32\DRIVERS\klpd.sys [X] R4 klwfp; \SystemRoot\system32\DRIVERS\klwfp.sys [X] R4 kneps; \SystemRoot\system32\DRIVERS\kneps.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-23 15:17 - 2014-11-23 15:17 - 00002380 _____ () C:\Users\Niklas\Desktop\Kaspersky Internet Security.lnk 2014-11-23 15:16 - 2014-11-23 15:16 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-11-23 11:54 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2014-11-23 11:54 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-11-23 11:54 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2014-11-23 11:54 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2014-11-23 11:54 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-11-23 11:54 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-11-23 11:54 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2014-11-23 11:54 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2014-11-23 11:54 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2014-11-23 11:54 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2014-11-23 11:54 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2014-11-23 11:54 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2014-11-23 11:54 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2014-11-23 11:54 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2014-11-23 11:54 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2014-11-23 11:54 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2014-11-23 11:54 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2014-11-23 11:54 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2014-11-23 11:54 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2014-11-23 11:54 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2014-11-23 11:54 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2014-11-23 11:54 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2014-11-23 11:54 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2014-11-23 11:54 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2014-11-23 11:54 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2014-11-23 11:54 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2014-11-23 11:54 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2014-11-23 11:54 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2014-11-23 11:54 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2014-11-23 11:54 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2014-11-23 11:54 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2014-11-23 11:54 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2014-11-23 11:54 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2014-11-23 11:54 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2014-11-23 11:54 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2014-11-23 11:54 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2014-11-23 11:54 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2014-11-23 11:54 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2014-11-23 11:54 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2014-11-23 11:54 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2014-11-23 11:54 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2014-11-23 11:54 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2014-11-23 11:54 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2014-11-23 11:54 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2014-11-23 11:54 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2014-11-23 11:54 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2014-11-23 11:54 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2014-11-23 11:54 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2014-11-23 11:54 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2014-11-23 11:54 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2014-11-23 11:54 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2014-11-23 11:54 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2014-11-23 11:54 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2014-11-23 11:54 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2014-11-23 11:54 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2014-11-23 11:54 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2014-11-23 11:54 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2014-11-23 11:54 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2014-11-23 11:54 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2014-11-23 11:54 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2014-11-23 11:54 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2014-11-23 11:54 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2014-11-23 11:54 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2014-11-23 11:54 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2014-11-23 11:54 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2014-11-23 11:54 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2014-11-23 11:54 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2014-11-23 11:54 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2014-11-23 11:54 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2014-11-23 11:54 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2014-11-23 11:54 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2014-11-23 11:53 - 2014-11-23 11:54 - 00010047 _____ () C:\WINDOWS\DirectX.log 2014-11-23 11:53 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2014-11-23 11:53 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2014-11-23 11:53 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2014-11-23 11:53 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2014-11-23 11:53 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2014-11-23 11:53 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2014-11-23 11:53 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2014-11-23 11:53 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2014-11-23 11:53 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2014-11-23 11:53 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2014-11-23 11:53 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2014-11-23 11:53 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2014-11-23 11:53 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2014-11-23 11:53 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2014-11-23 11:53 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2014-11-23 11:53 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2014-11-23 11:53 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2014-11-23 11:53 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2014-11-23 11:53 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2014-11-23 11:53 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2014-11-23 11:53 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2014-11-23 11:53 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2014-11-23 11:53 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2014-11-23 11:53 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2014-11-23 11:53 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2014-11-23 11:53 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2014-11-23 11:53 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2014-11-23 11:53 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2014-11-23 11:53 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2014-11-23 11:53 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2014-11-23 11:53 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2014-11-23 11:53 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2014-11-23 11:53 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2014-11-23 11:53 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2014-11-23 11:53 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2014-11-23 11:53 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2014-11-23 11:53 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2014-11-23 11:53 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2014-11-23 11:53 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2014-11-23 11:53 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2014-11-23 11:53 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2014-11-23 11:53 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2014-11-23 11:53 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2014-11-23 11:53 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2014-11-23 00:22 - 2014-11-23 17:16 - 00000000 ____D () C:\Users\Niklas\Downloads\FRST-OlderVersion 2014-11-23 00:11 - 2014-11-23 00:11 - 00000619 _____ () C:\Users\Niklas\Desktop\JRT.txt 2014-11-23 00:10 - 2014-11-23 00:10 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-11-23 00:05 - 2014-11-23 00:06 - 00000000 ____D () C:\AdwCleaner 2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieUserList 2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieSiteList 2014-11-23 00:00 - 2014-11-23 11:40 - 00003958 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A8883146-0AFF-457E-97C0-AC3285E0593E} 2014-11-23 00:00 - 2014-11-23 00:00 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia 2014-11-22 23:57 - 2014-11-23 16:01 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001 2014-11-22 23:53 - 2014-11-22 23:53 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\PackageStaging 2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages 2014-11-22 23:49 - 2014-11-22 23:49 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-11-22 23:49 - 2014-11-22 23:49 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore 2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin 2014-11-22 23:34 - 2014-11-23 15:59 - 00237867 _____ () C:\WINDOWS\WindowsUpdate.log 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 ____D () C:\WINDOWS\CSC 2014-11-22 23:33 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas 2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagwrn.xml 2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagerr.xml 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Startmenü 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten 2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten 2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____D () C:\ProgramData\Conexant 2014-11-22 23:24 - 2014-11-22 23:24 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Synaptics 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Intel 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\CONEXANT 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\AMD 2014-11-22 23:22 - 2014-11-23 12:06 - 00000000 ___DC () C:\WINDOWS\Panther 2014-11-22 23:21 - 2014-11-22 23:21 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-11-22 23:21 - 2014-11-22 23:21 - 00000000 ____D () C:\Windows.old 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\MSBuild 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-11-22 23:17 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-11-22 23:17 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-11-22 23:17 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-11-22 22:08 - 2014-11-23 15:02 - 00000000 __RDO () C:\Users\Niklas\SkyDrive 2014-11-22 21:43 - 2014-11-22 21:46 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (2).zip 2014-11-22 20:43 - 2014-11-22 20:44 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Niklas\Downloads\mbam-setup-2.0.3.1025.exe 2014-11-22 20:40 - 2014-11-22 20:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Niklas\Downloads\revosetup95.exe 2014-11-21 15:44 - 2014-11-21 15:44 - 07891393 _____ () C:\Users\Niklas\Downloads\Wurst 1.3.1.zip 2014-11-20 19:09 - 2014-11-20 19:09 - 00000000 ____D () C:\Users\Niklas\Documents\My Cheat Tables 2014-11-20 19:08 - 2014-11-20 19:08 - 09052192 _____ (Cheat Engine ) C:\Users\Niklas\Downloads\CheatEngine64.exe 2014-11-20 16:09 - 2014-11-17 21:16 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 10889312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 09314984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 08295784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 08045488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 07208104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 01342760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 01118720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2014-11-20 16:09 - 2014-11-17 21:15 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2014-11-20 16:09 - 2014-11-17 21:13 - 00297672 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2014-11-20 16:09 - 2014-11-17 21:11 - 16756736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2014-11-20 16:09 - 2014-11-17 20:57 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00235008 _____ () C:\WINDOWS\system32\clinfo.exe 2014-11-20 16:09 - 2014-11-17 20:57 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll 2014-11-20 16:09 - 2014-11-17 20:57 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 33869824 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll 2014-11-20 16:09 - 2014-11-17 20:56 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll 2014-11-20 16:09 - 2014-11-17 20:53 - 28772352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2014-11-20 16:09 - 2014-11-17 20:50 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2014-11-20 16:09 - 2014-11-17 20:50 - 00058880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2014-11-20 16:09 - 2014-11-17 20:43 - 05316608 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhsasc64.dll 2014-11-20 16:09 - 2014-11-17 20:43 - 04335616 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdhsasc.dll 2014-11-20 16:09 - 2014-11-17 20:12 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 05836800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll 2014-11-20 16:09 - 2014-11-17 20:11 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2014-11-20 16:09 - 2014-11-17 20:10 - 28356608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2014-11-20 16:09 - 2014-11-17 20:03 - 00418304 _____ () C:\WINDOWS\system32\amdmiracast.dll 2014-11-20 16:09 - 2014-11-17 19:54 - 04590080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2014-11-20 16:09 - 2014-11-17 19:49 - 23627264 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb 2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\system32\atiapfxx.blb 2014-11-20 16:09 - 2014-11-17 19:40 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2014-11-20 16:09 - 2014-11-17 19:40 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2014-11-20 16:09 - 2014-11-17 19:40 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2014-11-20 16:09 - 2014-11-17 19:39 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2014-11-20 16:09 - 2014-11-17 19:36 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2014-11-20 16:09 - 2014-11-17 19:22 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2014-11-20 16:09 - 2014-11-17 19:21 - 00623616 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2014-11-20 16:09 - 2014-11-17 19:21 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2014-11-20 16:09 - 2014-11-17 19:21 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2014-11-20 16:09 - 2014-11-17 19:20 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2014-11-20 16:09 - 2014-11-17 19:17 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2014-11-20 16:09 - 2014-11-17 19:17 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2014-11-20 16:09 - 2014-11-17 19:12 - 03437632 _____ () C:\WINDOWS\system32\atiumd6a.cap 2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat 2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat 2014-11-20 16:09 - 2014-11-17 19:06 - 00839168 _____ (AMD) C:\WINDOWS\system32\coinst_14.30.dll 2014-11-20 16:09 - 2014-11-17 19:01 - 03471376 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap 2014-11-20 16:09 - 2014-11-17 18:55 - 01211392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2014-11-20 16:09 - 2014-11-17 18:55 - 00901120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2014-11-20 16:09 - 2014-11-17 18:54 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2014-11-20 16:09 - 2014-11-17 18:52 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2014-11-20 16:09 - 2014-11-17 18:51 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2014-11-20 16:09 - 2014-11-17 18:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2014-11-20 16:09 - 2014-09-24 07:36 - 00765851 _____ () C:\WINDOWS\system32\amdicdxx.dat 2014-11-20 16:09 - 2014-08-31 15:58 - 00322868 _____ () C:\WINDOWS\system32\ativvaxy_vi.dat 2014-11-20 16:09 - 2014-08-31 15:56 - 00321200 _____ () C:\WINDOWS\system32\ativvaxy_vi_nd.dat 2014-11-20 16:09 - 2014-08-28 22:52 - 00157224 _____ () C:\WINDOWS\system32\amde31a.dat 2014-11-20 16:09 - 2014-08-28 17:58 - 00158928 _____ () C:\WINDOWS\system32\ativce03.dat 2014-11-20 16:09 - 2014-08-14 21:19 - 00082128 _____ () C:\WINDOWS\system32\ativce02.dat 2014-11-20 16:09 - 2014-07-15 16:54 - 00290080 _____ () C:\WINDOWS\system32\ativvaxy_cz_nd.dat 2014-11-20 16:09 - 2014-07-10 21:02 - 00046128 _____ () C:\WINDOWS\system32\kapp_ci.sbin 2014-11-20 16:09 - 2014-07-10 21:02 - 00041936 _____ () C:\WINDOWS\system32\kapp_si.sbin 2014-11-20 16:09 - 2014-07-02 19:40 - 00234164 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat 2014-11-20 16:09 - 2014-07-02 19:38 - 00232752 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat 2014-11-20 16:09 - 2014-06-18 18:28 - 00140240 _____ () C:\WINDOWS\system32\samu_krnl_ci.sbin 2014-11-20 16:09 - 2014-04-01 06:21 - 00734861 _____ () C:\WINDOWS\system32\atiicdxx.dat 2014-11-20 16:09 - 2013-12-12 14:53 - 00138832 _____ () C:\WINDOWS\system32\samu_krnl_isv_ci.sbin 2014-11-20 16:09 - 2013-04-10 16:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2014-11-20 16:09 - 2013-04-10 16:34 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe 2014-11-20 16:09 - 2013-04-10 16:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat 2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat 2014-11-20 16:03 - 2014-11-20 16:07 - 286079600 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.11.2beta-64bit-win8.1-win7-nov19.exe 2014-11-19 19:26 - 2013-04-25 11:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2014-11-19 19:23 - 2014-11-19 19:25 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (1).zip 2014-11-19 19:16 - 2014-11-19 19:20 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql (1).exe 2014-11-19 16:25 - 2014-11-19 16:25 - 07882013 _____ () C:\Users\Niklas\Downloads\1406634576_iCEnhancer 3.0 Pack.rar 2014-11-19 14:58 - 2014-11-19 14:58 - 00011859 _____ () C:\Users\Niklas\Downloads\1377766248_Brain Control ver6.0.rar 2014-11-19 14:57 - 2014-11-19 14:57 - 07990833 _____ () C:\Users\Niklas\Downloads\1391535720_1391345301_GTATerminalsIVHostages.zip 2014-11-19 14:14 - 2014-11-19 14:14 - 00006054 _____ () C:\Users\Niklas\Downloads\1411200668_Robbery Mod V2.rar 2014-11-19 13:58 - 2014-11-19 13:58 - 00023706 _____ () C:\Users\Niklas\Downloads\Logs.Rar 2014-11-19 13:50 - 2014-11-19 13:51 - 00033255 _____ () C:\Users\Niklas\Downloads\Addition.txt 2014-11-19 13:47 - 2014-11-23 17:16 - 00000000 ____D () C:\FRST 2014-11-19 13:47 - 2014-11-23 00:23 - 00035550 _____ () C:\Users\Niklas\Downloads\FRST.txt 2014-11-19 13:46 - 2014-11-23 00:22 - 02118144 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64.exe 2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip 2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip 2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip 2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe 2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar 2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe 2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar 2014-11-16 13:24 - 2014-11-19 18:26 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml 2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC 2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe 2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe 2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games 2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos 2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe 2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip 2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip 2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup 2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe 2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe 2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe 2014-11-06 01:44 - 2014-11-20 19:01 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live 2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe 2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games 2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe 2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar 2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD 2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip 2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe 2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe 2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft 32x MC18.zip 2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip 2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe 2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe 2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe 2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe 2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip 2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe 2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe 2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames 2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-23 16:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-11-23 15:57 - 2013-08-22 16:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-11-23 15:56 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-11-23 15:18 - 2014-09-24 07:16 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-11-23 15:18 - 2014-09-24 06:43 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-11-23 15:18 - 2014-09-24 06:43 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-11-23 15:16 - 2013-08-22 15:46 - 00038798 _____ () C:\WINDOWS\setupact.log 2014-11-23 11:52 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-11-23 00:07 - 2014-09-23 22:06 - 00002788 _____ () C:\WINDOWS\PFRO.log 2014-11-23 00:07 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-11-23 00:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-11-22 23:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-11-22 23:51 - 2014-09-24 16:19 - 00000000 ___HD () C:\$Windows.~BT 2014-11-22 23:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-11-22 23:34 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default 2014-11-22 23:32 - 2013-08-22 15:44 - 00338016 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-11-22 23:28 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery 2014-11-22 23:28 - 2013-08-22 16:37 - 00002664 _____ () C:\WINDOWS\DtcInstall.log 2014-11-22 23:21 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-11-22 23:18 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp Some content of TEMP: ==================== C:\Users\Niklas\AppData\Local\Temp\Quarantine.exe C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-22 23:23 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- Und noch die Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-11-2014 Ran by Niklas at 2014-11-23 17:17:03 Running from C:\Users\Niklas\Downloads\FRST-OlderVersion Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.3.53 - Conexant) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10240 - Realtek Semiconductor Corp.) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 23-11-2014 10:52:49 DirectX wurde installiert ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (whitelisted) ============= 2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 01171456 _____ () D:\Steam\libavcodec-56.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00332800 _____ () D:\Steam\libavresample-2.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00442368 _____ () D:\Steam\libavutil-54.dll 2014-11-13 14:34 - 2014-11-11 19:47 - 00774656 _____ () D:\Steam\SDL2.dll 2014-11-19 19:31 - 2014-11-18 21:23 - 02227904 _____ () D:\Steam\video.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00403968 _____ () D:\Steam\libavformat-56.dll 2014-11-13 14:34 - 2014-11-11 19:48 - 00485888 _____ () D:\Steam\libswscale-3.dll 2014-11-19 19:31 - 2014-11-18 21:23 - 00690880 _____ () D:\Steam\bin\chromehtml.DLL 2014-11-13 14:34 - 2014-11-11 19:48 - 34589888 _____ () D:\Steam\bin\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Niklas\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3923384574-3896416257-2954023665-500 - Administrator - Disabled) Gast (S-1-5-21-3923384574-3896416257-2954023665-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3923384574-3896416257-2954023665-1003 - Limited - Enabled) Niklas (S-1-5-21-3923384574-3896416257-2954023665-1001 - Administrator - Enabled) => C:\Users\Niklas ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/23/2014 05:08:37 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (11/23/2014 03:21:26 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (11/23/2014 03:21:25 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (11/23/2014 11:55:32 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: t6mp.exe, Version: 1.0.0.1, Zeitstempel: 0x536e8fb4 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x18b8 Startzeit der fehlerhaften Anwendung: 0xt6mp.exe0 Pfad der fehlerhaften Anwendung: t6mp.exe1 Pfad des fehlerhaften Moduls: t6mp.exe2 Berichtskennung: t6mp.exe3 Vollständiger Name des fehlerhaften Pakets: t6mp.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: t6mp.exe5 Error: (11/23/2014 11:54:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: t6mp.exe, Version: 1.0.0.1, Zeitstempel: 0x536e8fb4 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x1a28 Startzeit der fehlerhaften Anwendung: 0xt6mp.exe0 Pfad der fehlerhaften Anwendung: t6mp.exe1 Pfad des fehlerhaften Moduls: t6mp.exe2 Berichtskennung: t6mp.exe3 Vollständiger Name des fehlerhaften Pakets: t6mp.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: t6mp.exe5 Error: (11/23/2014 00:17:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x7ec Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Vollständiger Name des fehlerhaften Pakets: mbam.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5 Error: (11/23/2014 00:16:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x12d8 Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Vollständiger Name des fehlerhaften Pakets: mbam.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5 Error: (11/23/2014 00:16:46 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0xee4 Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Vollständiger Name des fehlerhaften Pakets: mbam.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5 System errors: ============= Error: (11/23/2014 03:20:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kaspersky Anti-Virus Service 15.0.1" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/23/2014 11:53:07 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250. Error: (11/23/2014 00:39:02 AM) (Source: KLIF) (EventID: 0) (User: ) Description: Ñonnection is not established Error: (11/23/2014 00:39:02 AM) (Source: KLIF) (EventID: 0) (User: ) Description: Ñonnection is not established Error: (11/23/2014 00:39:01 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: %%1 Error: (11/23/2014 00:22:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (11/23/2014 00:22:22 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (11/23/2014 00:21:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (11/23/2014 00:21:22 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (11/23/2014 00:20:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Microsoft Office Sessions: ========================= Error: (11/23/2014 05:08:37 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (11/23/2014 03:21:26 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe Error: (11/23/2014 03:21:25 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe Error: (11/23/2014 11:55:32 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: t6mp.exe1.0.0.1536e8fb4unknown0.0.0.000000000c00000050000000018b801d0070c009ab28eD:\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exeunknown3e7e25b4-72ff-11e4-8251-142d27f3a596 Error: (11/23/2014 11:54:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: t6mp.exe1.0.0.1536e8fb4unknown0.0.0.000000000c0000005000000001a2801d0070bd7df87eeD:\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exeunknown170692b1-72ff-11e4-8251-142d27f3a596 Error: (11/23/2014 00:17:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd7ec01d006aa6d8905a8D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dllab3f1af6-729d-11e4-8251-142d27f3a596 Error: (11/23/2014 00:16:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd12d801d006aa69267e8fD:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dlla6def652-729d-11e4-8251-142d27f3a596 Error: (11/23/2014 00:16:46 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdee401d006aa629566c8D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dlla0504101-729d-11e4-8251-142d27f3a596 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage of memory in use: 28% Total physical RAM: 8092.85 MB Available physical RAM: 5794.29 MB Total Pagefile: 10012.85 MB Available Pagefile: 7226.05 MB Total Virtual: 131072 MB Available Virtual: 131071.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.66 GB) (Free:65.09 GB) NTFS Drive d: (Daten) (Fixed) (Total:367.13 GB) (Free:300.18 GB) NTFS Drive f: () (Removable) (Total:3.69 GB) (Free:0.38 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9FA2484) Partition 1: (Active) - (Size=1000 MB) - (Type=0B) Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=367.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ |
24.11.2014, 17:46 | #12 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke Werbung welches Problem?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.11.2014, 20:01 | #13 |
| Egal wo ich hin klicke Werbung Und zwar das z.b weiss nicht obsn Virus ist undzwar manchmal wenn ich grade z.b Black ops2 oder so zocke dann aufeinmal schmiert mein rechner ab mit der meldung Windows funktioniert nichtmehr drsql oderso und da habe ich mir heute was gedownlaodet so habe ich aber gemerkt das ist kompletter bullshit habs runtergeworfen aber der hat eine millde toolbars undso installiert habe ich alle mit revo entfernt aber z.b so werbung komm wenn ich grade ein video schaue oder einfach nur auf einer website bin z.b irgendsone arzt werbung mache ich die zu kommt die 10 sekunden später wieder |
25.11.2014, 16:33 | #14 |
/// the machine /// TB-Ausbilder | Egal wo ich hin klicke Werbung Wenn Du das gerade erst gemacht hast mit dem Download dann kannste MBAM; AdwCleaner und JRT nochmal laufen lassen. Und ich würd mal aufhören irgendwas einfach so zu laden, sonst drehen wir uns hier im Kreis
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Egal wo ich hin klicke Werbung |
ads, blöd, browser, fake, java, klicke, mcaffe, neue, neuen, neuer, neues, nichts, problem, scan, scanner, tracking, trojaner, trojaner board, version, virenscanner, virus, werbung, youtube, öffnen, öffnet |