|
Plagegeister aller Art und deren Bekämpfung: Ein Bilschirm flackert Braun nach GameWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
01.01.2015, 01:50 | #1 |
| Ein Bilschirm flackert Braun nach Game Hi, ich habe seit zwei Tagen ein Problem. Ich habe letztens meine alte Festplatte an den pc angeschlossen um etwas nachzuschauen. Als ich die Platte wieder abgestöpselt hatte kam es nach oder in einem Spiel zu einem flackerndem braunen oder blauem Bildschirm, nach Neustart ist wieder alles ok. Aber nur der hauptbildschirm. Der andere lief noch einwandfrei. Nachdem ich das hdmi Kabel ausgesteckt hatte, ist das Bild auf den zweiten Monitor umgesprungen. Kann es sein, dass es sich hierbei um einen Virus handelt oder eher ein hardwaredefekt?? Die Temperaturen im pc sind perfekt, daran kann es nicht liegen. MfG |
01.01.2015, 06:04 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach Game Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
01.01.2015, 13:25 | #3 |
| Ein Bilschirm flackert Braun nach Game FRST Logfile:
__________________FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-12-2014 Ran by Daniel (administrator) on DANIEL on 01-01-2015 13:19:57 Running from C:\Users\Daniel\Downloads Loaded Profile: Daniel (Available profiles: Daniel) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Abengine) C:\Program Files (x86)\Flowsurf\abengine.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwtxapps.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxcon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Dropbox, Inc.) C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (GameRanger Technologies) C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe (Farbar) C:\Users\Daniel\Downloads\FRST64 (1).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1626752 2014-11-14] (Bitdefender) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-04-23] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694040 2014-07-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790344 2014-11-14] (Bitdefender) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {842191ec-09de-11e4-824c-806e6f6e6963} - "F:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {9943727d-0f47-11e4-8250-d850e6519a4e} - "F:\HTC_Sync_Manager_PC.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe () Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk ShortcutTarget: GameRanger.lnk -> C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251 SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Winsock: Catalog9 01 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 02 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 03 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 04 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 15 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9-x64 01 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 02 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 03 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 04 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 15 C:\Windows\system32\abengine64.dll [370584] (Abengine) Hosts: 127.0.0.1 activate.adobe.com Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default FF NewTab: chrome://quick_start/content/index.html FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml FF Extension: YouTube Unblocker - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\youtubeunblocker@unblocker.yt [2014-11-20] FF Extension: Download videos and MP3s from YouTube - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900} [2014-12-16] FF Extension: Best Proxy Switcher - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2014-07-31] FF Extension: {661c711b-72a6-4940-8afb-f6cd913c7261} - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{661c711b-72a6-4940-8afb-f6cd913c7261}.xpi [2014-07-20] FF Extension: HTML5 Addon - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{9cea8a64-81e9-4297-9e4d-7e91d8f805a8}.xpi [2014-07-23] FF Extension: Adblock Plus - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-12] FF HKLM-x32\...\Firefox\Extensions: [jid1-tofUlNEIFlkUIA@jetpack] - C:\Program Files (x86)\Flowsurf\jid1-tofUlNEIFlkUIA@jetpack FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2014-12-31] FF HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-16] Chrome: ======= CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-22] CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22] CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-22] CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-22] CHR Extension: (Adblock Plus) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-11-23] CHR Extension: (Google-Suche) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-22] CHR Extension: (Bitdefender Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2014-12-31] CHR Extension: (Google Tabellen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-22] CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] CHR Extension: (Bitdefender QuickScan) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie [2014-12-31] CHR Extension: (Google Mail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-22] CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 abengine; C:\Program Files (x86)\Flowsurf\abengine.exe [1337080 2014-11-14] (Abengine) [File not signed] R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-23] (Advanced Micro Devices, Inc.) [File not signed] R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) S2 InjectorService; C:\Program Files (x86)\Flowsurf\ijs.exe [163840 2014-11-14] () [File not signed] R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1527360 2014-11-14] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1288472 2014-09-25] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-05-16] (BitDefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-01 13:19 - 2015-01-01 13:19 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (1).exe 2014-12-31 23:03 - 2014-12-31 23:03 - 00000385 _____ () C:\Users\Daniel\AppData\Roaminguser_gensett.xml 2014-12-31 18:02 - 2014-12-31 18:02 - 00263032 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2014-12-31 18:02 - 00000000 ____D () C:\ProgramData\BDLogging 2014-12-31 18:01 - 2014-12-31 18:01 - 00484866 _____ () C:\ProgramData\1420045184.bdinstall.bin 2014-12-31 18:01 - 2014-12-31 18:01 - 00002213 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Plus 2015.lnk 2014-12-31 18:01 - 2014-12-31 18:01 - 00000385 _____ () C:\Windows\system32\user_gensett.xml 2014-12-31 18:01 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 2014-12-31 18:01 - 2014-09-25 15:57 - 01288472 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys 2014-12-31 18:01 - 2014-05-16 13:04 - 00647752 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys 2014-12-31 18:01 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2014-12-31 18:00 - 2014-12-31 18:06 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Bitdefender 2014-12-31 17:59 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Bitdefender 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\QuickScan 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Bitdefender 2014-12-31 17:59 - 2014-10-15 16:14 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2014-12-31 17:59 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll 2014-12-31 17:59 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll 2014-12-31 17:59 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys 2014-12-31 17:57 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus.exe 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus (1).exe 2014-12-31 17:55 - 2014-12-31 17:55 - 00000000 _____ () C:\Users\Daniel\Desktop\J40LX3E.txt 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller.exe 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller (1).exe 2014-12-31 02:55 - 2014-12-31 02:56 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41 (1).zip 2014-12-31 02:54 - 2014-12-31 02:54 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41.zip 2014-12-31 02:51 - 2014-12-31 02:51 - 00003445 _____ () C:\Users\Daniel\Desktop\JRT.txt 2014-12-31 02:45 - 2014-12-31 02:45 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT.exe 2014-12-31 02:45 - 2014-12-31 02:45 - 00000000 ____D () C:\Windows\ERUNT 2014-12-31 02:44 - 2014-12-31 02:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106.exe 2014-12-31 02:42 - 2014-12-31 02:42 - 00036035 _____ () C:\Users\Daniel\Downloads\Addition.txt 2014-12-31 02:41 - 2015-01-01 13:19 - 00021895 _____ () C:\Users\Daniel\Downloads\FRST.txt 2014-12-31 02:41 - 2015-01-01 13:19 - 00000000 ____D () C:\FRST 2014-12-31 02:41 - 2014-12-31 02:41 - 01114624 _____ (Farbar) C:\Users\Daniel\Downloads\FRST.exe 2014-12-31 02:40 - 2014-12-31 02:41 - 01958440 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64.exe 2014-12-31 02:40 - 2014-12-31 02:40 - 00000000 __SHD () C:\Users\Daniel\AppData\Local\EmieBrowserModeList 2014-12-30 13:17 - 2014-12-31 18:02 - 00000000 ____D () C:\Windows\Minidump 2014-12-28 10:02 - 2014-12-28 10:02 - 00000000 ____D () C:\Users\Daniel\Documents\Heroes of the Storm 2014-12-28 09:45 - 2014-12-28 09:45 - 00001207 _____ () C:\Users\Public\Desktop\Heroes of the Storm.lnk 2014-12-28 09:45 - 2014-12-28 09:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2014-12-28 09:40 - 2015-01-01 00:11 - 00000000 ____D () C:\Program Files (x86)\Heroes of the Storm 2014-12-28 09:40 - 2014-12-28 09:40 - 03083832 _____ (Blizzard Entertainment) C:\Users\Daniel\Downloads\Heroes-of-the-Storm-Setup-deDE.exe 2014-12-28 09:38 - 2014-12-28 09:38 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument.txt 2014-12-27 11:47 - 2014-12-27 11:49 - 129201056 _____ (Mad catz ) C:\Users\Daniel\Downloads\Smart Technology 7_0_27_13 64Bit (1).exe 2014-12-25 11:28 - 2014-12-25 11:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-12-25 10:49 - 2014-12-25 10:49 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2014-12-21 14:24 - 2014-12-21 14:05 - 26041848 _____ (ArenaNet) C:\Users\Daniel\Desktop\Gw2.exe 2014-12-21 14:05 - 2014-12-21 14:12 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Guild Wars 2 2014-12-20 13:54 - 2014-12-20 13:54 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (3).exe 2014-12-20 13:53 - 2014-12-20 21:12 - 17592341 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 164366.crdownload 2014-12-20 13:39 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Desktop\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:55 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:54 - 2014-12-20 21:12 - 42449642 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.0_12A365_Restore.ipsw.crdownload 2014-12-20 12:49 - 2014-12-20 12:50 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (1).exe 2014-12-20 12:47 - 2014-12-20 12:47 - 16969459 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 906072.crdownload 2014-12-20 12:45 - 2014-12-20 13:54 - 00000000 ____D () C:\Users\Daniel\AppData\Local\pangu 2014-12-20 12:44 - 2014-12-20 12:45 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1.exe 2014-12-20 11:56 - 2014-12-20 11:56 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2014-12-19 12:06 - 2014-12-22 16:37 - 00000000 ____D () C:\Users\Daniel\Documents\Euro Truck Simulator 2 2014-12-19 00:15 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-12-19 00:15 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-12-19 00:15 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-12-19 00:15 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-12-19 00:15 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-12-19 00:15 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-12-19 00:15 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-12-19 00:15 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-12-19 00:15 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-12-19 00:15 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-12-19 00:15 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-12-19 00:15 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-12-19 00:15 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FiraxisLive 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Local\My Games 2014-12-16 20:42 - 2014-12-16 20:42 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack 2014-12-16 16:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-12-16 16:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-12-14 15:14 - 2014-12-14 15:14 - 00105103 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(11).SC2Replay 2014-12-14 15:14 - 2014-12-14 15:14 - 00073723 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(2).SC2Replay 2014-12-13 12:48 - 2014-12-13 12:48 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-11 19:54 - 2014-12-11 19:54 - 00000342 _____ () C:\Windows\Tasks\1214avUpdateInfo.job 2014-12-11 19:54 - 2014-12-11 19:54 - 00000000 ____D () C:\ProgramData\Avg_Update_1214av 2014-12-10 17:59 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-12-10 17:59 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-12-10 17:48 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-10 17:48 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-10 17:48 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-12-10 17:48 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-12-10 17:48 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-10 17:48 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-12-10 17:48 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-10 17:48 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-12-10 17:48 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-10 17:48 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-12-10 17:48 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-10 17:48 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-10 17:48 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-10 17:48 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-10 17:48 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-10 17:48 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-10 17:48 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-12-10 17:48 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-12-10 17:48 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2014-12-08 16:46 - 2014-12-08 16:46 - 00000000 _____ () C:\Users\Daniel\Desktop\Donnerstag. 1630.txt 2014-12-02 21:26 - 2015-01-01 13:17 - 00000000 ___RD () C:\Users\Daniel\Dropbox 2014-12-02 21:26 - 2014-12-16 16:55 - 00001068 _____ () C:\Users\Daniel\Desktop\Dropbox.lnk 2014-12-02 21:25 - 2015-01-01 13:17 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Dropbox 2014-12-02 21:25 - 2014-12-16 16:55 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-02 21:25 - 2014-12-02 21:25 - 00323712 _____ (Dropbox, Inc.) C:\Users\Daniel\Downloads\DropboxInstaller.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-01 13:20 - 2014-07-22 20:44 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe 2015-01-01 13:19 - 2014-08-22 16:01 - 00507068 _____ () C:\Windows\system32\perfh012.dat 2015-01-01 13:19 - 2014-08-22 16:01 - 00135332 _____ () C:\Windows\system32\perfc012.dat 2015-01-01 13:19 - 2014-07-12 17:12 - 02419892 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-01 13:19 - 2013-08-23 00:24 - 00764340 _____ () C:\Windows\system32\perfh007.dat 2015-01-01 13:19 - 2013-08-23 00:24 - 00159160 _____ () C:\Windows\system32\perfc007.dat 2015-01-01 13:18 - 2014-11-16 22:36 - 00005132 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel 2015-01-01 13:18 - 2014-08-01 22:15 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype 2015-01-01 13:17 - 2014-11-22 13:32 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-01 13:17 - 2014-08-17 18:01 - 02023586 _____ () C:\Windows\WindowsUpdate.log 2015-01-01 13:17 - 2014-08-12 12:39 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-01 13:17 - 2014-07-12 17:12 - 00000000 __RDO () C:\Users\Daniel\SkyDrive 2015-01-01 13:15 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-01 01:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-01-01 00:11 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Battle.net 2014-12-31 23:03 - 2014-08-12 12:39 - 00000000 ____D () C:\ProgramData\Origin 2014-12-31 23:03 - 2014-08-02 13:43 - 00000000 ____D () C:\Users\Daniel\AppData\Local\ContextFree 2014-12-31 23:02 - 2014-07-12 17:16 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3022826111-304677005-3146164483-1001 2014-12-31 23:02 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel 2014-12-31 22:58 - 2014-08-22 12:18 - 00035844 _____ () C:\Windows\PFRO.log 2014-12-31 22:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-12-31 22:37 - 2014-11-22 13:32 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-12-31 22:08 - 2014-07-12 17:57 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-12-31 20:53 - 2014-08-02 13:42 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-12-31 18:02 - 2014-10-05 13:06 - 00000000 ____D () C:\Users\Daniel\Documents\ArcheAge 2014-12-31 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-12-31 17:59 - 2014-09-18 15:44 - 00000000 ____D () C:\Users\Daniel\Documents\Mein Steuer-Sparbuch Heute 2014-12-31 17:59 - 2014-08-06 16:58 - 00000000 ____D () C:\ProgramData\AVG2014 2014-12-31 17:59 - 2014-08-06 16:57 - 00000000 ____D () C:\ProgramData\MFAData 2014-12-31 17:58 - 2014-08-06 16:58 - 00000000 ___HD () C:\$AVG 2014-12-31 17:58 - 2014-08-06 16:57 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Avg2014 2014-12-31 17:54 - 2014-08-06 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-31 17:47 - 2014-08-02 13:41 - 00000000 ____D () C:\Program Files (x86)\Flowsurf 2014-12-31 02:36 - 2014-11-20 15:53 - 00004232 _____ () C:\Windows\SysWOW64\abengine.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\SysWOW64\abengineOff.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\system32\abengineOff.ini 2014-12-31 02:36 - 2014-08-02 13:41 - 00000002 _____ () C:\END 2014-12-31 01:30 - 2014-07-12 17:16 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{663495AA-6A9A-4918-A8B5-35D7C54F64AD} 2014-12-30 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-12-29 23:42 - 2014-07-12 17:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-12-29 12:35 - 2014-07-12 19:06 - 00000000 ____D () C:\Users\Daniel\Documents\StarCraft II 2014-12-29 11:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-12-28 10:02 - 2014-07-12 17:52 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-12-28 10:01 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Battle.net 2014-12-26 19:52 - 2014-07-12 19:06 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-12-23 10:19 - 2014-11-16 22:26 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-12-22 17:41 - 2014-09-27 15:16 - 00004803 _____ () C:\Windows\setupact.log 2014-12-22 16:05 - 2014-07-12 17:28 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-12-20 12:04 - 2014-11-01 16:23 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Apple Computer 2014-12-19 16:40 - 2014-09-18 16:46 - 00000000 ____D () C:\Users\Daniel\Desktop\Berichtsheft 2014-12-19 00:15 - 2014-10-04 19:45 - 00034472 _____ () C:\Windows\DirectX.log 2014-12-18 22:25 - 2014-07-12 17:33 - 00000000 ____D () C:\Users\Daniel\Documents\my games 2014-12-17 22:11 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-12-16 20:42 - 2014-10-25 21:08 - 00001452 _____ () C:\Users\Public\Desktop\Free YouTube Download.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00001255 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-12-16 16:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-12-14 11:12 - 2014-09-30 15:08 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-14 11:12 - 2014-08-01 22:14 - 00000000 ____D () C:\ProgramData\Skype 2014-12-13 15:48 - 2014-07-12 17:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-12-13 13:38 - 2014-11-22 13:32 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-13 12:48 - 2014-07-19 03:47 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat 2014-12-13 12:48 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-12-10 19:02 - 2014-07-14 17:20 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-10 19:00 - 2014-07-14 17:20 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-12-10 17:46 - 2014-08-11 15:01 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-12-09 19:08 - 2014-11-25 20:08 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-12-09 19:08 - 2014-07-12 17:57 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-12-07 21:55 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Packages Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcrav3p.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-12-31 10:42 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-12-2014 Ran by Daniel at 2015-01-01 14:02:28 Running from C:\Users\Daniel\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.7.0.413 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BioShock (HKLM-x32\...\Steam App 7670) (Version: - 2K Boston) BioShock 2 (HKLM-x32\...\Steam App 8850) (Version: - 2K Marin) Bitdefender Antivirus Plus 2015 (HKLM\...\Bitdefender) (Version: 18.19.0.1369 - Bitdefender) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.2.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.00 - Canon Inc.) Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - The Behemoth) Catalyst Control Center (HKLM-x32\...\{8B1A559A-FB9D-42F5-A8A7-2F132CF28414}) (Version: 1.00.0000 - ) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory) Dropbox (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) Five Nights at Freddy's 2 (HKLM-x32\...\Steam App 332800) (Version: - Scott Cawthon) Free YouTube Download version 3.2.49.1122 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.49.1122 - DVDVideoSoft Ltd.) Game Dev Tycoon (HKLM-x32\...\Steam App 239820) (Version: - Greenheart Games) Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) GameRanger (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\GameRanger) (Version: - GameRanger Technologies) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.20.386 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{daa18f33-8bf1-42a3-8285-36e50c543cf0}) (Version: latest - ppy Pty Ltd) PROTOTYPE 2 (HKLM-x32\...\Steam App 115320) (Version: - Radical Entertainment) Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.) Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold Crusader HD (HKLM-x32\...\Steam App 40970) (Version: - FireFly Studios) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) The Crew (Beta) (HKLM-x32\...\Uplay Install 750) (Version: - Ubisoft) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.7 - Ubisoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.10 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{088C8E7D-6E7B-422C-81C2-B8A94F347D0A}) (Version: 21.08.8679 - Buhl Data Service GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 16-12-2014 17:44:12 Windows Update 19-12-2014 00:14:29 DirectX wurde installiert 26-12-2014 20:13:33 Geplanter Prüfpunkt 31-12-2014 17:57:37 Removed AVG 2014 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2014-08-02 13:23 - 00000852 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0AA4ABB5-1FC5-4D31-B296-31A3CC8C9531} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-daniel.schnepf23@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {1923AE2A-EA82-46F8-BA2C-757A9DA71509} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-11-12] (Microsoft Corporation) Task: {26912266-7EB5-44C4-AEF7-8855B27EB5FF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {3724B1CF-BFEA-4450-B7DD-234CAC4BD2D6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {3AA1576F-E906-4BEC-B02D-B09D3C8A83FB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09] (Adobe Systems Incorporated) Task: {4406E983-08E0-4B3C-BF18-FC0C5674C06B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {510752AD-1DAF-419B-9F95-8D1753CD4957} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {662D3BEC-2C69-41A8-97CE-A0508443D3A5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {73D6D100-DF72-4091-B46B-93834FF3EB36} - System32\Tasks\fsupdate => C:\PROGRA~2\Flowsurf\fsupd.exe <==== ATTENTION Task: {8A8054D5-9B6A-4A0F-804F-57AAF2FE52D3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {AD5A4E96-E1FE-41EA-B495-6BE715C04DF1} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation) Task: {AE38D973-C8C6-4476-AB18-E283F7DC6D59} - System32\Tasks\{8E832DF4-5D9C-4986-8622-F54A69F76309} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.18.60.106/de/abandoninstall?page=tsProgressBar Task: {B103A3D5-F78B-4001-97E6-3ED423C13EC2} - System32\Tasks\{58DA7FDA-34BA-44E3-80F2-0626F8BED310} => pcalua.exe -a C:\Users\Daniel\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=amt Task: {B633F5AC-E379-4321-BDE9-834BDC370BE6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {B82D5226-BFC3-4CF8-8DC4-BEB9A5ED8D89} - System32\Tasks\{EEF982D5-BF1C-4DBD-ADE1-796DACDAD29F} => pcalua.exe -a C:\Users\Daniel\Downloads\WISOSteuersoftware2014_Testversion.exe -d C:\Users\Daniel\Downloads Task: {D2836626-67BE-4C23-BF69-10C8A36BB208} - System32\Tasks\upfs7214 => C:\PROGRA~2\Flowsurf\upfs7214.exe <==== ATTENTION Task: {E891375B-DA08-4A27-A0C8-3F61582B885F} - System32\Tasks\{AF40F9D0-2F6C-4E6B-8443-66E51D25AEA9} => pcalua.exe -a C:\Users\Daniel\Downloads\Range_RAT7_SD7_0_20_0_64Bit_Drivers.exe -d C:\Users\Daniel\Downloads Task: C:\Windows\Tasks\0614aUpdateInfo.job => C:\ProgramData\Avg_Update_0614a\0614a_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\0814avUpdateInfo.job => C:\ProgramData\Avg_Update_0814av\0814av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1114avUpdateInfo.job => C:\ProgramData\Avg_Update_1114av\1114av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1214avUpdateInfo.job => C:\ProgramData\Avg_Update_1214av\1214av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-12-31 18:01 - 2014-08-27 16:31 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll 2014-12-31 18:01 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll 2014-12-31 18:01 - 2014-11-19 20:28 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui 2014-12-31 18:01 - 2014-07-24 09:44 - 00780592 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpbr.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpdsp.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 02602680 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpph.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 01323408 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttprbl.mdl 2014-04-23 03:52 - 2014-04-23 03:52 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 00814592 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-11-16 22:26 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-06-25 15:51 - 2014-06-25 15:51 - 00672416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2014-09-18 15:59 - 2014-07-02 09:13 - 01427736 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe 2014-04-23 03:52 - 2014-04-23 03:52 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-06-25 15:50 - 2014-06-25 15:50 - 05558944 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2014-10-11 13:06 - 2014-10-11 13:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 01007104 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00023552 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00024576 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00216576 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00261120 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00019456 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00337408 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libglesv2.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libegl.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\pdf.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 09789208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wgui14.dll 2014-09-18 15:58 - 2014-07-02 09:14 - 03880216 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wcore14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00035608 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsdcom48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00322840 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsguiwinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00309016 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rscorewinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02738456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfvie14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 01043456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-core.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00250368 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-contribs-lib.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00136472 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsodbc48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02116376 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wsteu14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01932568 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wreli14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00094720 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-shared.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 04326168 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wauff14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01564952 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wmain14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 05291288 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01698584 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01809688 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae314.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01627928 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae414.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01117976 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01341208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01309464 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wwerb14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 07340824 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wkont14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01286936 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wimp14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01331480 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfabu14.dll 2014-07-03 05:45 - 2014-07-03 05:45 - 32733056 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00750080 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-01-01 13:17 - 2015-01-01 13:17 - 00043008 _____ () c:\users\daniel\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcrav3p.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00047616 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libEGL.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00863744 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00200704 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2012-12-07 15:16 - 2012-12-07 15:16 - 22224096 _____ () C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger Prefs\Components\libcef.dll 2014-07-03 05:45 - 2014-07-03 05:45 - 00742784 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libglesv2.dll 2014-07-03 05:45 - 2014-07-03 05:45 - 00136576 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libegl.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 14913352 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Daniel\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Daniel\Downloads\FRST64 (1).exe:BDU AlternateDataStreams: C:\Users\Daniel\Downloads\FRST64 (2).exe:BDU ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine => ""="service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3022826111-304677005-3146164483-500 - Administrator - Disabled) Daniel (S-1-5-21-3022826111-304677005-3146164483-1001 - Administrator - Enabled) => C:\Users\Daniel Gast (S-1-5-21-3022826111-304677005-3146164483-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3022826111-304677005-3146164483-1003 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (12/31/2014 05:57:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (12/31/2014 05:51:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: qsinstaller (1).exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Name des fehlerhaften Moduls: qsinstaller (1).exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Ausnahmecode: 0xc0000417 Fehleroffset: 0x00001ec9 ID des fehlerhaften Prozesses: 0x1ae0 Startzeit der fehlerhaften Anwendung: 0xqsinstaller (1).exe0 Pfad der fehlerhaften Anwendung: qsinstaller (1).exe1 Pfad des fehlerhaften Moduls: qsinstaller (1).exe2 Berichtskennung: qsinstaller (1).exe3 Vollständiger Name des fehlerhaften Pakets: qsinstaller (1).exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: qsinstaller (1).exe5 Error: (12/31/2014 05:51:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: qsinstaller.exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Name des fehlerhaften Moduls: qsinstaller.exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Ausnahmecode: 0xc0000417 Fehleroffset: 0x00001ec9 ID des fehlerhaften Prozesses: 0x21a8 Startzeit der fehlerhaften Anwendung: 0xqsinstaller.exe0 Pfad der fehlerhaften Anwendung: qsinstaller.exe1 Pfad des fehlerhaften Moduls: qsinstaller.exe2 Berichtskennung: qsinstaller.exe3 Vollständiger Name des fehlerhaften Pakets: qsinstaller.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: qsinstaller.exe5 System errors: ============= Error: (01/01/2015 01:15:18 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 01.01.2015 um 00:58:57 unerwartet heruntergefahren. Error: (01/01/2015 01:29:21 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} Error: (01/01/2015 01:29:08 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (12/31/2014 10:58:57 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 31.12.2014 um 22:39:21 unerwartet heruntergefahren. Error: (12/31/2014 05:47:32 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 31.12.2014 um 17:21:24 unerwartet heruntergefahren. Error: (12/31/2014 10:08:23 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Microsoft Office Sessions: ========================= Error: (12/31/2014 05:57:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert Error: (12/31/2014 05:51:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: qsinstaller (1).exe0.0.0.05491af1cqsinstaller (1).exe0.0.0.05491af1cc000041700001ec91ae001d0251a0fce3b73C:\Users\Daniel\Downloads\qsinstaller (1).exeC:\Users\Daniel\Downloads\qsinstaller (1).exe4d7e5a61-910d-11e4-8276-d850e6519a4e Error: (12/31/2014 05:51:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: qsinstaller.exe0.0.0.05491af1cqsinstaller.exe0.0.0.05491af1cc000041700001ec921a801d0251a053b4d25C:\Users\Daniel\Downloads\qsinstaller.exeC:\Users\Daniel\Downloads\qsinstaller.exe42f13782-910d-11e4-8276-d850e6519a4e CodeIntegrity Errors: =================================== Date: 2014-08-03 14:36:41.044 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.975 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.902 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.825 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.756 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.686 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.058 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.937 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.808 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.693 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD FX(tm)-8320 Eight-Core Processor Percentage of memory in use: 41% Total physical RAM: 8089.46 MB Available physical RAM: 4733.59 MB Total Pagefile: 16281.46 MB Available Pagefile: 12179.07 MB Total Virtual: 131072 MB Available Virtual: 131071.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.25 GB) (Free:343.51 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:452.49 GB) NTFS Drive e: (IRM_CCSA_X64FRE_DE-DE_DV5) (CDROM) (Total:3.68 GB) (Free:0 GB) UDF Drive g: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive k: (Volume) (Fixed) (Total:465.66 GB) (Free:465.18 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E79EE19D) Partition 1: (Not Active) - (Size=993 KB) - (Type=42) Partition 2: (Active) - (Size=100 MB) - (Type=42) Partition 3: (Not Active) - (Size=465.7 GB) - (Type=42) ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 403EC1C0) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 465.8 GB) (Disk ID: A9875BD9) Partition: GPT Partition Type. ==================== End Of Log ============================ Habe noch das JRT laufen lassen: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.1 (12.28.2014:1) OS: Windows 8.1 Pro x64 Ran by Daniel on 31.12.2014 at 2:45:41,22 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services Successfully stopped: [Service] iepluginservices Successfully deleted: [Service] iepluginservices ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\iepluginservices" Successfully deleted: [Folder] "C:\ProgramData\windowsmangerprotect" Failed to delete: [Folder] "C:\Program Files (x86)\Flowsurf" Failed to delete: [Folder] "C:\Program Files (x86)\flowsurf" Failed to delete: [Folder] "C:\Program Files (x86)\suptab" Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" ~~~ FireFox Successfully deleted: [File] C:\Users\Daniel\AppData\Roaming\mozilla\firefox\profiles\pn2a9blc.default\invalidprefs.js Successfully deleted: [Folder] C:\Users\Daniel\AppData\Roaming\mozilla\firefox\profiles\pn2a9blc.default\extensions\faststartff@gmail.com Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\faststartff@gmail.com Successfully deleted the following from C:\Users\Daniel\AppData\Roaming\mozilla\firefox\profiles\pn2a9blc.default\prefs.js user_pref("browser.startup.homepage", "hxxp://istart.webssearches.com/?type=hp&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251"); Emptied folder: C:\Users\Daniel\AppData\Roaming\mozilla\firefox\profiles\pn2a9blc.default\minidumps [13 files] ~~~ Chrome Successfully deleted: [Folder] C:\Users\Daniel\appdata\local\Google\Chrome\User Data\Default\Extensions\npnkeeiehehhefofiekoflfedgehcdhl ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 31.12.2014 at 2:51:35,20 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Geändert von Tasidevil (01.01.2015 um 14:03 Uhr) |
02.01.2015, 10:14 | #4 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach GameZitat:
Lesestoff: Illegale Software: Cracks, Keygens und Co Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html Es geht weiter wenn du alles Illegale entfernt hast. Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.
__________________ Logfiles bitte immer in CODE-Tags posten |
02.01.2015, 17:48 | #5 |
| Ein Bilschirm flackert Braun nach Game okay alles gelöscht FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-12-2014 Ran by Daniel (administrator) on DANIEL on 02-01-2015 17:45:35 Running from C:\Users\Daniel\Downloads Loaded Profile: Daniel (Available profiles: Daniel) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Abengine) C:\Program Files (x86)\Flowsurf\abengine.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwtxapps.exe () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Dropbox, Inc.) C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (GameRanger Technologies) C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe (Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.5383\Battle.net.exe (Blizzard Entertainment, Inc.) C:\Program Files (x86)\Heroes of the Storm\Versions\Base33353\HeroesOfTheStorm_x64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Farbar) C:\Users\Daniel\Downloads\FRST64 (2).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1626752 2014-11-14] (Bitdefender) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-04-23] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790344 2014-11-14] (Bitdefender) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {842191ec-09de-11e4-824c-806e6f6e6963} - "F:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {9943727d-0f47-11e4-8250-d850e6519a4e} - "F:\HTC_Sync_Manager_PC.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe () Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk ShortcutTarget: GameRanger.lnk -> C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies) ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251 SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Winsock: Catalog9 01 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 02 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 03 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 04 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9 15 C:\Windows\SysWOW64\abengine.dll [324720] (Abengine) Winsock: Catalog9-x64 01 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 02 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 03 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 04 C:\Windows\system32\abengine64.dll [370584] (Abengine) Winsock: Catalog9-x64 15 C:\Windows\system32\abengine64.dll [370584] (Abengine) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default FF NewTab: chrome://quick_start/content/index.html FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml FF Extension: YouTube Unblocker - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\youtubeunblocker@unblocker.yt [2014-11-20] FF Extension: Download videos and MP3s from YouTube - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900} [2014-12-16] FF Extension: Best Proxy Switcher - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2014-07-31] FF Extension: {661c711b-72a6-4940-8afb-f6cd913c7261} - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{661c711b-72a6-4940-8afb-f6cd913c7261}.xpi [2014-07-20] FF Extension: HTML5 Addon - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{9cea8a64-81e9-4297-9e4d-7e91d8f805a8}.xpi [2014-07-23] FF Extension: Adblock Plus - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-12] FF HKLM-x32\...\Firefox\Extensions: [jid1-tofUlNEIFlkUIA@jetpack] - C:\Program Files (x86)\Flowsurf\jid1-tofUlNEIFlkUIA@jetpack FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2014-12-31] FF HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-16] Chrome: ======= CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-22] CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22] CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-22] CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-22] CHR Extension: (Adblock Plus) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-11-23] CHR Extension: (Google-Suche) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-22] CHR Extension: (Bitdefender Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2014-12-31] CHR Extension: (Google Tabellen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-22] CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] CHR Extension: (Bitdefender QuickScan) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie [2014-12-31] CHR Extension: (Google Mail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-22] CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 abengine; C:\Program Files (x86)\Flowsurf\abengine.exe [1337080 2014-11-14] (Abengine) [File not signed] R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-23] (Advanced Micro Devices, Inc.) [File not signed] R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) S2 InjectorService; C:\Program Files (x86)\Flowsurf\ijs.exe [163840 2014-11-14] () [File not signed] R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1527360 2014-11-14] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1288472 2014-09-25] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-05-16] (BitDefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-02 17:44 - 2015-01-02 17:44 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument (2).txt 2015-01-02 17:41 - 2015-01-02 17:41 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument.txt 2015-01-02 17:38 - 2015-01-02 17:39 - 00000824 _____ () C:\Users\Daniel\Desktop\hosts.txt 2015-01-01 13:57 - 2015-01-01 13:58 - 09283730 _____ () C:\Users\Daniel\Downloads\Search.txt 2015-01-01 13:56 - 2015-01-01 13:56 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (2).exe 2015-01-01 13:19 - 2015-01-01 13:19 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (1).exe 2014-12-31 23:03 - 2014-12-31 23:03 - 00000385 _____ () C:\Users\Daniel\AppData\Roaminguser_gensett.xml 2014-12-31 18:02 - 2014-12-31 18:02 - 00263032 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2014-12-31 18:02 - 00000000 ____D () C:\ProgramData\BDLogging 2014-12-31 18:01 - 2014-12-31 18:01 - 00484866 _____ () C:\ProgramData\1420045184.bdinstall.bin 2014-12-31 18:01 - 2014-12-31 18:01 - 00002213 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Plus 2015.lnk 2014-12-31 18:01 - 2014-12-31 18:01 - 00000385 _____ () C:\Windows\system32\user_gensett.xml 2014-12-31 18:01 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 2014-12-31 18:01 - 2014-09-25 15:57 - 01288472 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys 2014-12-31 18:01 - 2014-05-16 13:04 - 00647752 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys 2014-12-31 18:01 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2014-12-31 18:00 - 2014-12-31 18:06 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Bitdefender 2014-12-31 17:59 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Bitdefender 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\QuickScan 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Bitdefender 2014-12-31 17:59 - 2014-10-15 16:14 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2014-12-31 17:59 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll 2014-12-31 17:59 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll 2014-12-31 17:59 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys 2014-12-31 17:57 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus.exe 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus (1).exe 2014-12-31 17:55 - 2014-12-31 17:55 - 00000000 _____ () C:\Users\Daniel\Desktop\J40LX3E.txt 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller.exe 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller (1).exe 2014-12-31 02:55 - 2014-12-31 02:56 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41 (1).zip 2014-12-31 02:54 - 2014-12-31 02:54 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41.zip 2014-12-31 02:51 - 2014-12-31 02:51 - 00003445 _____ () C:\Users\Daniel\Desktop\JRT.txt 2014-12-31 02:45 - 2014-12-31 02:45 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT.exe 2014-12-31 02:45 - 2014-12-31 02:45 - 00000000 ____D () C:\Windows\ERUNT 2014-12-31 02:44 - 2014-12-31 02:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106.exe 2014-12-31 02:42 - 2015-01-01 14:02 - 00036225 _____ () C:\Users\Daniel\Downloads\Addition.txt 2014-12-31 02:41 - 2015-01-02 17:45 - 00021046 _____ () C:\Users\Daniel\Downloads\FRST.txt 2014-12-31 02:41 - 2015-01-02 17:45 - 00000000 ____D () C:\FRST 2014-12-31 02:41 - 2014-12-31 02:41 - 01114624 _____ (Farbar) C:\Users\Daniel\Downloads\FRST.exe 2014-12-31 02:40 - 2014-12-31 02:41 - 01958440 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64.exe 2014-12-31 02:40 - 2014-12-31 02:40 - 00000000 __SHD () C:\Users\Daniel\AppData\Local\EmieBrowserModeList 2014-12-30 13:17 - 2014-12-31 18:02 - 00000000 ____D () C:\Windows\Minidump 2014-12-28 10:02 - 2014-12-28 10:02 - 00000000 ____D () C:\Users\Daniel\Documents\Heroes of the Storm 2014-12-28 09:45 - 2014-12-28 09:45 - 00001207 _____ () C:\Users\Public\Desktop\Heroes of the Storm.lnk 2014-12-28 09:45 - 2014-12-28 09:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2014-12-28 09:40 - 2015-01-02 17:02 - 00000000 ____D () C:\Program Files (x86)\Heroes of the Storm 2014-12-28 09:40 - 2014-12-28 09:40 - 03083832 _____ (Blizzard Entertainment) C:\Users\Daniel\Downloads\Heroes-of-the-Storm-Setup-deDE.exe 2014-12-27 11:47 - 2014-12-27 11:49 - 129201056 _____ (Mad catz ) C:\Users\Daniel\Downloads\Smart Technology 7_0_27_13 64Bit (1).exe 2014-12-25 11:28 - 2014-12-25 11:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-12-25 10:49 - 2014-12-25 10:49 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2014-12-21 14:24 - 2014-12-21 14:05 - 26041848 _____ (ArenaNet) C:\Users\Daniel\Desktop\Gw2.exe 2014-12-21 14:05 - 2014-12-21 14:12 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Guild Wars 2 2014-12-20 13:54 - 2014-12-20 13:54 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (3).exe 2014-12-20 13:53 - 2014-12-20 21:12 - 17592341 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 164366.crdownload 2014-12-20 13:39 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Desktop\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:55 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:54 - 2014-12-20 21:12 - 42449642 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.0_12A365_Restore.ipsw.crdownload 2014-12-20 12:49 - 2014-12-20 12:50 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (1).exe 2014-12-20 12:47 - 2014-12-20 12:47 - 16969459 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 906072.crdownload 2014-12-20 12:45 - 2014-12-20 13:54 - 00000000 ____D () C:\Users\Daniel\AppData\Local\pangu 2014-12-20 12:44 - 2014-12-20 12:45 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1.exe 2014-12-20 11:56 - 2014-12-20 11:56 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2014-12-19 12:06 - 2014-12-22 16:37 - 00000000 ____D () C:\Users\Daniel\Documents\Euro Truck Simulator 2 2014-12-19 00:15 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-12-19 00:15 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-12-19 00:15 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-12-19 00:15 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-12-19 00:15 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-12-19 00:15 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-12-19 00:15 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-12-19 00:15 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-12-19 00:15 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-12-19 00:15 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-12-19 00:15 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-12-19 00:15 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-12-19 00:15 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FiraxisLive 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Local\My Games 2014-12-16 20:42 - 2014-12-16 20:42 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack 2014-12-16 16:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-12-16 16:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-12-14 15:14 - 2014-12-14 15:14 - 00105103 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(11).SC2Replay 2014-12-14 15:14 - 2014-12-14 15:14 - 00073723 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(2).SC2Replay 2014-12-13 12:48 - 2014-12-13 12:48 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-11 19:54 - 2014-12-11 19:54 - 00000342 _____ () C:\Windows\Tasks\1214avUpdateInfo.job 2014-12-11 19:54 - 2014-12-11 19:54 - 00000000 ____D () C:\ProgramData\Avg_Update_1214av 2014-12-10 17:59 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-12-10 17:59 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-12-10 17:48 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-10 17:48 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-10 17:48 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-12-10 17:48 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-12-10 17:48 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-10 17:48 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-12-10 17:48 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-10 17:48 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-12-10 17:48 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-10 17:48 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-12-10 17:48 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-10 17:48 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-10 17:48 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-10 17:48 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-10 17:48 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-10 17:48 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-10 17:48 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-12-10 17:48 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-12-10 17:48 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-02 17:37 - 2014-11-22 13:32 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-02 17:14 - 2014-08-01 22:15 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype 2015-01-02 17:08 - 2014-07-12 17:57 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-01-02 17:02 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Battle.net 2015-01-02 17:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-01-02 13:37 - 2014-11-22 13:32 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-02 13:35 - 2014-11-16 22:36 - 00005130 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel 2015-01-02 13:33 - 2014-08-17 18:01 - 01166457 _____ () C:\Windows\WindowsUpdate.log 2015-01-02 13:24 - 2014-07-12 17:16 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3022826111-304677005-3146164483-1001 2015-01-02 13:19 - 2014-08-22 16:01 - 00507068 _____ () C:\Windows\system32\perfh012.dat 2015-01-02 13:19 - 2014-08-22 16:01 - 00135332 _____ () C:\Windows\system32\perfc012.dat 2015-01-02 13:19 - 2014-07-12 17:12 - 02419892 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-02 13:19 - 2013-08-23 00:24 - 00764340 _____ () C:\Windows\system32\perfh007.dat 2015-01-02 13:19 - 2013-08-23 00:24 - 00159160 _____ () C:\Windows\system32\perfc007.dat 2015-01-02 13:16 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel 2015-01-02 13:15 - 2014-07-22 20:46 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-02 13:15 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Adobe 2015-01-02 13:14 - 2014-12-02 21:26 - 00000000 ___RD () C:\Users\Daniel\Dropbox 2015-01-02 13:14 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Dropbox 2015-01-02 13:14 - 2014-08-12 12:39 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-02 13:14 - 2014-07-12 17:12 - 00000000 __RDO () C:\Users\Daniel\SkyDrive 2015-01-02 13:14 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-02 12:10 - 2014-07-12 17:16 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{663495AA-6A9A-4918-A8B5-35D7C54F64AD} 2015-01-02 02:52 - 2014-08-12 12:39 - 00000000 ____D () C:\ProgramData\Origin 2015-01-02 02:00 - 2014-07-22 20:44 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe 2015-01-01 13:53 - 2014-08-02 13:43 - 00000000 ____D () C:\Users\Daniel\AppData\Local\ContextFree 2014-12-31 22:58 - 2014-08-22 12:18 - 00035844 _____ () C:\Windows\PFRO.log 2014-12-31 22:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-12-31 20:53 - 2014-08-02 13:42 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-12-31 18:02 - 2014-10-05 13:06 - 00000000 ____D () C:\Users\Daniel\Documents\ArcheAge 2014-12-31 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-12-31 17:59 - 2014-09-18 15:44 - 00000000 ____D () C:\Users\Daniel\Documents\Mein Steuer-Sparbuch Heute 2014-12-31 17:59 - 2014-08-06 16:58 - 00000000 ____D () C:\ProgramData\AVG2014 2014-12-31 17:59 - 2014-08-06 16:57 - 00000000 ____D () C:\ProgramData\MFAData 2014-12-31 17:58 - 2014-08-06 16:58 - 00000000 ___HD () C:\$AVG 2014-12-31 17:58 - 2014-08-06 16:57 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Avg2014 2014-12-31 17:54 - 2014-08-06 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-31 17:47 - 2014-08-02 13:41 - 00000000 ____D () C:\Program Files (x86)\Flowsurf 2014-12-31 02:36 - 2014-11-20 15:53 - 00004232 _____ () C:\Windows\SysWOW64\abengine.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\SysWOW64\abengineOff.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\system32\abengineOff.ini 2014-12-31 02:36 - 2014-08-02 13:41 - 00000002 _____ () C:\END 2014-12-30 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-12-29 23:42 - 2014-07-12 17:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-12-29 12:35 - 2014-07-12 19:06 - 00000000 ____D () C:\Users\Daniel\Documents\StarCraft II 2014-12-29 11:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-12-28 10:02 - 2014-07-12 17:52 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-12-28 10:01 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Battle.net 2014-12-26 19:52 - 2014-07-12 19:06 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-12-23 10:19 - 2014-11-16 22:26 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-12-22 17:41 - 2014-09-27 15:16 - 00004803 _____ () C:\Windows\setupact.log 2014-12-22 16:05 - 2014-07-12 17:28 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-12-20 12:04 - 2014-11-01 16:23 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Apple Computer 2014-12-19 16:40 - 2014-09-18 16:46 - 00000000 ____D () C:\Users\Daniel\Desktop\Berichtsheft 2014-12-19 00:15 - 2014-10-04 19:45 - 00034472 _____ () C:\Windows\DirectX.log 2014-12-18 22:25 - 2014-07-12 17:33 - 00000000 ____D () C:\Users\Daniel\Documents\my games 2014-12-17 22:11 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-12-16 20:42 - 2014-10-25 21:08 - 00001452 _____ () C:\Users\Public\Desktop\Free YouTube Download.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00001255 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-12-16 16:55 - 2014-12-02 21:26 - 00001068 _____ () C:\Users\Daniel\Desktop\Dropbox.lnk 2014-12-16 16:55 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-16 16:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-12-14 11:12 - 2014-09-30 15:08 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-14 11:12 - 2014-08-01 22:14 - 00000000 ____D () C:\ProgramData\Skype 2014-12-13 15:48 - 2014-07-12 17:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-12-13 13:38 - 2014-11-22 13:32 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-13 12:48 - 2014-07-19 03:47 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat 2014-12-13 12:48 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-12-10 19:02 - 2014-07-14 17:20 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-10 19:00 - 2014-07-14 17:20 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-12-10 17:46 - 2014-08-11 15:01 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-12-09 19:08 - 2014-11-25 20:08 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-12-09 19:08 - 2014-07-12 17:57 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-12-07 21:55 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Packages Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmptbkp_x.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-01-01 15:03 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-12-2014 Ran by Daniel at 2015-01-02 17:47:08 Running from C:\Users\Daniel\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BioShock (HKLM-x32\...\Steam App 7670) (Version: - 2K Boston) BioShock 2 (HKLM-x32\...\Steam App 8850) (Version: - 2K Marin) Bitdefender Antivirus Plus 2015 (HKLM\...\Bitdefender) (Version: 18.19.0.1369 - Bitdefender) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.2.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.00 - Canon Inc.) Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - The Behemoth) Catalyst Control Center (HKLM-x32\...\{8B1A559A-FB9D-42F5-A8A7-2F132CF28414}) (Version: 1.00.0000 - ) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory) Dropbox (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) Five Nights at Freddy's 2 (HKLM-x32\...\Steam App 332800) (Version: - Scott Cawthon) Free YouTube Download version 3.2.49.1122 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.49.1122 - DVDVideoSoft Ltd.) Game Dev Tycoon (HKLM-x32\...\Steam App 239820) (Version: - Greenheart Games) Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) GameRanger (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\GameRanger) (Version: - GameRanger Technologies) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.20.386 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{daa18f33-8bf1-42a3-8285-36e50c543cf0}) (Version: latest - ppy Pty Ltd) PROTOTYPE 2 (HKLM-x32\...\Steam App 115320) (Version: - Radical Entertainment) Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.) Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold Crusader HD (HKLM-x32\...\Steam App 40970) (Version: - FireFly Studios) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) The Crew (Beta) (HKLM-x32\...\Uplay Install 750) (Version: - Ubisoft) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.7 - Ubisoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.10 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{088C8E7D-6E7B-422C-81C2-B8A94F347D0A}) (Version: 21.08.8679 - Buhl Data Service GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 16-12-2014 17:44:12 Windows Update 19-12-2014 00:14:29 DirectX wurde installiert 26-12-2014 20:13:33 Geplanter Prüfpunkt 31-12-2014 17:57:37 Removed AVG 2014 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2015-01-02 17:44 - 00000822 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0AA4ABB5-1FC5-4D31-B296-31A3CC8C9531} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-daniel.schnepf23@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {1923AE2A-EA82-46F8-BA2C-757A9DA71509} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-11-12] (Microsoft Corporation) Task: {26912266-7EB5-44C4-AEF7-8855B27EB5FF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {3724B1CF-BFEA-4450-B7DD-234CAC4BD2D6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {3AA1576F-E906-4BEC-B02D-B09D3C8A83FB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09] (Adobe Systems Incorporated) Task: {4406E983-08E0-4B3C-BF18-FC0C5674C06B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {510752AD-1DAF-419B-9F95-8D1753CD4957} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {662D3BEC-2C69-41A8-97CE-A0508443D3A5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {73D6D100-DF72-4091-B46B-93834FF3EB36} - System32\Tasks\fsupdate => C:\PROGRA~2\Flowsurf\fsupd.exe <==== ATTENTION Task: {8A8054D5-9B6A-4A0F-804F-57AAF2FE52D3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {AD5A4E96-E1FE-41EA-B495-6BE715C04DF1} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation) Task: {AE38D973-C8C6-4476-AB18-E283F7DC6D59} - System32\Tasks\{8E832DF4-5D9C-4986-8622-F54A69F76309} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.18.60.106/de/abandoninstall?page=tsProgressBar Task: {B103A3D5-F78B-4001-97E6-3ED423C13EC2} - System32\Tasks\{58DA7FDA-34BA-44E3-80F2-0626F8BED310} => pcalua.exe -a C:\Users\Daniel\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=amt Task: {B633F5AC-E379-4321-BDE9-834BDC370BE6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {B82D5226-BFC3-4CF8-8DC4-BEB9A5ED8D89} - System32\Tasks\{EEF982D5-BF1C-4DBD-ADE1-796DACDAD29F} => pcalua.exe -a C:\Users\Daniel\Downloads\WISOSteuersoftware2014_Testversion.exe -d C:\Users\Daniel\Downloads Task: {D2836626-67BE-4C23-BF69-10C8A36BB208} - System32\Tasks\upfs7214 => C:\PROGRA~2\Flowsurf\upfs7214.exe <==== ATTENTION Task: {E891375B-DA08-4A27-A0C8-3F61582B885F} - System32\Tasks\{AF40F9D0-2F6C-4E6B-8443-66E51D25AEA9} => pcalua.exe -a C:\Users\Daniel\Downloads\Range_RAT7_SD7_0_20_0_64Bit_Drivers.exe -d C:\Users\Daniel\Downloads Task: C:\Windows\Tasks\0614aUpdateInfo.job => C:\ProgramData\Avg_Update_0614a\0614a_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\0814avUpdateInfo.job => C:\ProgramData\Avg_Update_0814av\0814av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1114avUpdateInfo.job => C:\ProgramData\Avg_Update_1114av\1114av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1214avUpdateInfo.job => C:\ProgramData\Avg_Update_1214av\1214av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-12-31 18:01 - 2014-08-27 16:31 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll 2014-12-31 18:01 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll 2014-12-31 18:01 - 2014-11-19 20:28 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui 2014-12-31 18:01 - 2014-07-24 09:44 - 00780592 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpbr.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpdsp.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 02602680 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpph.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 01323408 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttprbl.mdl 2014-04-23 03:52 - 2014-04-23 03:52 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 00814592 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-11-16 22:26 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-09-18 15:59 - 2014-07-02 09:13 - 01427736 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe 2014-04-23 03:52 - 2014-04-23 03:52 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-10-11 13:06 - 2014-10-11 13:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 01007104 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00023552 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00024576 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00216576 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00261120 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00019456 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00337408 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 09789208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wgui14.dll 2014-09-18 15:58 - 2014-07-02 09:14 - 03880216 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wcore14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00035608 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsdcom48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00322840 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsguiwinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00309016 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rscorewinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02738456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfvie14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 01043456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-core.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00250368 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-contribs-lib.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00136472 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsodbc48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02116376 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wsteu14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01932568 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wreli14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00094720 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-shared.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 04326168 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wauff14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01564952 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wmain14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 05291288 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01698584 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01809688 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae314.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01627928 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae414.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01117976 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01341208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01309464 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wwerb14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 07340824 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wkont14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01286936 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wimp14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01331480 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfabu14.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00750080 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-01-02 13:14 - 2015-01-02 13:14 - 00043008 _____ () c:\users\daniel\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmptbkp_x.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00047616 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libEGL.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00863744 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00200704 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2012-12-07 15:16 - 2012-12-07 15:16 - 22224096 _____ () C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger Prefs\Components\libcef.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libglesv2.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libegl.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\pdf.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 26065408 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\libcef.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00739840 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\libGLESv2.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00907776 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\platforms\qwindows.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00130048 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\libEGL.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00020992 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qgif.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00021504 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qico.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00205312 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qjpeg.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00225792 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qmng.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00015872 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qsvg.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00312832 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\imageformats\qtiff.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00010240 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\qml\QtQuick.2\qtquick2plugin.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00054272 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\qml\QtQuick\Layouts\qquicklayoutsplugin.dll 2014-12-10 19:19 - 2014-12-10 19:19 - 00010240 _____ () C:\Program Files (x86)\Battle.net\Battle.net.5383\qml\QtQml\Models.2\modelsplugin.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 14913352 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Daniel\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Daniel\Downloads\FRST64 (1).exe:BDU AlternateDataStreams: C:\Users\Daniel\Downloads\FRST64 (2).exe:BDU ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine => ""="service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3022826111-304677005-3146164483-500 - Administrator - Disabled) Daniel (S-1-5-21-3022826111-304677005-3146164483-1001 - Administrator - Enabled) => C:\Users\Daniel Gast (S-1-5-21-3022826111-304677005-3146164483-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3022826111-304677005-3146164483-1003 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (01/02/2015 01:16:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: PDApp.exe, Version: 8.0.0.120, Zeitstempel: 0x53995a8b Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eeb460 Ausnahmecode: 0x40010006 Fehleroffset: 0x00012f71 ID des fehlerhaften Prozesses: 0xfac Startzeit der fehlerhaften Anwendung: 0xPDApp.exe0 Pfad der fehlerhaften Anwendung: PDApp.exe1 Pfad des fehlerhaften Moduls: PDApp.exe2 Berichtskennung: PDApp.exe3 Vollständiger Name des fehlerhaften Pakets: PDApp.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: PDApp.exe5 Error: (01/02/2015 01:16:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: PDApp.exe, Version: 8.0.0.120, Zeitstempel: 0x53995a8b Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eeb460 Ausnahmecode: 0x40010006 Fehleroffset: 0x00012f71 ID des fehlerhaften Prozesses: 0x9fc Startzeit der fehlerhaften Anwendung: 0xPDApp.exe0 Pfad der fehlerhaften Anwendung: PDApp.exe1 Pfad des fehlerhaften Moduls: PDApp.exe2 Berichtskennung: PDApp.exe3 Vollständiger Name des fehlerhaften Pakets: PDApp.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: PDApp.exe5 Error: (12/31/2014 05:57:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (12/31/2014 05:51:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: qsinstaller (1).exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Name des fehlerhaften Moduls: qsinstaller (1).exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Ausnahmecode: 0xc0000417 Fehleroffset: 0x00001ec9 ID des fehlerhaften Prozesses: 0x1ae0 Startzeit der fehlerhaften Anwendung: 0xqsinstaller (1).exe0 Pfad der fehlerhaften Anwendung: qsinstaller (1).exe1 Pfad des fehlerhaften Moduls: qsinstaller (1).exe2 Berichtskennung: qsinstaller (1).exe3 Vollständiger Name des fehlerhaften Pakets: qsinstaller (1).exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: qsinstaller (1).exe5 Error: (12/31/2014 05:51:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: qsinstaller.exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Name des fehlerhaften Moduls: qsinstaller.exe, Version: 0.0.0.0, Zeitstempel: 0x5491af1c Ausnahmecode: 0xc0000417 Fehleroffset: 0x00001ec9 ID des fehlerhaften Prozesses: 0x21a8 Startzeit der fehlerhaften Anwendung: 0xqsinstaller.exe0 Pfad der fehlerhaften Anwendung: qsinstaller.exe1 Pfad des fehlerhaften Moduls: qsinstaller.exe2 Berichtskennung: qsinstaller.exe3 Vollständiger Name des fehlerhaften Pakets: qsinstaller.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: qsinstaller.exe5 System errors: ============= Error: (01/02/2015 01:14:18 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 02.01.2015 um 13:10:25 unerwartet heruntergefahren. Error: (01/02/2015 02:52:38 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (01/02/2015 02:52:32 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (01/01/2015 11:13:59 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (01/01/2015 11:13:53 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (01/01/2015 11:13:43 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (01/01/2015 01:15:18 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 01.01.2015 um 00:58:57 unerwartet heruntergefahren. Error: (01/01/2015 01:29:21 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} Error: (01/01/2015 01:29:08 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (12/31/2014 10:58:57 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 31.12.2014 um 22:39:21 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= Error: (01/02/2015 01:16:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: PDApp.exe8.0.0.12053995a8bKERNELBASE.dll6.3.9600.1727853eeb4604001000600012f71fac01d02685fd2be7f1C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exeC:\Windows\SYSTEM32\KERNELBASE.dll3c33fb09-9279-11e4-827b-d850e6519a4e Error: (01/02/2015 01:16:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: PDApp.exe8.0.0.12053995a8bKERNELBASE.dll6.3.9600.1727853eeb4604001000600012f719fc01d02685ed13739dC:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exeC:\Windows\SYSTEM32\KERNELBASE.dll2c2b93ef-9279-11e4-827b-d850e6519a4e Error: (12/31/2014 05:57:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert Error: (12/31/2014 05:51:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: qsinstaller (1).exe0.0.0.05491af1cqsinstaller (1).exe0.0.0.05491af1cc000041700001ec91ae001d0251a0fce3b73C:\Users\Daniel\Downloads\qsinstaller (1).exeC:\Users\Daniel\Downloads\qsinstaller (1).exe4d7e5a61-910d-11e4-8276-d850e6519a4e Error: (12/31/2014 05:51:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: qsinstaller.exe0.0.0.05491af1cqsinstaller.exe0.0.0.05491af1cc000041700001ec921a801d0251a053b4d25C:\Users\Daniel\Downloads\qsinstaller.exeC:\Users\Daniel\Downloads\qsinstaller.exe42f13782-910d-11e4-8276-d850e6519a4e CodeIntegrity Errors: =================================== Date: 2014-08-03 14:36:41.044 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.975 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.902 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.825 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.756 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.686 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.058 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.937 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.808 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.693 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD FX(tm)-8320 Eight-Core Processor Percentage of memory in use: 63% Total physical RAM: 8089.46 MB Available physical RAM: 2938.76 MB Total Pagefile: 16281.46 MB Available Pagefile: 9901.45 MB Total Virtual: 131072 MB Available Virtual: 131071.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.25 GB) (Free:343.86 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:452.49 GB) NTFS Drive e: (IRM_CCSA_X64FRE_DE-DE_DV5) (CDROM) (Total:3.68 GB) (Free:0 GB) UDF Drive g: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive k: (Volume) (Fixed) (Total:465.66 GB) (Free:465.18 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E79EE19D) Partition 1: (Not Active) - (Size=993 KB) - (Type=42) Partition 2: (Active) - (Size=100 MB) - (Type=42) Partition 3: (Not Active) - (Size=465.7 GB) - (Type=42) ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 403EC1C0) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 465.8 GB) (Disk ID: A9875BD9) Partition: GPT Partition Type. ==================== End Of Log ============================ |
02.01.2015, 23:11 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach Game Adware/Junkware/Toolbars entfernen (alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop!) 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ --> Ein Bilschirm flackert Braun nach Game |
03.01.2015, 12:59 | #7 |
| Ein Bilschirm flackert Braun nach GameCode:
ATTFilter # AdwCleaner v4.106 - Bericht erstellt am 03/01/2015 um 12:47:19 # Aktualisiert 21/12/2014 von Xplode # Database : 2015-01-03.1 [Live] # Betriebssystem : Windows 8.1 Pro (64 bits) # Benutzername : Daniel - DANIEL # Gestartet von : C:\Users\Daniel\Downloads\AdwCleaner_4.106 (1).exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : InjectorService Dienst Gelöscht : abengine ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Program Files (x86)\Flowsurf Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Users\Daniel\AppData\Local\ContextFree Ordner Gelöscht : C:\Users\Daniel\AppData\Local\fabulous_08021242 Ordner Gelöscht : C:\Users\Daniel\AppData\Roaming\InetStat Ordner Gelöscht : C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat Datei Gelöscht : C:\END Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml Datei Gelöscht : C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal ***** [ Tasks ] ***** Task Gelöscht : fsupdate Task Gelöscht : upfs7214 ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [jid1-tofUlNEIFlkUIA@jetpack] Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect Schlüssel Gelöscht : HKCU\Software\Classes\Applications\inetstat.exe Schlüssel Gelöscht : HKCU\Software\Mozilla\Extends Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command Schlüssel Gelöscht : HKCU\Software\anchorfree Schlüssel Gelöscht : HKCU\Software\ContextFree Schlüssel Gelöscht : HKCU\Software\Fabulous Schlüssel Gelöscht : HKCU\Software\FlowSurf Schlüssel Gelöscht : HKCU\Software\InetStat Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\SupHpUISoft Schlüssel Gelöscht : HKLM\SOFTWARE\FlowSurf Schlüssel Gelöscht : HKLM\SOFTWARE\SupDp Schlüssel Gelöscht : HKLM\SOFTWARE\SupTab Schlüssel Gelöscht : HKLM\SOFTWARE\supWindowsMangerProtect Schlüssel Gelöscht : HKLM\SOFTWARE\supWPM Schlüssel Gelöscht : HKLM\SOFTWARE\webssearchesSoftware Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17416 -\\ Mozilla Firefox v34.0.5 (x86 de) [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html"); [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.enable_search1", false); [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", true); [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html"); [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.enable_search1", false); [pn2a9blc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", true); -\\ Google Chrome v39.0.2171.95 [C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} [C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} [C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} [C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1406983346&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU972825128251&q={searchTerms} ************************* AdwCleaner[R0].txt - [5507 octets] - [03/01/2015 12:45:00] AdwCleaner[R1].txt - [10199 octets] - [03/01/2015 12:46:17] AdwCleaner[S0].txt - [5805 octets] - [03/01/2015 12:47:19] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5865 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.1 (12.28.2014:1) OS: Windows 8.1 Pro x64 Ran by Daniel on 03.01.2015 at 12:50:38,52 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.01.2015 at 12:54:50,42 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-01-2015 Ran by Daniel (administrator) on DANIEL on 03-01-2015 12:55:30 Running from C:\Users\Daniel\Downloads Loaded Profile: Daniel (Available profiles: Daniel) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwtxapps.exe () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Dropbox, Inc.) C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (GameRanger Technologies) C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\seccenter.exe (Thisisu) C:\Users\Daniel\Downloads\JRT (1).exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Daniel\Downloads\FRST64 (3).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1626752 2014-11-14] (Bitdefender) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-04-23] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790344 2014-11-14] (Bitdefender) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {842191ec-09de-11e4-824c-806e6f6e6963} - "F:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {9943727d-0f47-11e4-8250-d850e6519a4e} - "F:\HTC_Sync_Manager_PC.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe () Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk ShortcutTarget: GameRanger.lnk -> C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies) ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: YouTube Unblocker - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\youtubeunblocker@unblocker.yt [2014-11-20] FF Extension: Download videos and MP3s from YouTube - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900} [2014-12-16] FF Extension: Best Proxy Switcher - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2014-07-31] FF Extension: {661c711b-72a6-4940-8afb-f6cd913c7261} - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{661c711b-72a6-4940-8afb-f6cd913c7261}.xpi [2014-07-20] FF Extension: HTML5 Addon - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{9cea8a64-81e9-4297-9e4d-7e91d8f805a8}.xpi [2014-07-23] FF Extension: Adblock Plus - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-12] FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2014-12-31] FF HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-16] Chrome: ======= CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-22] CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22] CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-22] CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-22] CHR Extension: (Adblock Plus) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-11-23] CHR Extension: (Google-Suche) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-22] CHR Extension: (Bitdefender Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2014-12-31] CHR Extension: (Google Tabellen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-22] CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] CHR Extension: (Bitdefender QuickScan) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie [2014-12-31] CHR Extension: (Google Mail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-22] CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-23] (Advanced Micro Devices, Inc.) [File not signed] R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1527360 2014-11-14] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1288472 2014-09-25] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-05-16] (BitDefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-03 12:55 - 2015-01-03 12:55 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (3).exe 2015-01-03 12:54 - 2015-01-03 12:54 - 00000753 _____ () C:\Users\Daniel\Desktop\JRT.txt 2015-01-03 12:50 - 2015-01-03 12:50 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT (1).exe 2015-01-03 12:44 - 2015-01-03 12:47 - 00000000 ____D () C:\AdwCleaner 2015-01-03 12:44 - 2015-01-03 12:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106 (1).exe 2015-01-02 17:44 - 2015-01-02 17:44 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument (2).txt 2015-01-02 17:41 - 2015-01-02 17:41 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument.txt 2015-01-02 17:38 - 2015-01-02 17:39 - 00000824 _____ () C:\Users\Daniel\Desktop\hosts.txt 2015-01-01 13:57 - 2015-01-01 13:58 - 09283730 _____ () C:\Users\Daniel\Downloads\Search.txt 2015-01-01 13:56 - 2015-01-01 13:56 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (2).exe 2015-01-01 13:19 - 2015-01-01 13:19 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (1).exe 2014-12-31 23:03 - 2014-12-31 23:03 - 00000385 _____ () C:\Users\Daniel\AppData\Roaminguser_gensett.xml 2014-12-31 18:02 - 2014-12-31 18:02 - 00263032 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2014-12-31 18:02 - 00000000 ____D () C:\ProgramData\BDLogging 2014-12-31 18:01 - 2014-12-31 18:01 - 00484866 _____ () C:\ProgramData\1420045184.bdinstall.bin 2014-12-31 18:01 - 2014-12-31 18:01 - 00002213 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Plus 2015.lnk 2014-12-31 18:01 - 2014-12-31 18:01 - 00000385 _____ () C:\Windows\system32\user_gensett.xml 2014-12-31 18:01 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 2014-12-31 18:01 - 2014-09-25 15:57 - 01288472 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys 2014-12-31 18:01 - 2014-05-16 13:04 - 00647752 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys 2014-12-31 18:01 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2014-12-31 18:00 - 2014-12-31 18:06 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Bitdefender 2014-12-31 17:59 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Bitdefender 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\QuickScan 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Bitdefender 2014-12-31 17:59 - 2014-10-15 16:14 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2014-12-31 17:59 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll 2014-12-31 17:59 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll 2014-12-31 17:59 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys 2014-12-31 17:57 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus.exe 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus (1).exe 2014-12-31 17:55 - 2014-12-31 17:55 - 00000000 _____ () C:\Users\Daniel\Desktop\J40LX3E.txt 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller.exe 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller (1).exe 2014-12-31 02:55 - 2014-12-31 02:56 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41 (1).zip 2014-12-31 02:54 - 2014-12-31 02:54 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41.zip 2014-12-31 02:45 - 2014-12-31 02:45 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT.exe 2014-12-31 02:45 - 2014-12-31 02:45 - 00000000 ____D () C:\Windows\ERUNT 2014-12-31 02:44 - 2014-12-31 02:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106.exe 2014-12-31 02:42 - 2015-01-02 17:47 - 00039860 _____ () C:\Users\Daniel\Downloads\Addition.txt 2014-12-31 02:41 - 2015-01-03 12:55 - 00018481 _____ () C:\Users\Daniel\Downloads\FRST.txt 2014-12-31 02:41 - 2015-01-03 12:55 - 00000000 ____D () C:\FRST 2014-12-31 02:41 - 2014-12-31 02:41 - 01114624 _____ (Farbar) C:\Users\Daniel\Downloads\FRST.exe 2014-12-31 02:40 - 2014-12-31 02:41 - 01958440 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64.exe 2014-12-31 02:40 - 2014-12-31 02:40 - 00000000 __SHD () C:\Users\Daniel\AppData\Local\EmieBrowserModeList 2014-12-30 13:17 - 2014-12-31 18:02 - 00000000 ____D () C:\Windows\Minidump 2014-12-28 10:02 - 2014-12-28 10:02 - 00000000 ____D () C:\Users\Daniel\Documents\Heroes of the Storm 2014-12-28 09:45 - 2014-12-28 09:45 - 00001207 _____ () C:\Users\Public\Desktop\Heroes of the Storm.lnk 2014-12-28 09:45 - 2014-12-28 09:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2014-12-28 09:40 - 2015-01-02 17:02 - 00000000 ____D () C:\Program Files (x86)\Heroes of the Storm 2014-12-28 09:40 - 2014-12-28 09:40 - 03083832 _____ (Blizzard Entertainment) C:\Users\Daniel\Downloads\Heroes-of-the-Storm-Setup-deDE.exe 2014-12-27 11:47 - 2014-12-27 11:49 - 129201056 _____ (Mad catz ) C:\Users\Daniel\Downloads\Smart Technology 7_0_27_13 64Bit (1).exe 2014-12-25 11:28 - 2014-12-25 11:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-12-25 10:49 - 2014-12-25 10:49 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2014-12-21 14:24 - 2014-12-21 14:05 - 26041848 _____ (ArenaNet) C:\Users\Daniel\Desktop\Gw2.exe 2014-12-21 14:05 - 2014-12-21 14:12 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Guild Wars 2 2014-12-20 13:54 - 2014-12-20 13:54 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (3).exe 2014-12-20 13:53 - 2014-12-20 21:12 - 17592341 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 164366.crdownload 2014-12-20 13:39 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Desktop\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:55 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:54 - 2014-12-20 21:12 - 42449642 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.0_12A365_Restore.ipsw.crdownload 2014-12-20 12:49 - 2014-12-20 12:50 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (1).exe 2014-12-20 12:47 - 2014-12-20 12:47 - 16969459 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 906072.crdownload 2014-12-20 12:45 - 2014-12-20 13:54 - 00000000 ____D () C:\Users\Daniel\AppData\Local\pangu 2014-12-20 12:44 - 2014-12-20 12:45 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1.exe 2014-12-20 11:56 - 2014-12-20 11:56 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2014-12-19 12:06 - 2014-12-22 16:37 - 00000000 ____D () C:\Users\Daniel\Documents\Euro Truck Simulator 2 2014-12-19 00:15 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-12-19 00:15 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-12-19 00:15 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-12-19 00:15 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-12-19 00:15 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-12-19 00:15 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-12-19 00:15 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-12-19 00:15 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-12-19 00:15 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-12-19 00:15 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-12-19 00:15 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-12-19 00:15 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-12-19 00:15 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FiraxisLive 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Local\My Games 2014-12-16 20:42 - 2014-12-16 20:42 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack 2014-12-16 16:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-12-16 16:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-12-14 15:14 - 2014-12-14 15:14 - 00105103 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(11).SC2Replay 2014-12-14 15:14 - 2014-12-14 15:14 - 00073723 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(2).SC2Replay 2014-12-13 12:48 - 2014-12-13 12:48 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-11 19:54 - 2014-12-11 19:54 - 00000342 _____ () C:\Windows\Tasks\1214avUpdateInfo.job 2014-12-11 19:54 - 2014-12-11 19:54 - 00000000 ____D () C:\ProgramData\Avg_Update_1214av 2014-12-10 17:59 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-12-10 17:59 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-12-10 17:48 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-10 17:48 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-10 17:48 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-12-10 17:48 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-12-10 17:48 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-10 17:48 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-12-10 17:48 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-10 17:48 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-12-10 17:48 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-10 17:48 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-12-10 17:48 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-10 17:48 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-10 17:48 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-10 17:48 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-10 17:48 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-10 17:48 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-10 17:48 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-12-10 17:48 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-12-10 17:48 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-03 12:54 - 2014-08-22 16:01 - 00507068 _____ () C:\Windows\system32\perfh012.dat 2015-01-03 12:54 - 2014-08-22 16:01 - 00135332 _____ () C:\Windows\system32\perfc012.dat 2015-01-03 12:54 - 2014-08-17 18:01 - 01448693 _____ () C:\Windows\WindowsUpdate.log 2015-01-03 12:54 - 2014-07-12 17:12 - 02419892 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-03 12:54 - 2013-08-23 00:24 - 00764340 _____ () C:\Windows\system32\perfh007.dat 2015-01-03 12:54 - 2013-08-23 00:24 - 00159160 _____ () C:\Windows\system32\perfc007.dat 2015-01-03 12:49 - 2014-11-16 22:36 - 00005132 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel 2015-01-03 12:48 - 2014-12-02 21:26 - 00000000 ___RD () C:\Users\Daniel\Dropbox 2015-01-03 12:48 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Dropbox 2015-01-03 12:48 - 2014-11-22 13:32 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-03 12:48 - 2014-08-12 12:39 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-03 12:48 - 2014-08-01 22:15 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype 2015-01-03 12:48 - 2014-07-12 17:12 - 00000000 __RDO () C:\Users\Daniel\SkyDrive 2015-01-03 12:47 - 2014-08-22 12:18 - 00036154 _____ () C:\Windows\PFRO.log 2015-01-03 12:47 - 2014-07-12 17:16 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3022826111-304677005-3146164483-1001 2015-01-03 12:47 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-03 12:45 - 2014-07-12 17:16 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{663495AA-6A9A-4918-A8B5-35D7C54F64AD} 2015-01-03 12:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-01-03 12:42 - 2014-08-12 12:39 - 00000000 ____D () C:\ProgramData\Origin 2015-01-03 02:44 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel 2015-01-03 02:37 - 2014-11-22 13:32 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-03 02:29 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Battle.net 2015-01-03 02:08 - 2014-07-12 17:57 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-01-03 02:00 - 2014-07-22 20:44 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe 2015-01-02 13:15 - 2014-07-22 20:46 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-02 13:15 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Adobe 2014-12-31 22:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-12-31 18:02 - 2014-10-05 13:06 - 00000000 ____D () C:\Users\Daniel\Documents\ArcheAge 2014-12-31 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-12-31 17:59 - 2014-09-18 15:44 - 00000000 ____D () C:\Users\Daniel\Documents\Mein Steuer-Sparbuch Heute 2014-12-31 17:59 - 2014-08-06 16:58 - 00000000 ____D () C:\ProgramData\AVG2014 2014-12-31 17:59 - 2014-08-06 16:57 - 00000000 ____D () C:\ProgramData\MFAData 2014-12-31 17:58 - 2014-08-06 16:58 - 00000000 ___HD () C:\$AVG 2014-12-31 17:58 - 2014-08-06 16:57 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Avg2014 2014-12-31 17:54 - 2014-08-06 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-31 02:36 - 2014-11-20 15:53 - 00004232 _____ () C:\Windows\SysWOW64\abengine.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\SysWOW64\abengineOff.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\system32\abengineOff.ini 2014-12-30 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-12-29 23:42 - 2014-07-12 17:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-12-29 12:35 - 2014-07-12 19:06 - 00000000 ____D () C:\Users\Daniel\Documents\StarCraft II 2014-12-29 11:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-12-28 10:02 - 2014-07-12 17:52 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-12-28 10:01 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Battle.net 2014-12-26 19:52 - 2014-07-12 19:06 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-12-23 10:19 - 2014-11-16 22:26 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-12-22 17:41 - 2014-09-27 15:16 - 00004803 _____ () C:\Windows\setupact.log 2014-12-22 16:05 - 2014-07-12 17:28 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-12-20 12:04 - 2014-11-01 16:23 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Apple Computer 2014-12-19 16:40 - 2014-09-18 16:46 - 00000000 ____D () C:\Users\Daniel\Desktop\Berichtsheft 2014-12-19 00:15 - 2014-10-04 19:45 - 00034472 _____ () C:\Windows\DirectX.log 2014-12-18 22:25 - 2014-07-12 17:33 - 00000000 ____D () C:\Users\Daniel\Documents\my games 2014-12-17 22:11 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-12-16 20:42 - 2014-10-25 21:08 - 00001452 _____ () C:\Users\Public\Desktop\Free YouTube Download.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00001255 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-12-16 16:55 - 2014-12-02 21:26 - 00001068 _____ () C:\Users\Daniel\Desktop\Dropbox.lnk 2014-12-16 16:55 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-16 16:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-12-14 11:12 - 2014-09-30 15:08 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-14 11:12 - 2014-08-01 22:14 - 00000000 ____D () C:\ProgramData\Skype 2014-12-13 15:48 - 2014-07-12 17:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-12-13 13:38 - 2014-11-22 13:32 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-13 12:48 - 2014-07-19 03:47 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat 2014-12-13 12:48 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-12-10 19:02 - 2014-07-14 17:20 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-10 19:00 - 2014-07-14 17:20 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-12-10 17:46 - 2014-08-11 15:01 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-12-09 19:08 - 2014-11-25 20:08 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-12-09 19:08 - 2014-07-12 17:57 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-12-07 21:55 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Packages Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpj8vha1.dll C:\Users\Daniel\AppData\Local\Temp\Quarantine.exe C:\Users\Daniel\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-01-01 15:03 ==================== End Of Log ============================ --- --- --- |
03.01.2015, 12:59 | #8 |
| Ein Bilschirm flackert Braun nach GameFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-01-2015 Ran by Daniel (administrator) on DANIEL on 03-01-2015 12:55:30 Running from C:\Users\Daniel\Downloads Loaded Profile: Daniel (Available profiles: Daniel) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwtxapps.exe () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Dropbox, Inc.) C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (GameRanger Technologies) C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\seccenter.exe (Thisisu) C:\Users\Daniel\Downloads\JRT (1).exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Daniel\Downloads\FRST64 (3).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1626752 2014-11-14] (Bitdefender) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-04-23] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790344 2014-11-14] (Bitdefender) HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {842191ec-09de-11e4-824c-806e6f6e6963} - "F:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\MountPoints2: {9943727d-0f47-11e4-8250-d850e6519a4e} - "F:\HTC_Sync_Manager_PC.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe () Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk ShortcutTarget: GameRanger.lnk -> C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies) ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3022826111-304677005-3146164483-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender) Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: YouTube Unblocker - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\youtubeunblocker@unblocker.yt [2014-11-20] FF Extension: Download videos and MP3s from YouTube - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900} [2014-12-16] FF Extension: Best Proxy Switcher - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\bestproxyswitcher@bestproxyswitcher.com.xpi [2014-07-31] FF Extension: {661c711b-72a6-4940-8afb-f6cd913c7261} - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{661c711b-72a6-4940-8afb-f6cd913c7261}.xpi [2014-07-20] FF Extension: HTML5 Addon - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{9cea8a64-81e9-4297-9e4d-7e91d8f805a8}.xpi [2014-07-23] FF Extension: Adblock Plus - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\pn2a9blc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-12] FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2014-12-31] FF HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-16] Chrome: ======= CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-22] CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22] CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-22] CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-22] CHR Extension: (Adblock Plus) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-11-23] CHR Extension: (Google-Suche) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-22] CHR Extension: (Bitdefender Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2014-12-31] CHR Extension: (Google Tabellen) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-22] CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] CHR Extension: (Bitdefender QuickScan) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie [2014-12-31] CHR Extension: (Google Mail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-22] CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-23] (Advanced Micro Devices, Inc.) [File not signed] R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1527360 2014-11-14] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1288472 2014-09-25] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-05-16] (BitDefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-03 12:55 - 2015-01-03 12:55 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (3).exe 2015-01-03 12:54 - 2015-01-03 12:54 - 00000753 _____ () C:\Users\Daniel\Desktop\JRT.txt 2015-01-03 12:50 - 2015-01-03 12:50 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT (1).exe 2015-01-03 12:44 - 2015-01-03 12:47 - 00000000 ____D () C:\AdwCleaner 2015-01-03 12:44 - 2015-01-03 12:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106 (1).exe 2015-01-02 17:44 - 2015-01-02 17:44 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument (2).txt 2015-01-02 17:41 - 2015-01-02 17:41 - 00000000 _____ () C:\Users\Daniel\Desktop\Neues Textdokument.txt 2015-01-02 17:38 - 2015-01-02 17:39 - 00000824 _____ () C:\Users\Daniel\Desktop\hosts.txt 2015-01-01 13:57 - 2015-01-01 13:58 - 09283730 _____ () C:\Users\Daniel\Downloads\Search.txt 2015-01-01 13:56 - 2015-01-01 13:56 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (2).exe 2015-01-01 13:19 - 2015-01-01 13:19 - 02123264 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64 (1).exe 2014-12-31 23:03 - 2014-12-31 23:03 - 00000385 _____ () C:\Users\Daniel\AppData\Roaminguser_gensett.xml 2014-12-31 18:02 - 2014-12-31 18:02 - 00263032 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys 2014-12-31 18:02 - 2014-12-31 18:02 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2014-12-31 18:02 - 00000000 ____D () C:\ProgramData\BDLogging 2014-12-31 18:01 - 2014-12-31 18:01 - 00484866 _____ () C:\ProgramData\1420045184.bdinstall.bin 2014-12-31 18:01 - 2014-12-31 18:01 - 00002213 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Plus 2015.lnk 2014-12-31 18:01 - 2014-12-31 18:01 - 00000385 _____ () C:\Windows\system32\user_gensett.xml 2014-12-31 18:01 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 2014-12-31 18:01 - 2014-09-25 15:57 - 01288472 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys 2014-12-31 18:01 - 2014-05-16 13:04 - 00647752 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys 2014-12-31 18:01 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll 2014-12-31 18:01 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys 2014-12-31 18:01 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2014-12-31 18:00 - 2014-12-31 18:06 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Bitdefender 2014-12-31 17:59 - 2014-12-31 18:01 - 00000000 ____D () C:\ProgramData\Bitdefender 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\QuickScan 2014-12-31 17:59 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Bitdefender 2014-12-31 17:59 - 2014-10-15 16:14 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2014-12-31 17:59 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll 2014-12-31 17:59 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll 2014-12-31 17:59 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys 2014-12-31 17:57 - 2014-12-31 17:59 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus.exe 2014-12-31 17:57 - 2014-12-31 17:57 - 02867648 _____ () C:\Users\Daniel\Downloads\bitdefender_antivirus (1).exe 2014-12-31 17:55 - 2014-12-31 17:55 - 00000000 _____ () C:\Users\Daniel\Desktop\J40LX3E.txt 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller.exe 2014-12-31 17:51 - 2014-12-31 17:51 - 00184704 _____ () C:\Users\Daniel\Downloads\qsinstaller (1).exe 2014-12-31 02:55 - 2014-12-31 02:56 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41 (1).zip 2014-12-31 02:54 - 2014-12-31 02:54 - 00015201 _____ () C:\Users\Daniel\Downloads\MemTest41.zip 2014-12-31 02:45 - 2014-12-31 02:45 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT.exe 2014-12-31 02:45 - 2014-12-31 02:45 - 00000000 ____D () C:\Windows\ERUNT 2014-12-31 02:44 - 2014-12-31 02:44 - 02173952 _____ () C:\Users\Daniel\Downloads\AdwCleaner_4.106.exe 2014-12-31 02:42 - 2015-01-02 17:47 - 00039860 _____ () C:\Users\Daniel\Downloads\Addition.txt 2014-12-31 02:41 - 2015-01-03 12:55 - 00018481 _____ () C:\Users\Daniel\Downloads\FRST.txt 2014-12-31 02:41 - 2015-01-03 12:55 - 00000000 ____D () C:\FRST 2014-12-31 02:41 - 2014-12-31 02:41 - 01114624 _____ (Farbar) C:\Users\Daniel\Downloads\FRST.exe 2014-12-31 02:40 - 2014-12-31 02:41 - 01958440 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64.exe 2014-12-31 02:40 - 2014-12-31 02:40 - 00000000 __SHD () C:\Users\Daniel\AppData\Local\EmieBrowserModeList 2014-12-30 13:17 - 2014-12-31 18:02 - 00000000 ____D () C:\Windows\Minidump 2014-12-28 10:02 - 2014-12-28 10:02 - 00000000 ____D () C:\Users\Daniel\Documents\Heroes of the Storm 2014-12-28 09:45 - 2014-12-28 09:45 - 00001207 _____ () C:\Users\Public\Desktop\Heroes of the Storm.lnk 2014-12-28 09:45 - 2014-12-28 09:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2014-12-28 09:40 - 2015-01-02 17:02 - 00000000 ____D () C:\Program Files (x86)\Heroes of the Storm 2014-12-28 09:40 - 2014-12-28 09:40 - 03083832 _____ (Blizzard Entertainment) C:\Users\Daniel\Downloads\Heroes-of-the-Storm-Setup-deDE.exe 2014-12-27 11:47 - 2014-12-27 11:49 - 129201056 _____ (Mad catz ) C:\Users\Daniel\Downloads\Smart Technology 7_0_27_13 64Bit (1).exe 2014-12-25 11:28 - 2014-12-25 11:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-12-25 10:49 - 2014-12-25 10:49 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2014-12-21 14:24 - 2014-12-21 14:05 - 26041848 _____ (ArenaNet) C:\Users\Daniel\Desktop\Gw2.exe 2014-12-21 14:05 - 2014-12-21 14:12 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Guild Wars 2 2014-12-20 13:54 - 2014-12-20 13:54 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (3).exe 2014-12-20 13:53 - 2014-12-20 21:12 - 17592341 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 164366.crdownload 2014-12-20 13:39 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Desktop\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:55 - 2014-12-20 13:19 - 2231406880 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.1_12B410_Restore.ipsw 2014-12-20 12:54 - 2014-12-20 21:12 - 42449642 _____ () C:\Users\Daniel\Downloads\iPad4,2_8.0_12A365_Restore.ipsw.crdownload 2014-12-20 12:49 - 2014-12-20 12:50 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1 (1).exe 2014-12-20 12:47 - 2014-12-20 12:47 - 16969459 _____ () C:\Users\Daniel\Downloads\Nicht bestätigt 906072.crdownload 2014-12-20 12:45 - 2014-12-20 13:54 - 00000000 ____D () C:\Users\Daniel\AppData\Local\pangu 2014-12-20 12:44 - 2014-12-20 12:45 - 44435904 _____ () C:\Users\Daniel\Downloads\Pangu8_v1.2.1.exe 2014-12-20 11:56 - 2014-12-20 11:56 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2014-12-19 12:06 - 2014-12-22 16:37 - 00000000 ____D () C:\Users\Daniel\Documents\Euro Truck Simulator 2 2014-12-19 00:15 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-12-19 00:15 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 00:15 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 00:15 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-12-19 00:15 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 00:15 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 00:15 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-12-19 00:15 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 00:15 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-12-19 00:15 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 00:15 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-12-19 00:15 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 00:15 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 00:15 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-12-19 00:15 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-12-19 00:15 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-12-19 00:15 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-12-19 00:15 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-12-19 00:15 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-12-19 00:15 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-12-19 00:15 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-12-19 00:15 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-12-19 00:15 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-12-19 00:15 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-12-19 00:15 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-12-19 00:15 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-12-19 00:15 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-12-19 00:15 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-12-19 00:15 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-12-19 00:15 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-12-19 00:15 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-12-19 00:15 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-12-19 00:15 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-12-19 00:15 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-12-19 00:15 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-12-19 00:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-12-19 00:14 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-12-19 00:14 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-12-19 00:14 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FiraxisLive 2014-12-18 22:25 - 2014-12-18 22:25 - 00000000 ____D () C:\Users\Daniel\AppData\Local\My Games 2014-12-16 20:42 - 2014-12-16 20:42 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack 2014-12-16 16:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-12-16 16:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-12-14 15:14 - 2014-12-14 15:14 - 00105103 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(11).SC2Replay 2014-12-14 15:14 - 2014-12-14 15:14 - 00073723 _____ () C:\Users\Daniel\Downloads\Nimbus_LE_(2).SC2Replay 2014-12-13 12:48 - 2014-12-13 12:48 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-11 19:54 - 2014-12-11 19:54 - 00000342 _____ () C:\Windows\Tasks\1214avUpdateInfo.job 2014-12-11 19:54 - 2014-12-11 19:54 - 00000000 ____D () C:\ProgramData\Avg_Update_1214av 2014-12-10 17:59 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2014-12-10 17:59 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-12-10 17:59 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-12-10 17:48 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-10 17:48 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-10 17:48 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-10 17:48 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-10 17:48 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-12-10 17:48 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-12-10 17:48 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-10 17:48 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-10 17:48 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-10 17:48 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-12-10 17:48 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-10 17:48 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-10 17:48 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-12-10 17:48 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-10 17:48 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-10 17:48 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-12-10 17:48 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-10 17:48 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-12-10 17:48 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-10 17:48 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-10 17:48 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-10 17:48 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-10 17:48 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-10 17:48 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-10 17:48 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-10 17:48 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-10 17:48 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-10 17:48 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-10 17:48 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-10 17:48 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-12-10 17:48 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-12-10 17:48 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2014-12-10 17:48 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-03 12:54 - 2014-08-22 16:01 - 00507068 _____ () C:\Windows\system32\perfh012.dat 2015-01-03 12:54 - 2014-08-22 16:01 - 00135332 _____ () C:\Windows\system32\perfc012.dat 2015-01-03 12:54 - 2014-08-17 18:01 - 01448693 _____ () C:\Windows\WindowsUpdate.log 2015-01-03 12:54 - 2014-07-12 17:12 - 02419892 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-03 12:54 - 2013-08-23 00:24 - 00764340 _____ () C:\Windows\system32\perfh007.dat 2015-01-03 12:54 - 2013-08-23 00:24 - 00159160 _____ () C:\Windows\system32\perfc007.dat 2015-01-03 12:49 - 2014-11-16 22:36 - 00005132 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel 2015-01-03 12:48 - 2014-12-02 21:26 - 00000000 ___RD () C:\Users\Daniel\Dropbox 2015-01-03 12:48 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Dropbox 2015-01-03 12:48 - 2014-11-22 13:32 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-03 12:48 - 2014-08-12 12:39 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-03 12:48 - 2014-08-01 22:15 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype 2015-01-03 12:48 - 2014-07-12 17:12 - 00000000 __RDO () C:\Users\Daniel\SkyDrive 2015-01-03 12:47 - 2014-08-22 12:18 - 00036154 _____ () C:\Windows\PFRO.log 2015-01-03 12:47 - 2014-07-12 17:16 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3022826111-304677005-3146164483-1001 2015-01-03 12:47 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-03 12:45 - 2014-07-12 17:16 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{663495AA-6A9A-4918-A8B5-35D7C54F64AD} 2015-01-03 12:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-01-03 12:42 - 2014-08-12 12:39 - 00000000 ____D () C:\ProgramData\Origin 2015-01-03 02:44 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel 2015-01-03 02:37 - 2014-11-22 13:32 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-03 02:29 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Battle.net 2015-01-03 02:08 - 2014-07-12 17:57 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-01-03 02:00 - 2014-07-22 20:44 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe 2015-01-02 13:15 - 2014-07-22 20:46 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-02 13:15 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Adobe 2014-12-31 22:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-12-31 18:02 - 2014-10-05 13:06 - 00000000 ____D () C:\Users\Daniel\Documents\ArcheAge 2014-12-31 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-12-31 17:59 - 2014-09-18 15:44 - 00000000 ____D () C:\Users\Daniel\Documents\Mein Steuer-Sparbuch Heute 2014-12-31 17:59 - 2014-08-06 16:58 - 00000000 ____D () C:\ProgramData\AVG2014 2014-12-31 17:59 - 2014-08-06 16:57 - 00000000 ____D () C:\ProgramData\MFAData 2014-12-31 17:58 - 2014-08-06 16:58 - 00000000 ___HD () C:\$AVG 2014-12-31 17:58 - 2014-08-06 16:57 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Avg2014 2014-12-31 17:54 - 2014-08-06 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-31 02:36 - 2014-11-20 15:53 - 00004232 _____ () C:\Windows\SysWOW64\abengine.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\SysWOW64\abengineOff.ini 2014-12-31 02:36 - 2014-11-20 15:53 - 00002224 _____ () C:\Windows\system32\abengineOff.ini 2014-12-30 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-12-29 23:42 - 2014-07-12 17:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-12-29 12:35 - 2014-07-12 19:06 - 00000000 ____D () C:\Users\Daniel\Documents\StarCraft II 2014-12-29 11:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-12-28 10:02 - 2014-07-12 17:52 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-12-28 10:01 - 2014-07-12 17:52 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Battle.net 2014-12-26 19:52 - 2014-07-12 19:06 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-12-23 10:19 - 2014-11-16 22:26 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-12-22 17:41 - 2014-09-27 15:16 - 00004803 _____ () C:\Windows\setupact.log 2014-12-22 16:05 - 2014-07-12 17:28 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-12-20 12:04 - 2014-11-01 16:23 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Apple Computer 2014-12-19 16:40 - 2014-09-18 16:46 - 00000000 ____D () C:\Users\Daniel\Desktop\Berichtsheft 2014-12-19 00:15 - 2014-10-04 19:45 - 00034472 _____ () C:\Windows\DirectX.log 2014-12-18 22:25 - 2014-07-12 17:33 - 00000000 ____D () C:\Users\Daniel\Documents\my games 2014-12-17 22:11 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-12-16 20:42 - 2014-10-25 21:08 - 00001452 _____ () C:\Users\Public\Desktop\Free YouTube Download.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00001255 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-12-16 20:42 - 2014-10-25 21:08 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-12-16 16:55 - 2014-12-02 21:26 - 00001068 _____ () C:\Users\Daniel\Desktop\Dropbox.lnk 2014-12-16 16:55 - 2014-12-02 21:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-16 16:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-12-14 11:12 - 2014-09-30 15:08 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-14 11:12 - 2014-08-01 22:14 - 00000000 ____D () C:\ProgramData\Skype 2014-12-13 15:48 - 2014-07-12 17:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-12-13 13:38 - 2014-11-22 13:32 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-13 12:48 - 2014-07-19 03:47 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-13 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat 2014-12-13 12:48 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-12-10 19:02 - 2014-07-14 17:20 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-10 19:00 - 2014-07-14 17:20 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-12-10 17:46 - 2014-08-11 15:01 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-12-09 19:08 - 2014-11-25 20:08 - 03981488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-12-09 19:08 - 2014-07-12 17:57 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-12-07 21:55 - 2014-07-12 17:11 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Packages Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpj8vha1.dll C:\Users\Daniel\AppData\Local\Temp\Quarantine.exe C:\Users\Daniel\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-01-01 15:03 ==================== End Of Log ============================ |
04.01.2015, 11:36 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach Game Bitte auch ne neue Addition.txt erstellen, dazu FRST starten und einen Haken setzen bei Addition.txt, dann auf Scan klicken.
__________________ Logfiles bitte immer in CODE-Tags posten |
04.01.2015, 16:06 | #10 |
| Ein Bilschirm flackert Braun nach Game Oh ich hab ausversehen das eine 2 mal eingefügt. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-01-2015 03 Ran by Daniel at 2015-01-04 16:06:27 Running from C:\Users\Daniel\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BioShock (HKLM-x32\...\Steam App 7670) (Version: - 2K Boston) BioShock 2 (HKLM-x32\...\Steam App 8850) (Version: - 2K Marin) Bitdefender Antivirus Plus 2015 (HKLM\...\Bitdefender) (Version: 18.19.0.1369 - Bitdefender) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.2.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.00 - Canon Inc.) Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - The Behemoth) Catalyst Control Center (HKLM-x32\...\{8B1A559A-FB9D-42F5-A8A7-2F132CF28414}) (Version: 1.00.0000 - ) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory) Dropbox (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) Five Nights at Freddy's 2 (HKLM-x32\...\Steam App 332800) (Version: - Scott Cawthon) Free YouTube Download version 3.2.49.1122 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.49.1122 - DVDVideoSoft Ltd.) Game Dev Tycoon (HKLM-x32\...\Steam App 239820) (Version: - Greenheart Games) Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) GameRanger (HKU\S-1-5-21-3022826111-304677005-3146164483-1001\...\GameRanger) (Version: - GameRanger Technologies) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.291 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.291 - LogMeIn, Inc.) Hidden Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.20.386 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{daa18f33-8bf1-42a3-8285-36e50c543cf0}) (Version: latest - ppy Pty Ltd) PROTOTYPE 2 (HKLM-x32\...\Steam App 115320) (Version: - Radical Entertainment) Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.) Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold Crusader HD (HKLM-x32\...\Steam App 40970) (Version: - FireFly Studios) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) The Crew (Beta) (HKLM-x32\...\Uplay Install 750) (Version: - Ubisoft) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.7 - Ubisoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.10 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{088C8E7D-6E7B-422C-81C2-B8A94F347D0A}) (Version: 21.08.8679 - Buhl Data Service GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3022826111-304677005-3146164483-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 16-12-2014 17:44:12 Windows Update 19-12-2014 00:14:29 DirectX wurde installiert 26-12-2014 20:13:33 Geplanter Prüfpunkt 31-12-2014 17:57:37 Removed AVG 2014 03-01-2015 23:15:05 Installed LogMeIn Hamachi ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2015-01-02 17:44 - 00000822 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0AA4ABB5-1FC5-4D31-B296-31A3CC8C9531} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-daniel.schnepf23@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {1923AE2A-EA82-46F8-BA2C-757A9DA71509} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-11-12] (Microsoft Corporation) Task: {26912266-7EB5-44C4-AEF7-8855B27EB5FF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {3724B1CF-BFEA-4450-B7DD-234CAC4BD2D6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {3AA1576F-E906-4BEC-B02D-B09D3C8A83FB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09] (Adobe Systems Incorporated) Task: {4406E983-08E0-4B3C-BF18-FC0C5674C06B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {510752AD-1DAF-419B-9F95-8D1753CD4957} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {662D3BEC-2C69-41A8-97CE-A0508443D3A5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-11-16] (Microsoft Corporation) Task: {8A8054D5-9B6A-4A0F-804F-57AAF2FE52D3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {AD5A4E96-E1FE-41EA-B495-6BE715C04DF1} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DANIEL-Daniel Daniel => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation) Task: {AE38D973-C8C6-4476-AB18-E283F7DC6D59} - System32\Tasks\{8E832DF4-5D9C-4986-8622-F54A69F76309} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.18.60.106/de/abandoninstall?page=tsProgressBar Task: {B103A3D5-F78B-4001-97E6-3ED423C13EC2} - System32\Tasks\{58DA7FDA-34BA-44E3-80F2-0626F8BED310} => pcalua.exe -a C:\Users\Daniel\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=amt Task: {B633F5AC-E379-4321-BDE9-834BDC370BE6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-22] (Google Inc.) Task: {B82D5226-BFC3-4CF8-8DC4-BEB9A5ED8D89} - System32\Tasks\{EEF982D5-BF1C-4DBD-ADE1-796DACDAD29F} => pcalua.exe -a C:\Users\Daniel\Downloads\WISOSteuersoftware2014_Testversion.exe -d C:\Users\Daniel\Downloads Task: {E891375B-DA08-4A27-A0C8-3F61582B885F} - System32\Tasks\{AF40F9D0-2F6C-4E6B-8443-66E51D25AEA9} => pcalua.exe -a C:\Users\Daniel\Downloads\Range_RAT7_SD7_0_20_0_64Bit_Drivers.exe -d C:\Users\Daniel\Downloads Task: C:\Windows\Tasks\0614aUpdateInfo.job => C:\ProgramData\Avg_Update_0614a\0614a_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\0814avUpdateInfo.job => C:\ProgramData\Avg_Update_0814av\0814av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1114avUpdateInfo.job => C:\ProgramData\Avg_Update_1114av\1114av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\1214avUpdateInfo.job => C:\ProgramData\Avg_Update_1214av\1214av_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-12-31 18:01 - 2014-08-27 16:31 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll 2014-12-31 18:01 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll 2014-12-31 18:01 - 2014-11-19 20:28 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui 2014-12-31 18:01 - 2014-07-24 09:44 - 00780592 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpbr.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpdsp.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 02602680 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttpph.mdl 2014-12-31 18:01 - 2014-07-24 09:44 - 01323408 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_001_001\ashttprbl.mdl 2014-04-23 03:52 - 2014-04-23 03:52 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 00814592 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2013-07-26 05:59 - 2013-07-26 05:59 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-11-16 22:26 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-09-18 15:59 - 2014-07-02 09:13 - 01427736 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe 2014-04-23 03:52 - 2014-04-23 03:52 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-10-11 13:06 - 2014-10-11 13:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libglesv2.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libegl.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\pdf.dll 2014-12-13 13:38 - 2014-12-06 02:50 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 01007104 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00023552 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00024576 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00216576 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00261120 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00019456 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00337408 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-08-12 12:39 - 2014-12-18 19:35 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 09789208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wgui14.dll 2014-09-18 15:58 - 2014-07-02 09:14 - 03880216 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wcore14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00035608 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsdcom48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00322840 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsguiwinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00309016 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rscorewinapi48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02738456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfvie14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 01043456 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-core.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00250368 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-contribs-lib.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 00136472 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsodbc48.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 02116376 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wsteu14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01932568 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wreli14.dll 2014-09-18 15:58 - 2014-07-02 09:10 - 00094720 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-shared.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 04326168 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wauff14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01564952 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wmain14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 05291288 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01698584 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01809688 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae314.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01627928 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae414.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01117976 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau114.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01341208 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau214.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01309464 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wwerb14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 07340824 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wkont14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01286936 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wimp14.dll 2014-09-18 15:58 - 2014-07-02 09:13 - 01331480 ____N () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfabu14.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00750080 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-01-04 16:05 - 2015-01-04 16:05 - 00043008 _____ () c:\users\daniel\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpntlfob.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00047616 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\libEGL.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00863744 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2014-10-22 01:22 - 2014-10-22 01:22 - 00200704 _____ () C:\Users\Daniel\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2012-12-07 15:16 - 2012-12-07 15:16 - 22224096 _____ () C:\Users\Daniel\AppData\Roaming\GameRanger\GameRanger Prefs\Components\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Daniel\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Daniel\Downloads\AdwCleaner_4.106 (1).exe:BDU AlternateDataStreams: C:\Users\Daniel\Downloads\JRT (1).exe:BDU ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3022826111-304677005-3146164483-500 - Administrator - Disabled) Daniel (S-1-5-21-3022826111-304677005-3146164483-1001 - Administrator - Enabled) => C:\Users\Daniel Gast (S-1-5-21-3022826111-304677005-3146164483-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3022826111-304677005-3146164483-1003 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (01/03/2015 11:15:07 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (01/03/2015 07:14:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Das Volume "Wiederherstellung" wurde aufgrund eines Fehlers nicht optimiert: Falscher Parameter. (0x80070057) System errors: ============= Error: (01/04/2015 03:06:38 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (01/04/2015 03:06:31 AM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (01/03/2015 11:28:40 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (01/03/2015 11:28:10 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (01/03/2015 11:27:40 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (01/03/2015 11:15:39 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (01/03/2015 11:15:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/03/2015 11:15:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LogMeIn Hamachi Tunneling Engine erreicht. Error: (01/03/2015 11:15:24 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/03/2015 11:13:46 PM) (Source: DCOM) (EventID: 10010) (User: DANIEL) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Microsoft Office Sessions: ========================= Error: (01/03/2015 11:15:07 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert Error: (01/03/2015 07:14:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: WiederherstellungFalscher Parameter. (0x80070057) CodeIntegrity Errors: =================================== Date: 2014-08-03 14:36:41.044 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.975 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.902 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.825 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.756 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.686 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:40.058 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.937 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.808 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-08-03 14:36:39.693 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD FX(tm)-8320 Eight-Core Processor Percentage of memory in use: 33% Total physical RAM: 8089.46 MB Available physical RAM: 5341.7 MB Total Pagefile: 16281.46 MB Available Pagefile: 13228.98 MB Total Virtual: 131072 MB Available Virtual: 131071.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.25 GB) (Free:343.52 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:452.49 GB) NTFS Drive e: (IRM_CCSA_X64FRE_DE-DE_DV5) (CDROM) (Total:3.68 GB) (Free:0 GB) UDF Drive g: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive k: (Volume) (Fixed) (Total:465.66 GB) (Free:465.18 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E79EE19D) Partition 1: (Not Active) - (Size=993 KB) - (Type=42) Partition 2: (Active) - (Size=100 MB) - (Type=42) Partition 3: (Not Active) - (Size=465.7 GB) - (Type=42) ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 403EC1C0) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 465.8 GB) (Disk ID: A9875BD9) Partition: GPT Partition Type. ==================== End Of Log ============================ |
05.01.2015, 09:11 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach Game Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 EmptyTemp: Hosts: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
05.01.2015, 14:53 | #12 |
| Ein Bilschirm flackert Braun nach GameCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-01-2015 Ran by Daniel at 2015-01-05 14:49:11 Run:1 Running from C:\Users\Daniel\Desktop\Neuer Ordner (2) Loaded Profile: Daniel (Available profiles: Daniel) Boot Mode: Normal ============================================== Content of fixlist: ***************** SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FF NetworkProxy: "ftp", "183.221.164.254" FF NetworkProxy: "ftp_port", 8123 FF NetworkProxy: "gopher", "183.221.164.254" FF NetworkProxy: "gopher_port", 8123 FF NetworkProxy: "http", "183.221.164.254" FF NetworkProxy: "http_port", 8123 FF NetworkProxy: "socks", "183.221.164.254" FF NetworkProxy: "socks_port", 8123 FF NetworkProxy: "ssl", "183.221.164.254" FF NetworkProxy: "ssl_port", 8123 EmptyTemp: Hosts: ***************** HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. Firefox Proxy settings were reset. C:\Windows\System32\Drivers\etc\hosts => Moved successfully. Hosts was reset successfully. EmptyTemp: => Removed 2 GB temporary data. The system needed a reboot. ==== End of Fixlog 14:49:30 ==== |
05.01.2015, 15:43 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Ein Bilschirm flackert Braun nach Game Okay, dann Kontrollscans mit MBAM und ESET bitte: Downloade Dir bitte Malwarebytes Anti-Malware
ESET Online Scanner
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Ein Bilschirm flackert Braun nach Game |
abges, andere, angeschlossen, braune, das bild, festplatte, flackert, geschlossen, hardwaredefekt, hierbei, kabel, monitor, platte, tagen, temperaturen, virus |