|
Plagegeister aller Art und deren Bekämpfung: Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklickWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
14.01.2015, 18:11 | #1 |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Hallo, mein Rechner will seit heute morgen nicht mehr per Ethernet ins Internet ( FM: "Der Abhängigkeitsdienst oder die Abhängigkeitsgruppe konnte nicht gestartet werden."). Zudem lässt sich die Firewall nicht einschalten und wenn ich über den File Explorer eine rechtsklick machte stürzt dieser ab. Hab bereits Malwarebytes drüber laufen lassen und versucht den Rechner im abgesicherten Modus widerherzustellen. |
14.01.2015, 18:16 | #2 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.01.2015, 18:33 | #3 |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Danke für die Hilfe.
__________________Hier der FRST.txt FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-01-2015 02 Ran by Sven (administrator) on SVEN-PC on 14-01-2015 18:19:49 Running from C:\Users\Sven\Downloads Loaded Profile: Sven (Available profiles: Sven) Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe () C:\Program Files (x86)\Oculus\Service\OVRServiceLauncher.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe () C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe (Cambridge Silicon Radio Limited) C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (Spotify Ltd) C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd) C:\Users\Sven\AppData\Roaming\Spotify\spotify.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (inMethod) C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Oculus VR, LLC) C:\Program Files (x86)\Oculus\Tools\OculusConfigUtil.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\VRChat\VRChatMonitor\VRChatMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (inMethod) C:\Program Files (x86)\AirVideoServer HD\AirVideoServerUI.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\main.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\AirVideoServer HD\ExternalEncoder.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\nacl64.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRISCT.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE () C:\Program Files (x86)\Oculus\Service\OVRServer_x64.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [4465448 2014-08-29] (O&O Software GmbH) HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [25792 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [529616 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531984 2015-01-07] (NVIDIA Corporation) HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [39128 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CsrSyncMLServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [244944 2012-03-22] () HKLM\...\Run: [CsrHCRPServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [1134288 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CSRHarmonySkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [146656 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CsrAudioguiCtrl] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [511696 2012-03-22] (Cambridge Silicon Radio Limited) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-11-24] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [60640 2014-09-11] (Razer Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe [2081792 2013-03-29] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [ASRock A-Tuning] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [956024 2014-12-23] (Link64 GmbH) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [TBPanel] => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2173224 2013-11-08] (Gainward Co. Ltd.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1941696 2015-01-06] (Valve Corporation) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Spotify Web Helper] => C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-10] (Spotify Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Spotify] => C:\Users\Sven\AppData\Roaming\Spotify\spotify.exe [6737976 2014-12-10] (Spotify Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [5105288 2014-10-15] (Plex, Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-10-17] (Apple Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [GoogleChromeAutoLaunch_6376B5EE50201B8D362125E4D5560106] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [843592 2015-01-07] (Google Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [AirVideoServerHD] => C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe [2217736 2014-09-29] (inMethod) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day0] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day1] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day2] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day3] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day4] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day5] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day6] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\MountPoints2: E - E:\twom_hde.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OculusConfigUtil.lnk ShortcutTarget: OculusConfigUtil.lnk -> C:\Program Files (x86)\Oculus\Tools\OculusConfigUtil.exe (Oculus VR, LLC) Startup: C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VRChatMonitor.lnk ShortcutTarget: VRChatMonitor.lnk -> C:\Program Files (x86)\VRChat\VRChatMonitor\VRChatMonitor.exe () BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-890943707-450372048-868329369-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658&q={searchTerms} SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4A0F972F-24CB-4FBD-A361-D981AEBF462D&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default FF NetworkProxy: "http", "www-proxy.t-online.de" FF NetworkProxy: "http_port", 80 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKU\S-1-5-21-890943707-450372048-868329369-1000: @acestream.net/acestreamplugin,version=2.2.10-next -> C:\Users\Sven\AppData\Roaming\ACEStream\player\npace_plugin.dll (Innovative Digital Technologies) FF user.js: detected! => C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\user.js FF Extension: Avira Browser Safety - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\abs@avira.com [2014-11-20] FF Extension: German Dictionary - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\de-DE@dictionaries.addons.mozilla.org [2014-06-12] FF Extension: iCloud Bookmarks - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefoxdav@icloud.com [2014-11-20] FF Extension: Xmarks - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\foxmarks@kei.com [2014-07-24] FF Extension: FoxyProxy Standard - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\foxyproxy@eric.h.jung [2014-11-20] FF Extension: AS Magic Player - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\magicplayer@acestream.org [2014-09-07] FF Extension: Forecastfox - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2014-01-01] FF Extension: ColorfulTabs - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} [2014-07-24] FF Extension: Autocopy - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0FED7D55-65D4-47b6-A6DE-9A4ADB55355F} [2014-01-01] FF Extension: Flashblock - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2014-01-01] FF Extension: Fire.fm - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3} [2014-01-01] FF Extension: Fast Search by Surf Canyon - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{75623d5d-4683-402a-b610-ac4bab767c86} [2014-01-01] FF Extension: WOT - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-01-01] FF Extension: DownloadHelper - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-03-26] FF Extension: TabGroups Manager - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{ca526f8b-9e0a-4756-9077-19d6f3e64ea8} [2014-01-01] FF Extension: SearchPreview - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6} [2014-05-26] FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\admin@proxy-listen.de.xpi [2014-01-01] FF Extension: Add to Amazon Wish List Button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\amznUWL2@amazon.com.xpi [2014-01-01] FF Extension: AutoPager - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\autopager@mozilla.org.xpi [2014-01-01] FF Extension: Bookmark Previews - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\bookmarkpreviews@mozdev.org.xpi [2014-01-01] FF Extension: Add-on Compatibility Reporter - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\compatibility@addons.mozilla.org.xpi [2014-01-01] FF Extension: feedly - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\feedly@devhd.xpi [2014-01-01] FF Extension: Video Downloader professional - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\ffext_basicvideoext@startpage24.xpi [2014-01-09] FF Extension: Ghostery - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefox@ghostery.com.xpi [2014-01-01] FF Extension: MEGA EXTENSION - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefox@mega.co.nz.xpi [2014-01-01] FF Extension: Open GMail with toolbar button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\gmail@borsosfisoft.com.xpi [2014-01-01] FF Extension: Gmail Watcher - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\gmailwatcher@sonthakit.xpi [2014-01-01] FF Extension: Greasefire - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\greasefire@skrul.com.xpi [2014-01-01] FF Extension: ProxTube - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\ich@maltegoetz.de.xpi [2014-11-20] FF Extension: Telekom YouTube Turbo - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\info@maltegoetz.de.xpi [2014-01-01] FF Extension: bitcoinprices - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-gE6fXk2VSQ2MYANuOWvdRaWA3cw@jetpack.xpi [2014-01-02] FF Extension: kicktraq - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-i79UhEDcYiUOiFdxIadGhfvSpTA@jetpack.xpi [2014-01-01] FF Extension: Bitcoin Price Ticker - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-ziK34XHkBWB9ezxd4l9Q1yC7RP0@jetpack.xpi [2014-01-01] FF Extension: RSS Icon - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\kitsuneymg@gmail.com.xpi [2014-01-01] FF Extension: Personas Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\personas@christopher.beard.xpi [2014-01-01] FF Extension: Siphon - Sync Add-ons - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\siphon@siphon.ian-halpern.com.xpi [2014-01-01] FF Extension: Tab Scope - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\tabscope@xuldev.org.xpi [2014-01-01] FF Extension: Test Pilot - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\testpilot@labs.mozilla.com.xpi [2014-01-01] FF Extension: Tweet Line - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\twitterline@www.greenspace.info.xpi [2014-01-01] FF Extension: Location Bar Enhancer - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\UIEnhancer@girishsharma.xpi [2014-01-01] FF Extension: WiseStamp - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\wisestamp@wisestamp.com.xpi [2014-01-01] FF Extension: URL Fixer - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0fa2149e-bb2c-4ac2-a8d3-479599819475}.xpi [2014-01-01] FF Extension: Flagfox - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2014-03-08] FF Extension: HootBar - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1a0c9ebe-ddf9-4b76-b8a3-675c77874d37}.xpi [2014-01-01] FF Extension: RSS Ticker - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1f91cde0-c040-11da-a94d-0800200c9a66}.xpi [2014-01-01] FF Extension: Fierr - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{2E481B23-66AC-313F-D6A8-A81DDDF26249}.xpi [2014-01-01] FF Extension: PDF Download - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}.xpi [2014-01-01] FF Extension: AniWeather - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{4176DFF4-4698-11DE-BEEB-45DA55D89593}.xpi [2014-01-01] FF Extension: Download Statusbar Fixed - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{4204c864-50bf-467a-95b3-0912b7f15869}.xpi [2014-01-09] FF Extension: Gmail Notifier - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{44d0a1b4-9c90-4f86-ac92-8680b5d6549e}.xpi [2014-01-01] FF Extension: Stylish - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-01-01] FF Extension: SmoothWheel (mozdev.org) - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC}.xpi [2014-01-01] FF Extension: Speed Dial - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2014-01-01] FF Extension: Personas Rotator - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{6e73f6b7-b9ab-44b8-b744-6393e3c2e351}.xpi [2014-03-28] FF Extension: MiroIt - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{79287D2F-D399-471A-A95E-BCBED9AEDB3B}.xpi [2014-01-01] FF Extension: YouTube High Definition - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-07-11] FF Extension: Soundcloud SUPER +2: Downloader and Recommender - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{988da70d-b78d-44a1-a9c7-ed11832a9e2e}.xpi [2014-01-01] FF Extension: Nightly Tester Tools Lite - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{BB68DBF8-55E6-45A8-8F9F-D443EDDC12E8}.xpi [2014-01-01] FF Extension: CoolPreviews - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi [2014-01-01] FF Extension: Adblock Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-01] FF Extension: Download Statusbar - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi [2014-01-01] FF Extension: Facebook Share Button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{d4e0dc9c-c356-438e-afbe-dca439f4399d}.xpi [2014-07-04] FF Extension: DownThemAll! - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-01-01] FF Extension: Greasemonkey - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-01-01] FF Extension: QuickWiki - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{EE223D7A-F30F-11DD-8F0A-D2AD55D89593}.xpi [2014-01-01] FF StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR HomePage: Default -> hxxp://search.conduit.com/?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP4A0F972F-24CB-4FBD-A361-D981AEBF462D&SSPV= CHR StartupUrls: Default -> "https://www.google.de/", "https://de.search.yahoo.com/?fr=spigot-yhp-gcmac&ilc=12&type=967150", "hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-29] CHR Extension: (TechSmith Snagit (Extension)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\annopcfmbiofommjmcmcfmhklhgbhkce [2014-05-12] CHR Extension: (Google Drive) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-02] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-24] CHR Extension: (Turn Off the Lights) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-05-12] CHR Extension: (WOT) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-05-12] CHR Extension: (Klassische Spiele) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpckajjkmjncafjlkielcgheibdlnfgc [2014-05-09] CHR Extension: (AddThis - Share & Bookmark (new)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbogdmdefihhljhfeiklfiedefalcde [2014-05-12] CHR Extension: (JSONView) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\chklaanhfefbnpoihckbnefhakgolnmc [2014-05-09] CHR Extension: (Easy SteamGifts) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cklbilaeedbblhpkhjfcnmaocjdodcnm [2014-12-30] CHR Extension: (Alexa Traffic Rank) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2014-05-12] CHR Extension: (Spotify - Music for every moment) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2014-05-12] CHR Extension: (Read Later Fast) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji [2014-07-29] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-05-09] CHR Extension: (Proxy SwitchySharp) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2014-01-21] CHR Extension: (Fabulous for Facebook) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehhfialhajmaoobgcjlfmphcfphfpkkg [2014-05-12] CHR Extension: (Video Downloader professional) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2014-08-16] CHR Extension: (Video VR Extension) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\epianonacnaknehmhdlfbdlfobejoica [2014-05-09] CHR Extension: (My JDownloader) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2014-05-09] CHR Extension: (TechSmith Snagit) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcnghgbgmemnlbckdipnmelbanpgneik [2014-05-18] CHR Extension: (Postman - REST Client) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmmgilgnpjigdojojpjoooidkmcomcm [2014-12-03] CHR Extension: (Stylish) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2014-08-11] CHR Extension: (Avira Browserschutz) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-08-14] CHR Extension: (Hola Besseres Internet) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-08-31] CHR Extension: (Netflix Watchlist) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hepinjgeompggemfpgkpkmcippneehah [2014-09-16] CHR Extension: (Advanced REST client) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgmloofddffdnphfgcellkdfbfbjeloo [2014-05-09] CHR Extension: (Bitcoin) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlbcbefdgkijadppmojnghjbinmjmenp [2014-07-04] CHR Extension: (Kindle Cloud Reader) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2014-07-30] CHR Extension: (Wolfram|Alpha (Official)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\icncamkooinmbehmkeilcccmoljfkdhp [2014-05-12] CHR Extension: (Netflix Enhancer - Old) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijanohecbcpdgnpiabdfehfjgcapepbm [2014-09-16] CHR Extension: (Dropbox) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2014-08-24] CHR Extension: (Steam Market Auto-Agree) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlicldafjdigokihkkdlbpfgehihjodl [2014-06-20] CHR Extension: (Andrew@ChromeFans) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\jollpecbpialleljionejgkdgjfgamma [2014-07-29] CHR Extension: (Netflix IMDb ratings) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\laclklcdckbolhgghhmffhcpdjobddbf [2014-09-16] CHR Extension: (Audio EQ) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfafdlnjaliaghpjdajmlcnnblkgcefh [2014-05-12] CHR Extension: (Letterboxd) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdbiimjkkhkbmolbddbjjgnbjeknjeb [2014-09-16] CHR Extension: (AS Magic Player) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhnkgpdlogbknkhlgdjlejeljbhflim [2014-12-26] CHR Extension: (Netflix Trailer Button Adder) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgdhgbjlokeheknpnmiidkbdliimhapm [2014-09-16] CHR Extension: (Google Mail-Checker) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-12] CHR Extension: (Kicktraq) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfbmdekphdknccdlbhlkbifdbdioekd [2014-07-29] CHR Extension: (Ghostery) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2014-05-09] CHR Extension: (Netflix Showdown) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnnjdpeifhophmpnfhfnimhdegicgcab [2014-09-16] CHR Extension: (CanIStream.It) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nefjaladmbgpekhpikihnnchgbdfojpk [2014-09-16] CHR Extension: (dict-cc) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2014-05-12] CHR Extension: (Google Wallet) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-02] CHR Extension: (Better Flix) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocajedaanblpimghlakmcajhblfnlkgo [2014-09-16] CHR Extension: (Tor) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohielanlcdleofjibfmjbbkaajdcpoil [2014-11-08] CHR Extension: (Enhanced Steam) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2014-06-20] CHR Extension: (Click&Clean App) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-05-12] CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-11-24] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-11-24] (Avira Operations GmbH & Co. KG) S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [993584 2014-11-24] (Avira Operations GmbH & Co. KG) R2 ASRockIOMon; C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe [454656 2013-05-28] () [File not signed] R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG) R2 BtSwitcherService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [64216 2012-03-22] (Cambridge Silicon Radio Limited) R2 CSRBtAudioService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [465624 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtOBEX-Dienst; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [1041616 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [825032 2012-03-22] (Cambridge Silicon Radio Limited) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2013-11-21] (Futuremark) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-01-07] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-03] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182248 2013-03-14] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] () S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.) S2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [40999448 2008-07-10] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2015-01-07] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19822736 2015-01-07] (NVIDIA Corporation) R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1660200 2014-08-29] (O&O Software GmbH) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1903472 2014-12-18] (Electronic Arts) R2 OVRService; C:\Program Files (x86)\Oculus\Service\OVRServiceLauncher.exe [231952 2014-12-03] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-01-06] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [183488 2014-10-31] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [105448 2014-09-11] (Razer Inc.) S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) S4 SQLAgent$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [369688 2008-07-10] (Microsoft Corporation) S3 COMSysApp; %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} S4 SQLBrowser; "C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-01-01] (ASRock Incorporation) R0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-05-09] (ASRock Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-11-24] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-11-24] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-11-24] (Avira Operations GmbH & Co. KG) S3 CsrBthAudioHF; C:\Windows\System32\DRIVERS\CsrBthAudioHF.sys [39120 2012-03-22] (Cambridge Silicon Radio Limited) S3 CsrBtPort; C:\Windows\System32\DRIVERS\CsrBtPort.sys [2784968 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrhfgcc; C:\Windows\System32\DRIVERS\csrhfgcc.sys [38080 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrpan; C:\Windows\System32\DRIVERS\csrpan.sys [39616 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrserial; C:\Windows\System32\DRIVERS\csrserial.sys [61128 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusb; C:\Windows\System32\Drivers\csrusb.sys [47296 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusbfilter; C:\Windows\System32\Drivers\csrusbfilter.sys [23752 2012-03-22] (Cambridge Silicon Radio Limited) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-07] (Disc Soft Ltd) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-05-30] (Intel Corporation) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation) R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [21048 2013-03-14] () R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [21048 2013-03-14] () R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-03-14] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-01-07] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation) R3 OCUSBVID; C:\Windows\System32\DRIVERS\OCUSBVID.sys [47560 2014-10-23] (Oculus VR, LLC) R1 RiftEnabler; C:\Windows\System32\DRIVERS\RiftEnabler.sys [53704 2014-12-03] (Oculus VR, LLC) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2014-10-31] (Razer, Inc.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-25] (Duplex Secure Ltd.) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2015-01-14] () S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation) U3 as92ga0c; C:\Windows\System32\Drivers\as92ga0c.sys [0 ] (Intel Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-14 18:19 - 2015-01-14 18:19 - 00049368 _____ () C:\Users\Sven\Downloads\FRST.txt 2015-01-14 18:19 - 2015-01-14 18:19 - 00000000 ____D () C:\FRST 2015-01-14 18:19 - 2015-01-14 18:18 - 02124288 _____ (Farbar) C:\Users\Sven\Downloads\FRST64.exe 2015-01-14 17:41 - 2015-01-14 17:41 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp 2015-01-14 14:56 - 2015-01-14 17:41 - 00034752 _____ () C:\Windows\system32\Drivers\WPRO_41_2001.sys 2015-01-14 14:15 - 2014-09-11 08:57 - 00593080 _____ (Sysinternals - www.sysinternals.com) C:\Users\Sven\Downloads\autoruns.exe 2015-01-14 14:15 - 2014-09-11 08:57 - 00505536 _____ (Sysinternals - www.sysinternals.com) C:\Users\Sven\Downloads\autorunsc.exe 2015-01-14 14:15 - 2014-08-05 08:20 - 00049518 _____ () C:\Users\Sven\Downloads\autoruns.chm 2015-01-14 14:15 - 2014-08-05 08:20 - 00007005 _____ () C:\Users\Sven\Downloads\Eula.txt 2015-01-14 14:14 - 2015-01-14 14:13 - 00511633 _____ () C:\Users\Sven\Downloads\Autoruns.zip 2015-01-14 13:58 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150114-135801.backup 2015-01-14 13:43 - 2015-01-14 13:59 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-01-14 13:43 - 2015-01-14 13:43 - 00001387 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-01-14 13:43 - 2015-01-14 13:43 - 00001375 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-01-14 13:43 - 2015-01-14 13:43 - 00000656 _____ () C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000628 _____ () C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000458 _____ () C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-01-14 13:43 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-01-14 13:42 - 2015-01-14 13:43 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-01-14 13:42 - 2015-01-14 13:37 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Sven\Downloads\spybot-2.4.exe 2015-01-14 13:03 - 2015-01-14 13:00 - 05708715 _____ () C:\Users\Sven\Documents\LAN_Realtek_V7_34_1130_2010.zip 2015-01-14 11:42 - 2015-01-14 11:42 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Avira 2015-01-14 11:41 - 2015-01-14 11:41 - 00002062 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2015-01-14 11:41 - 2014-11-24 10:23 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-01-14 11:41 - 2014-11-24 10:23 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-01-14 11:41 - 2014-11-24 10:23 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-01-14 11:33 - 2015-01-14 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-01-14 11:33 - 2015-01-14 11:41 - 00000000 ____D () C:\ProgramData\Avira 2015-01-14 11:33 - 2015-01-14 11:33 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk 2015-01-14 10:34 - 2015-01-14 17:30 - 00000000 ____D () C:\Windows\pss 2015-01-08 21:40 - 2015-01-08 21:40 - 00000000 ____D () C:\Users\Sven\AppData\Local\BloodMine 2015-01-08 21:34 - 2015-01-08 21:34 - 00000000 ____D () C:\websymbols 2015-01-04 14:23 - 2015-01-04 14:23 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\NVIDIA 2015-01-04 14:23 - 2015-01-04 14:23 - 00000000 ____D () C:\Users\Sven\AppData\Local\Oculusr Rift in Action 2015-01-03 09:35 - 2015-01-03 09:35 - 00000000 ____D () C:\Users\Sven\AppData\Local\FRACTOSC 2015-01-01 10:09 - 2015-01-01 10:13 - 00000000 ____D () C:\Users\Sven\Documents\Assassin's Creed Liberation HD 2015-01-01 09:40 - 2015-01-01 09:40 - 00000000 ____D () C:\Users\Sven\Documents\Ubisoft 2014-12-30 16:06 - 2014-12-30 16:06 - 00000000 ____D () C:\Users\Sven\AppData\Local\CoolChristmasVR 2014-12-30 15:59 - 2014-12-30 15:59 - 00000000 ____D () C:\Users\Sven\AppData\Local\picard 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2008 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2008 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-12-27 10:57 - 2014-12-27 10:57 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\FiraxisLive 2014-12-27 10:50 - 2015-01-14 17:41 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-12-27 10:50 - 2014-12-13 11:08 - 00074056 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-12-27 10:50 - 2014-12-13 11:08 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 06859408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 03513488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 00935240 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-12-27 10:50 - 2014-12-13 09:03 - 00386368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-12-27 10:50 - 2014-12-13 01:47 - 00620176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-12-27 10:50 - 2014-12-13 00:11 - 04151176 _____ () C:\Windows\system32\nvcoproc.bin 2014-12-27 10:49 - 2014-12-13 11:08 - 32099472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 25460552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 24764232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 20465808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 18594432 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 17264312 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 13288360 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 13202520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10770120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10710160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10345280 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-12-27 10:49 - 2014-12-13 11:08 - 03610440 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 03248968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 01895056 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434709.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 01556624 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434709.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00994384 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00968336 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00942400 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00928072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00906560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00876976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00496272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00399688 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00391488 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00353224 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00346944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00306328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00178632 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00165760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-12-27 10:36 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-12-27 10:36 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-12-26 14:27 - 2015-01-14 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v7.1 2014-12-26 14:19 - 2014-12-26 14:19 - 00002052 _____ () C:\Windows\epplauncher.mif 2014-12-26 14:00 - 2014-12-27 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ 2008 Express Edition 2014-12-26 14:00 - 2014-12-26 14:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 9.0 2014-12-26 13:48 - 2014-12-26 13:48 - 00000677 _____ () C:\Users\Public\Desktop\Dolphin.lnk 2014-12-26 13:48 - 2014-12-26 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin 2014-12-26 13:47 - 2014-12-26 13:47 - 00003120 _____ () C:\Windows\System32\Tasks\{8D7CC765-0A4E-40BC-82BC-1620ACA632A5} 2014-12-26 13:44 - 2014-12-26 13:44 - 00003142 _____ () C:\Windows\System32\Tasks\{FDD27265-12B6-4FF0-9124-760E9EF1D1CA} 2014-12-26 13:05 - 2014-12-26 13:05 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-26 12:57 - 2014-12-26 12:57 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010 2014-12-26 12:57 - 2014-12-26 12:57 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010 2014-12-26 12:56 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-12-26 12:56 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2014-12-26 12:56 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-12-26 12:56 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2014-12-26 12:56 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2014-12-26 12:56 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2014-12-26 12:56 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2014-12-26 12:56 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2014-12-26 12:56 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2014-12-26 12:56 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-26 12:54 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-26 12:54 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2014-12-26 12:54 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-26 12:54 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-26 12:54 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-26 12:54 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-12-26 12:54 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-12-26 12:54 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-26 12:54 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-12-26 12:54 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-26 12:54 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-12-26 12:54 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-26 12:54 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-12-26 12:54 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-12-26 12:54 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-12-26 12:54 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-12-26 12:54 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-26 12:54 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-12-26 12:54 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-12-26 12:54 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-26 12:54 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-12-26 12:54 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-12-26 12:54 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-12-26 12:54 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-12-26 12:54 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-26 12:54 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-26 12:54 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-12-26 12:54 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-12-26 12:54 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-26 12:54 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-26 12:54 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-26 12:54 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-12-26 12:54 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-12-26 12:54 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-12-26 12:54 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-12-26 12:54 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-26 12:54 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-26 12:54 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-12-26 12:54 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-26 12:54 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-12-26 12:54 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-26 12:54 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-12-26 12:54 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-12-26 12:54 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-26 12:54 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-26 12:54 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-26 12:54 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-26 12:54 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-26 12:54 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-26 12:54 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-12-26 12:54 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-26 12:54 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-26 12:54 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-26 12:54 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-26 12:54 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-26 12:54 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-26 12:54 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-26 12:54 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-26 12:54 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2014-12-26 12:54 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-12-26 12:54 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2014-12-26 12:54 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-12-26 12:54 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2014-12-26 12:54 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-12-26 12:54 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-12-26 12:54 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-12-26 12:54 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-12-26 12:54 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-12-26 12:53 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-12-26 12:53 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2014-12-26 12:53 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-12-26 12:53 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2014-12-26 12:53 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-12-26 12:53 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-12-26 12:53 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2014-12-26 12:53 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2014-12-26 12:53 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-12-26 12:53 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-12-26 12:53 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-12-26 12:53 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-12-26 12:53 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-12-26 12:53 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-12-26 12:53 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-12-26 12:53 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-12-26 12:53 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-12-26 12:53 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-12-26 12:53 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-12-26 12:53 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2014-12-26 12:53 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe 2014-12-26 12:53 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2014-12-26 12:53 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-12-26 12:53 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-12-26 12:53 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-12-26 12:53 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 05780480 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-12-26 12:53 - 2014-08-29 03:06 - 01125888 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-12-26 12:53 - 2014-08-29 02:44 - 04922368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-12-26 12:53 - 2014-08-29 02:44 - 01050112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-12-26 12:53 - 2014-08-29 02:44 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-12-26 12:53 - 2014-08-29 02:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-12-26 12:53 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2014-12-26 12:53 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2014-12-26 12:53 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-12-26 12:53 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2014-12-26 12:53 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-12-26 12:53 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2014-12-26 12:53 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-12-26 12:53 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-12-26 12:21 - 2015-01-14 17:36 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-12-26 12:18 - 2014-12-26 12:18 - 00000000 ____D () C:\Users\Sven\Documents\Optimizer Pro 2014-12-26 12:17 - 2014-12-26 12:17 - 00002139 _____ () C:\Windows\patsearch.bin 2014-12-26 12:17 - 2014-12-26 12:17 - 00000944 _____ () C:\Users\Sven\Desktop\FreeTVDownloader.lnk 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNewH_01009.Wdf 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1clickmoviedownloader.com 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____D () C:\Users\Sven\AppData\Local\Cool_Mirage 2014-12-25 10:08 - 2014-10-09 08:17 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2014-12-24 14:03 - 2014-12-24 14:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-24 14:03 - 2014-12-24 14:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-12-20 11:23 - 2014-12-20 11:23 - 00001721 _____ () C:\Users\Sven\Documents\Neue Datenbank.odb 2014-12-20 11:23 - 2014-12-20 11:23 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.1.lnk 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Users\Sven\Desktop\OpenOffice 4.1.1 (de) Installation Files 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\OpenOffice 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-12-19 08:59 - 2014-12-19 08:59 - 00000000 ____D () C:\Users\Sven\AppData\Local\CrashReportClient 2014-12-19 08:50 - 2014-12-19 08:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xb1usb_01011.Wdf 2014-12-18 18:08 - 2014-11-18 09:45 - 01868624 _____ (Leap Motion) C:\Windows\SysWOW64\Leap.dll 2014-12-18 09:08 - 2014-12-17 06:18 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-12-18 09:08 - 2014-12-17 06:18 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-12-18 09:07 - 2014-11-22 11:46 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-12-18 09:07 - 2014-11-22 11:46 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-14 18:09 - 2014-11-08 14:19 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Spotify 2015-01-14 18:09 - 2014-07-26 10:27 - 00000000 ____D () C:\Users\Sven\AppData\Local\Oculus 2015-01-14 17:49 - 2009-07-14 05:45 - 00031664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-01-14 17:49 - 2009-07-14 05:45 - 00031664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-01-14 17:47 - 2011-04-12 08:43 - 00766626 _____ () C:\Windows\system32\perfh007.dat 2015-01-14 17:47 - 2011-04-12 08:43 - 00175354 _____ () C:\Windows\system32\perfc007.dat 2015-01-14 17:47 - 2009-07-14 06:13 - 01810760 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-14 17:44 - 2014-01-04 11:07 - 00000000 ____D () C:\Users\Sven\AppData\Local\CrashDumps 2015-01-14 17:44 - 2014-01-01 19:53 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-01-14 17:41 - 2010-11-21 04:47 - 00587798 _____ () C:\Windows\PFRO.log 2015-01-14 17:41 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2015-01-14 17:41 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-14 17:41 - 2009-07-14 05:51 - 00877845 _____ () C:\Windows\setupact.log 2015-01-14 17:39 - 2014-01-02 12:19 - 00000000 ____D () C:\ProgramData\Origin 2015-01-14 17:37 - 2014-01-01 19:21 - 01869380 _____ () C:\Windows\WindowsUpdate.log 2015-01-14 17:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-01-14 14:58 - 2014-11-17 23:04 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-01-14 13:27 - 2014-12-13 13:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0 2015-01-14 13:03 - 2014-01-02 10:37 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-01-14 13:03 - 2014-01-02 10:37 - 00000000 ____D () C:\Program Files (x86)\Realtek 2015-01-14 11:41 - 2014-01-01 23:58 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-01-14 11:33 - 2014-01-02 23:12 - 00000000 ____D () C:\ProgramData\Package Cache 2015-01-08 21:33 - 2014-01-01 23:34 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\vlc 2015-01-08 21:32 - 2014-01-02 20:43 - 00002357 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-01-08 21:32 - 2014-01-02 20:42 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-08 21:28 - 2014-01-04 13:16 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-01-08 21:09 - 2014-01-02 12:19 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-08 21:07 - 2014-11-08 14:19 - 00000000 ____D () C:\Users\Sven\AppData\Local\Spotify 2015-01-08 21:07 - 2014-01-02 20:42 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-07 08:35 - 2014-06-20 22:18 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-01-07 08:35 - 2014-01-01 19:51 - 02210224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-01-07 08:34 - 2014-06-20 22:18 - 01715408 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-01-07 08:34 - 2014-01-01 19:51 - 02824504 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-01-04 14:56 - 2014-10-23 09:58 - 00000000 ____D () C:\VR_Game_Manager - By Bilago 2015-01-04 14:55 - 2014-02-08 08:34 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Skype 2015-01-04 12:57 - 2014-09-26 20:31 - 00000000 ____D () C:\Users\Sven\AppData\Local\Amazon_FireTV_Utility_App 2015-01-02 23:11 - 2014-01-01 23:24 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Bitcoin 2015-01-01 10:09 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-01-01 09:38 - 2014-01-01 23:52 - 00782230 _____ () C:\Windows\DirectX.log 2014-12-27 21:29 - 2014-11-23 10:32 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-12-27 21:28 - 2014-11-12 07:56 - 00000000 ____D () C:\Users\Sven\AppData\Local\JDownloader 2.0 2014-12-27 20:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-12-27 18:46 - 2014-01-01 19:51 - 00001343 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-12-27 17:05 - 2014-01-01 23:46 - 00000000 ____D () C:\Users\Sven\Documents\my games 2014-12-27 10:50 - 2014-01-01 19:26 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-12-27 10:50 - 2014-01-01 19:25 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-12-27 10:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-12-27 10:46 - 2014-01-01 19:26 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-12-27 10:32 - 2014-01-01 19:21 - 00000000 ____D () C:\Users\Sven 2014-12-26 14:27 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-12-26 13:38 - 2014-12-13 13:53 - 00000000 ____D () C:\Users\Sven\Documents\Visual Studio 2010 2014-12-26 13:05 - 2014-05-09 20:17 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-26 13:05 - 2009-07-14 05:45 - 00299152 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-12-26 12:59 - 2014-01-02 00:39 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-26 12:42 - 2014-02-14 21:45 - 00000000 ____D () C:\ProgramData\Adobe 2014-12-26 12:40 - 2014-11-17 23:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-12-26 12:40 - 2014-11-17 23:04 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-12-26 12:40 - 2014-01-01 23:33 - 00001098 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-12-26 12:18 - 2014-01-01 19:48 - 00001272 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora.lnk 2014-12-26 12:18 - 2014-01-01 19:48 - 00001260 _____ () C:\Users\Public\Desktop\Aurora.lnk 2014-12-26 12:18 - 2014-01-01 19:21 - 00001611 _____ () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-12-26 11:01 - 2014-02-03 17:47 - 00000000 ____D () C:\ProgramData\Codemasters 2014-12-25 10:09 - 2014-01-01 19:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-12-24 14:03 - 2014-02-08 08:34 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-12-24 14:03 - 2014-02-08 08:34 - 00000000 ____D () C:\ProgramData\Skype 2014-12-24 14:01 - 2014-08-11 16:52 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\TS3Client 2014-12-24 13:47 - 2014-01-02 12:20 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Origin 2014-12-24 13:45 - 2011-04-12 08:54 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-12-24 13:29 - 2014-08-28 16:15 - 00001280 _____ () C:\Users\Sven\Desktop\Start vorpX.lnk 2014-12-24 13:29 - 2014-08-24 15:33 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vorpX 2014-12-23 16:40 - 2014-08-16 15:48 - 00000890 _____ () C:\Users\Sven\Desktop\Video Downloader Ultimate.lnk 2014-12-23 16:40 - 2014-08-16 15:48 - 00000000 ____D () C:\ProgramData\VideoDownloaderUltimateWinApp 2014-12-20 11:23 - 2014-01-01 19:34 - 00064920 _____ () C:\Users\Sven\AppData\Local\GDIPFONTCACHEV1.DAT 2014-12-19 21:04 - 2014-09-08 17:58 - 00000000 ____D () C:\Users\Sven\AppData\Local\Targem 2014-12-17 06:18 - 2014-01-07 22:24 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll Some content of TEMP: ==================== C:\Users\Sven\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-01-04 16:08 ==================== End Of Log ============================ --- --- --- Und der Addition.txt : Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-01-2015 02 Ran by Sven at 2015-01-14 18:20:05 Running from C:\Users\Sven\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Out of date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Enabled - Out of date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Disabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1000 Amps (HKLM-x32\...\Steam App 205690) (Version: - Brandon Brizzi) 337 GAMES (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\337Games) (Version: 1.1.1.0 - ) <==== ATTENTION 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome (HKLM-x32\...\Steam App 15560) (Version: - Dejobaan Games, LLC) aartemis Browser Protecter (HKLM-x32\...\aartemis Browser Protecter) (Version: - aartemis) <==== ATTENTION Abyss: The Wraiths of Eden (HKLM-x32\...\Steam App 284710) (Version: - Artifex Mundi sp. z o.o.) Ace Stream Media 2.2.10-next (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\AceStream) (Version: 2.2.10-next - Ace Stream Media) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adventures of Shuggy (HKLM-x32\...\Steam App 211440) (Version: - Smudged Cat Games Ltd) Air Video Server HD 2.0.2 (HKLM-x32\...\Air Video Server HD) (Version: 2.0.2 - InMethod, s.r.o.) Alan Wake's American Nightmare (HKLM-x32\...\Steam App 202750) (Version: - Remedy Entertainment) Alien Zombie Megadeath (HKLM-x32\...\Steam App 110610) (Version: - PomPom) Alien: Isolation (HKLM-x32\...\Steam App 214490) (Version: - Creative Assembly) Alpha Prime (HKLM-x32\...\Steam App 2590) (Version: - Black Element) Alpha Protocol (HKLM-x32\...\Steam App 34010) (Version: - Obsidian Entertainment) AltspaceVR Web Installer (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\AltspaceVR) (Version: Web Installer - AltspaceVR, Inc.) Always Sometimes Monsters (HKLM-x32\...\Steam App 274310) (Version: - Vagabond Dog) Amnesia: The Dark Descent (HKLM-x32\...\Steam App 57300) (Version: - Frictional Games) Among the Sleep (HKLM-x32\...\Steam App 250620) (Version: - Krillbite Studio) Anno 2070 (HKLM-x32\...\Steam App 48240) (Version: - BlueByte) Antichamber (HKLM-x32\...\Steam App 219890) (Version: - Alexander Bruce) Aperture Tag: The Paint Gun Testing Initiative (HKLM-x32\...\Steam App 280740) (Version: - Aperture Tag Team) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.) ASRock XFast RAM v3.0.2 (HKLM\...\ASRock XFast RAM_is1) (Version: - ASRock Inc.) Assetto Corsa (HKLM-x32\...\Steam App 244210) (Version: - Kunos Simulazioni) A-Tuning v2.0.44 (HKLM-x32\...\A-Tuning_is1) (Version: 2.0.44 - ) AudibleManager (HKLM-x32\...\AudibleManager) (Version: 1997487358.48.56.34351642 - Audible, Inc.) Aurora 32.0a2 (x86 de) (HKLM-x32\...\Aurora 32.0a2 (x86 de)) (Version: 32.0a2 - Mozilla) Avira (HKLM-x32\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: 1.1.27.25527 - Avira Operations & Co. KG) Avira (x32 Version: 1.1.27.25527 - Avira Operations & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira) Banished (HKLM-x32\...\GOGPACKBANISHED_is1) (Version: 2.0.0.3 - GOG.com) Bank Limit version Beta 1.0 (HKLM-x32\...\{B9E4E288-3D18-440F-9FEC-B79A5F299D11}_is1) (Version: Beta 1.0 - Tastee Beverage Studios) Binary Domain (HKLM-x32\...\Steam App 203750) (Version: - Devil's Details) Bing Bar (HKLM-x32\...\{16793295-2366-40F7-A045-A3E42A81365E}) (Version: 7.1.362.0 - Microsoft Corporation) Bitcoin (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Bitcoin) (Version: 0.8.6 - Bitcoin project) BitTorrent (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\BitTorrent) (Version: 7.9.2.34947 - BitTorrent Inc.) BlazeRush (HKLM-x32\...\Steam App 302710) (Version: - Targem Games) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Botanicula (HKLM-x32\...\Steam App 207690) (Version: - Amanita Design) Broken Age (HKLM-x32\...\Steam App 232790) (Version: - Double Fine Productions) Caffeine Demo (HKLM-x32\...\Steam App 324490) (Version: - Incandescent Imaging) Castlevania Lords of Shadow 2 (HKLM-x32\...\Castlevania Lords of Shadow 2_is1) (Version: - Konami) Child of Light (HKLM-x32\...\Steam App 256290) (Version: - Ubisoft Montréal) Costume Quest (HKLM-x32\...\Steam App 115100) (Version: - Double Fine Productions) Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: 1.0.0.0 - Electronic Arts) CSR Harmony Wireless Software Stack (HKLM\...\{17DEA095-8EE1-49A2-AC5A-9663DB098FA9}) (Version: 2.1.63.0 - CSR Plc.) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DCS World (HKLM\...\DCS World_is1) (Version: 1.2.10.30996 - Eagle Dynamics) DCS World (HKLM-x32\...\Steam App 223750) (Version: - Eagle Dynamics) Deadly Premonition: The Director's Cut (HKLM-x32\...\Steam App 247660) (Version: - Rising Star Games) Dear Esther (HKLM-x32\...\Steam App 203810) (Version: - thechineseroom & Robert Briscoe) Dear Leader Prototype (HKLM-x32\...\Steam App 285250) (Version: - ) Deponia (HKLM-x32\...\Steam App 214340) (Version: - Daedalic Entertainment) DieselStormers (HKLM-x32\...\Steam App 299480) (Version: - Black Forest Games) DiRT 3 (HKLM-x32\...\Steam App 44320) (Version: - Codemasters Racing Studio) Disk Space Fan 4 Free 4.5.1.129 (HKLM-x32\...\Disk Space Fan 4 Free_is1) (Version: - Disk Space Fan Team) Dolphin VR 4.0 (HKLM-x32\...\Dolphin) (Version: 4.0 - Dolphin Development Team) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.2 - Electronic Arts) Dream (HKLM-x32\...\Steam App 229580) (Version: - HyperSloth) Dreamfall Chapters (HKLM-x32\...\Steam App 237850) (Version: - Red Thread Games) Driver San Francisco (HKLM-x32\...\Steam App 33440) (Version: - Ubisoft Reflections) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) EaseUS Partition Master 9.3.0 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) Elite Dangerous Launcher version 0.4.1755.0 (HKLM-x32\...\{696F8871-C91D-4CB1-825D-36BE18065575}_is1) (Version: 0.4.1755.0 - Frontier Developments) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 15.2.20140326 - Landesfinanzdirektion Thüringen) Empire: Total War (HKLM-x32\...\Steam App 10500) (Version: - The Creative Assembly) Escape Rosecliff Island (HKLM-x32\...\Steam App 3600) (Version: - SpinTop Games) Estranged: Act I (HKLM-x32\...\Steam App 261820) (Version: - Alan Edwardes) Ether One (HKLM-x32\...\GOGPACKETHERONE_is1) (Version: 2.0.0.2 - GOG.com) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) EXPERTool v8.9 (HKLM-x32\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 8.9.8.5 - Gainward Co. Ltd.) FRACT OSC (HKLM-x32\...\Steam App 243220) (Version: - Phosfiend Systems) Fraps (HKLM-x32\...\Fraps) (Version: - ) Frozen Synapse (HKLM-x32\...\Steam App 98200) (Version: - Mode 7) FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games) Futuremark SystemInfo (HKLM-x32\...\{991C8DEA-3C01-45B8-A62B-1BB69BDC277D}) (Version: 4.23.255 - Futuremark) Giana Sisters: Twisted Dreams - Rise of the Owlverlord (HKLM-x32\...\Steam App 246960) (Version: - Black Forest Games) Giana Sisters: Twisted Dreams (HKLM-x32\...\Steam App 223220) (Version: - Black Forest Games) Gone Home (HKLM-x32\...\Steam App 232430) (Version: - The Fullbright Company) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.69 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\Steam App 12220) (Version: - Rockstar North / Toronto) GRID 2 (HKLM-x32\...\Steam App 44350) (Version: - Codemasters Racing) GRID Autosport (HKLM-x32\...\Steam App 255220) (Version: - Codemasters Racing) Guacamelee! Gold Edition (HKLM-x32\...\Steam App 214770) (Version: - DrinkBox Studios) Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) Half-Life 2: Deathmatch (HKLM-x32\...\Steam App 320) (Version: - Valve) Halo: Spartan Assault (HKLM-x32\...\Steam App 277430) (Version: - Vanguard Games) Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - IO Interactive) Hitman: Blood Money (HKLM-x32\...\Steam App 6860) (Version: - IO Interactive) Hollow version 2.2 (HKLM-x32\...\{BEFA9DB7-29B3-4855-809F-6CA0673B3E49}_is1) (Version: 2.2 - Magpie Games) How to Survive (HKLM-x32\...\Steam App 250400) (Version: - ) iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation) Intel(R) Network Connections 18.5.54.0 (HKLM\...\PROSetDX) (Version: 18.5.54.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Intel(R) Smart Connect Technology 4.1 x64 (HKLM\...\{1EF24D7D-7B14-4EBA-A686-9E91C9C6763D}) (Version: 4.1.40.2143 - Intel) Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Jazzpunk (HKLM-x32\...\Steam App 250260) (Version: - Necrophone Games) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Killer is Dead (HKLM-x32\...\Steam App 261110) (Version: - KADOKAWA GAMES / GRASSHOPPER MANUFACTURE) Kingdom Come: Deliverance (Alpha Access) (HKLM-x32\...\Steam App 286860) (Version: - ) Kite & Lightning version 0.1.3 (HKLM-x32\...\{35022DF9-324E-4F2F-A48C-B18E87F42A59}_is1) (Version: 0.1.3 - Mythly, Inc.) K-Lite Codec Pack 10.5.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.5.5 - ) L.A. Noire (HKLM-x32\...\Steam App 110800) (Version: - Team Bondi) Launchy 2.6 Beta 2 (HKLM-x32\...\Launchy_21344213_is1) (Version: - Code Jelly) Legend of Dungeon (HKLM-x32\...\Steam App 238280) (Version: - ) LiveViewRift (HKLM-x32\...\{AEC418EC-21B0-4EF0-A698-0E159038C324}) (Version: 3.10.2 - Viarum) Lunar Flight (HKLM-x32\...\Steam App 208600) (Version: - Shovsoft) Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Medieval II: Total War (HKLM-x32\...\Steam App 4700) (Version: - The Creative Assembly) METAL GEAR SOLID V: GROUND ZEROES (HKLM-x32\...\Steam App 311340) (Version: - Kojima Productions) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 DEU (HKLM\...\{C3EAE456-7E7A-451F-80EF-F34C7A13C558}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Express Edition with SP1 - ENU (HKLM-x32\...\Microsoft Visual C++ 2008 Express Edition with SP1 - ENU) (Version: - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{a55ac379-46b0-461a-95b1-fef5c08443f2}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Windows SDK for Windows 7 (7.1) (HKLM\...\SDKSetup_7.1.7600.0.30514) (Version: 7.1.7600.0.30514 - Microsoft Corporation) Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Middle Earth Shadow of Mordor (HKLM-x32\...\Middle Earth Shadow of Mordor_is1) (Version: - ) Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.) MiniTool Partition Wizard Home Edition 8.1.1 (HKLM-x32\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) Monaco (HKLM-x32\...\Steam App 113020) (Version: - Pocketwatch Games) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0a2 - Mozilla) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) My Game Long Name (HKLM\...\UDK-31af0f5d-62a8-4e82-80d1-bdc53cd2485d) (Version: - Epic Games, Inc.) My Game Long Name (HKLM\...\UDK-68c701e1-d3a5-403c-90b9-b141064dc86f) (Version: - Epic Games, Inc.) Next Car Game (HKLM-x32\...\Steam App 228380) (Version: - Bugbear) Next Car Game Free Technology Demo (HKLM-x32\...\Next Car Game Free Technology Demo) (Version: - Bugbear Entertainment) NVIDIA 3D Vision Controller-Treiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.09 - NVIDIA Corporation) NVIDIA GeForce Experience 2.2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.09 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) O&O Defrag Free Edition (HKLM\...\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}) (Version: 14.1.431 - O&O Software GmbH) O&O Defrag Professional (HKLM\...\{50C961A1-889F-4A4E-9587-2772A45B6AAD}) (Version: 18.0.39 - O&O Software GmbH) Oculus Display Driver (Install Only) (HKLM\...\{2C48475F-F6AA-48BC-827E-67C21685BE65}) (Version: 1.2.2.0 - Oculus VR, LLC) Oculus Positional Tracker Driver (Install Only) (HKLM\...\{53CBAB0B-4713-4743-B62F-325ED1B6869F}) (Version: 0.0.1.7 - Oculus VR, LLC) Oculus Runtime (HKLM-x32\...\Oculus Runtime 0.4.4 Rev 1) (Version: 0.4.4 Rev 1 - Oculus VR, LLC) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Oracle VM VirtualBox 4.3.6 (HKLM\...\{DC65DFD8-E175-4A85-948A-42965853B2E8}) (Version: 4.3.6 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.) Outerra - Anteworld - Outerra Anteworld Demo (HKLM-x32\...\Outerra Anteworld) (Version: "0.8.3-4853" - "Outerra") Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels) Papo & Yo (HKLM-x32\...\Steam App 227080) (Version: 2.0 - Minority Media Inc.) Paul McCartney Preview (HKLM-x32\...\Paul McCartney Preview By Jaunt Inc.) (Version: - ) Pinball Arcade (HKLM-x32\...\Steam App 238260) (Version: - FarSight Studios) Pinball FX2 (HKLM-x32\...\Steam App 226980) (Version: - Zen Studios) Plain Sight (HKLM-x32\...\Steam App 49900) (Version: - Beatnik Games) Plex Home Theater (HKLM-x32\...\Plex Home Theater) (Version: 1.2.3 - Plex inc) Plex Media Server (HKLM-x32\...\{5ea93dc7-0906-47a6-8033-d26ed443f0a8}) (Version: 0.9.1101 - Plex, Inc.) Plex Media Server (x32 Version: 0.9.1101 - Plex, Inc.) Hidden Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) Prison Architect (HKLM-x32\...\Steam App 233450) (Version: - Introversion Software) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Qbeh-1: The Atlas Cube (HKLM-x32\...\Steam App 252550) (Version: - Liquid Flower) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) RaceRoom Racing Experience (HKLM-x32\...\Steam App 211500) (Version: - SimBin Studios AB) RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - SimBin) Radial-G : Racing Revolved (HKLM-x32\...\Steam App 330770) (Version: - Tammeka Games) Radial-G SP Demo v1.3 (HKLM-x32\...\{B7D14920-5450-4128-BFCD-DF020295B145}) (Version: 1.3 - Tammeka Games) Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) Rayman Legends (HKLM-x32\...\Steam App 242550) (Version: - ) Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 5.1.38.0 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.34.1130.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Renegade Ops (HKLM-x32\...\Steam App 99300) (Version: - Avalanche Studios) RetroShare (HKLM-x32\...\RetroShare) (Version: - ) Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - Piranha Bytes) RivaTuner Statistics Server 6.1.2 (HKLM-x32\...\RTSS) (Version: 6.1.2 - Unwinder) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.0.6 - Rockstar Games) Rome: Total War (HKLM-x32\...\Steam App 4760) (Version: - The Creative Assembly) Saints Row IV (HKLM-x32\...\Steam App 206420) (Version: - Deep Silver Volition) SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association) Shadow Warrior (HKLM-x32\...\Steam App 233130) (Version: - Flying Wild Hog) SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.18.14 - NVIDIA Corporation) Hidden Shufflepuck Cantina Deluxe VR (HKLM-x32\...\Steam App 259510) (Version: - Agharta Studio) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - Firaxis Games) Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games) Sins of a Solar Empire: Rebellion (HKLM-x32\...\Steam App 204880) (Version: - Ironclad Games) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Son of Nor (HKLM-x32\...\Steam App 264000) (Version: - stillalive studios) Spec Ops: The Line (HKLM-x32\...\Steam App 50300) (Version: - Yager) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 2.5.8.8 - Splashtop Inc.) Spotify (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Spotify) (Version: 0.9.15.27.g87efe634 - Spotify AB) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Sql Server Customer Experience Improvement Program (x32 Version: 10.0.1600.22 - Microsoft Corporation) Hidden Star Conflict (HKLM-x32\...\Steam App 212070) (Version: - Star Gem Inc.) Starseed Pilgrim (HKLM-x32\...\Steam App 230980) (Version: - Droqen) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SteamVR (HKLM-x32\...\Steam App 250820) (Version: - ) StreamTorrent 1.0 (HKLM-x32\...\StreamTorrent 1.0) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.32494 - TeamViewer) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) The 11th Hour (HKLM-x32\...\Steam App 255940) (Version: - Trilobyte Games) The Bard's Tale (HKLM-x32\...\Steam App 41900) (Version: - inXile Entertainment) The Cat Lady (HKLM-x32\...\Steam App 253110) (Version: - Harvester Games) The Dream Machine (HKLM-x32\...\Steam App 94300) (Version: - The Sleeping Machine) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) |
14.01.2015, 18:33 | #4 |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Und der Rest vom addition( meine 500+ Steam Bibliothek ist wohl etwas zu viel): Code:
ATTFilter The Evil Within (HKLM-x32\...\Steam App 268050) (Version: - Tango Gameworks) The Evil Within (HKLM-x32\...\VGhlRXZpbFdpdGhpbg==_is1) (Version: 1 - ) The Mental Torment Episode One (HKLM-x32\...\The Mental Torment Episode One 1.1) (Version: 1.1 - The Andronauts) The Mission Trailer (HKLM-x32\...\The Mission Trailer By Jaunt Inc.) (Version: - ) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Swapper (HKLM-x32\...\Steam App 231160) (Version: - Olli Harjola, Otto Hantula, Tom Jubert, Carlo Castellano) The Talos Principle Public Test (HKLM-x32\...\Steam App 330710) (Version: - Croteam) The Vanishing of Ethan Carter (HKLM-x32\...\Steam App 258520) (Version: - The Astronauts) The Vanishing of Ethan Carter (HKLM-x32\...\The Vanishing of Ethan Carter_is1) (Version: - ) The Walking Dead: Season Two (HKLM-x32\...\Steam App 261030) (Version: - Telltale Games) The Wolf Among Us (HKLM-x32\...\Steam App 250320) (Version: - Telltale Games) This War of Mine Version 1.0.0.0 (HKLM-x32\...\This War of Mine_is1) (Version: 1.0.0.0 - 11 bit studios) Tiny and Big: Grandpa's Leftovers (HKLM-x32\...\Steam App 205910) (Version: - Black Pants Game Studio) Total War: SHOGUN 2 (HKLM-x32\...\Steam App 34330) (Version: - The Creative Assembly) Toybox Turbos (HKLM-x32\...\Steam App 287260) (Version: - Codemasters) TrackMania² Stadium Demo (HKLM-x32\...\Steam App 233070) (Version: - Nadeo) TRAUMA (HKLM-x32\...\Steam App 98100) (Version: - Krystian Majewski) TRI: Of Friendship and Madness (HKLM-x32\...\Steam App 293660) (Version: - Rat King Entertainment) Trials Fusion (HKLM-x32\...\Steam App 245490) (Version: - RedLynx, in collaboration with Ubisoft Shanghai, Ubisoft Kiev) Trials Fusion (HKLM-x32\...\Trials Fusion_is1) (Version: - ) TriDef 3D 6.3 (HKLM-x32\...\essentials-bundle) (Version: 6.3 - Dynamic Digital Depth Australia Pty Ltd) TriDef 3D Oculus Rift Add-on 1.0b7 (HKLM-x32\...\oculus-rift-bundle) (Version: 1.0b7 - Dynamic Digital Depth Australia Pty Ltd) Unreal Engine (HKLM\...\{38F69744-A2C5-4913-813B-7001D6CDC130}) (Version: 1.0.3.0 - Epic Games, Inc.) Uplay (HKLM-x32\...\Uplay) (Version: 4.2 - Ubisoft) Valiant Hearts: The Great War™ / Soldats Inconnus : Mémoires de la Grande Guerre™ (HKLM-x32\...\Steam App 260230) (Version: - Ubisoft Montpellier) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VideoDownloaderUltimate (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\VideoDownloaderUltimateWinApp) (Version: 1.0.1.32 - Link64) Virtual Desktop (HKLM\...\{7FEA72A1-1FB8-4860-9955-9053E893AFA6}) (Version: 1.0.51 - Guy Godin) VirtualReality.io (HKLM-x32\...\VirtualReality.io) (Version: - ) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) vorpX (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\{C136D0CC-9077-4979-801E-6B5A956EED6A}_is1) (Version: 0.7.5.0 - Animation Labs) VR Player (HKLM-x32\...\{31DDB528-67A7-415C-B218-B111B5FAF5DD}) (Version: 0.5.1 - StephaneLX) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) Wasteland 2 (HKLM-x32\...\Steam App 240760) (Version: - inXile Entertainment) WATCH_DOGS Hotfix (HKLM-x32\...\V0FUQ0hfRE9HUw==_is1) (Version: 1 - ) WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP) WinDirStat 1.1.2 (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\WinDirStat) (Version: - ) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) Wolfenstein The New Order German Edition [Full Uncut] 1.0.0.1 (HKLM-x32\...\Wolfenstein The New Order German Edition [Full Uncut] 1.0.0.1) (Version: - ) World of Diving (HKLM-x32\...\Steam App 251890) (Version: - Vertigo Games) XBMC (HKU\S-1-5-21-890943707-450372048-868329369-1000\...\XBMC) (Version: - Team XBMC) XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version: - Firaxis Games) Zero Point (HKLM-x32\...\Steam App 268710) (Version: - Condition One) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 08-01-2015 21:10:40 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {467A5B89-961B-4587-8C6C-9C048A3AE6E0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.) Task: {4CBF17CD-2FDE-492F-A642-F8C2DC3E5F74} - System32\Tasks\{FCFB8A02-8B26-4BAC-BAA6-4B2BC93E9115} => pcalua.exe -a "C:\FTV_v0.21 (1)\FTV\Amazon FireTV Utility App.exe" -d "C:\FTV_v0.21 (1)\FTV" Task: {57890156-71F1-4F7A-8943-079B7EBD08F1} - System32\Tasks\{A9381BDE-3A4D-4D38-B307-C17757AD9FBF} => pcalua.exe -a "C:\Assassin's Creed Unity\GDFInstall.exe" -d "C:\Assassin's Creed Unity" Task: {5A15D614-FE04-47A6-A2C9-4EA021D47D9F} - System32\Tasks\{8D7CC765-0A4E-40BC-82BC-1620ACA632A5} => pcalua.exe -a C:\Users\Sven\Downloads\winsdk_web.exe -d C:\Users\Sven\Downloads Task: {64DD3B06-20F3-43CD-BD1B-AAA686E08DCB} - System32\Tasks\{FDD27265-12B6-4FF0-9124-760E9EF1D1CA} => pcalua.exe -a C:\Users\Sven\Downloads\VC-Compiler-KB2519277.exe -d C:\Users\Sven\Downloads Task: {6501AD59-9D7D-41D2-B7D3-381237E7C0C4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.) Task: {65739F9A-5CF4-44F3-90FC-DB6F6F1A4FB8} - System32\Tasks\{BDEF2070-3970-4EBC-82E3-1D679FE7BE08} => Chrome.exe hxxp://ui.skype.com/ui/0/6.18.0.106/de/abandoninstall?source=lightinstaller&page=tsMain Task: {74155743-A692-4A29-838E-01051923E8DF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-13] (Adobe Systems Incorporated) Task: {75CCCB62-720C-4B64-AB29-C179CD071A07} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {BDBE9A1F-EE19-4673-9255-45DFB8D5D189} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {C460505D-34F0-40D6-851D-A6BB970E4257} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2014-12-01] (Apple Inc.) Task: {F0D15EC5-D9DD-4C82-BEB9-39A380693B7F} - System32\Tasks\EXPERTool => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2013-11-08] (Gainward Co. Ltd.) Task: {F75F9C6A-A382-49A3-9AB2-0B63F8C83680} - System32\Tasks\ATuning => C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe [2013-09-26] (ASRock Incorporation) Task: {F9C1FEE2-EED8-496C-8E85-6A4F5948D76B} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe ==================== Loaded Modules (whitelisted) ============= 2014-12-27 10:50 - 2014-12-13 09:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-01-01 20:04 - 2013-05-28 17:58 - 00454656 _____ () C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe 2013-03-14 14:42 - 2013-03-14 14:42 - 00182248 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2013-03-14 14:42 - 2013-03-14 14:42 - 00059880 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-09-05 18:08 - 2014-12-03 22:17 - 00231952 _____ () C:\Program Files (x86)\Oculus\Service\OVRServiceLauncher.exe 2014-01-06 21:14 - 2014-01-06 21:14 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2012-03-22 21:11 - 2012-03-22 21:11 - 00244944 _____ () C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe 2014-11-09 06:42 - 2014-11-12 18:29 - 00019968 _____ () C:\Program Files (x86)\VRChat\VRChatMonitor\VRChatMonitor.exe 2014-09-29 18:15 - 2014-09-29 18:15 - 00775432 _____ () C:\Program Files (x86)\AirVideoServer HD\ExternalEncoder.exe 2014-11-08 14:19 - 2014-12-10 20:56 - 00374840 _____ () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe 2014-10-31 23:27 - 2014-10-31 23:27 - 00183488 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2014-09-05 18:08 - 2014-12-03 22:17 - 01176592 _____ () C:\Program Files (x86)\Oculus\Service\OVRServer_x64.exe 2014-07-31 11:16 - 2014-07-31 11:16 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 12:05 - 2014-10-11 12:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-11-08 14:19 - 2014-12-10 20:56 - 36966968 _____ () C:\Users\Sven\AppData\Roaming\Spotify\Data\libcef.dll 2014-09-11 07:23 - 2012-11-20 16:13 - 00264192 _____ () C:\Program Files (x86)\Razer\Razer Cortex\D3DX8Wrapper.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00072840 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00196232 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00838792 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00049800 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00086664 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 02092680 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_core249.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 01883784 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc249.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00502920 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 01007104 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00023552 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00024576 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00216576 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00261120 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00019456 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00337408 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-02-14 11:38 - 2014-12-18 15:54 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-09-28 19:02 - 2014-09-28 19:02 - 00759808 _____ () C:\Program Files (x86)\AirVideoServer HD\gstreamer-0.11.dll 2014-09-28 19:02 - 2014-09-28 19:02 - 00282112 _____ () C:\Program Files (x86)\AirVideoServer HD\gstbase-0.11.dll 2014-09-28 19:02 - 2014-09-28 19:02 - 00233984 _____ () C:\Program Files (x86)\AirVideoServer HD\gstaudio-0.11.dll 2014-09-28 19:02 - 2014-09-28 19:02 - 00176640 _____ () C:\Program Files (x86)\AirVideoServer HD\gsttag-0.11.dll 2014-08-14 18:19 - 2014-08-14 18:19 - 01680427 _____ () C:\Program Files (x86)\AirVideoServer HD\liborc-0.4-0.dll 2014-09-28 19:02 - 2014-09-28 19:02 - 00214528 _____ () C:\Program Files (x86)\AirVideoServer HD\gstvideo-0.11.dll 2014-04-15 16:38 - 2014-04-15 16:38 - 00917504 _____ () C:\Program Files (x86)\AirVideoServer HD\libiconv.dll 2014-04-15 20:41 - 2014-04-15 20:41 - 00649216 _____ () C:\Program Files (x86)\AirVideoServer HD\tag.dll 2014-09-28 19:03 - 2014-09-28 19:03 - 00036864 _____ () C:\Program Files (x86)\AirVideoServer HD\gstapp-0.11.dll 2014-09-28 19:03 - 2014-09-28 19:03 - 00117760 _____ () C:\Program Files (x86)\AirVideoServer HD\gstpbutils-0.11.dll 2014-09-28 19:04 - 2014-09-28 19:04 - 00161792 _____ () C:\Program Files (x86)\AirVideoServer HD\gstcodecparsers-0.11.dll 2014-04-15 16:38 - 2014-04-15 16:38 - 00069632 _____ () C:\Program Files (x86)\AirVideoServer HD\fribidi.dll 2013-12-09 01:19 - 2013-12-09 01:19 - 02342912 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll 2013-12-09 01:18 - 2013-12-09 01:18 - 00246784 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll 2013-12-09 01:19 - 2013-12-09 01:19 - 00047616 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll 2013-12-09 01:19 - 2013-12-09 01:19 - 00050688 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll 2013-12-09 01:18 - 2013-12-09 01:18 - 00079360 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll 2015-01-14 13:43 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-01-14 13:43 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-01-14 13:43 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-01-08 21:32 - 2015-01-07 05:33 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\libglesv2.dll 2015-01-08 21:32 - 2015-01-07 05:33 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\libegl.dll 2015-01-08 21:32 - 2015-01-07 05:33 - 09171272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\pdf.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00044680 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00027784 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00018568 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00034952 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00836232 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00062600 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00166024 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll 2014-10-15 02:51 - 2014-10-15 02:51 - 00192136 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00016520 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00054920 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\crypto.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00017032 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\rand.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00043656 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\OpenSSL\SSL.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00081544 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00111240 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd 2014-10-15 02:51 - 2014-10-15 02:51 - 00689800 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd 2014-11-08 14:19 - 2014-12-10 20:56 - 00867896 _____ () C:\Users\Sven\AppData\Roaming\Spotify\Data\ffmpegsumo.dll 2014-11-08 14:19 - 2014-12-10 20:56 - 00886840 _____ () C:\Users\Sven\AppData\Roaming\Spotify\Data\libglesv2.dll 2014-11-08 14:19 - 2014-12-10 20:56 - 00108600 _____ () C:\Users\Sven\AppData\Roaming\Spotify\Data\libegl.dll 2014-01-02 10:38 - 2013-09-03 16:52 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-890943707-450372048-868329369-500 - Administrator - Disabled) Gast (S-1-5-21-890943707-450372048-868329369-501 - Limited - Disabled) Sven (S-1-5-21-890943707-450372048-868329369-1000 - Administrator - Enabled) => C:\Users\Sven ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/14/2015 06:09:53 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile Microsoft.SqlServer.Replication, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 because of the following error: Das angegebene Modul wurde nicht gefunden. (Exception from HRESULT: 0x8007007E). Error: (01/14/2015 06:09:44 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile C:\Program Files (x86)\Microsoft SQL Server\100\SDK\Assemblies\Microsoft.SqlServer.Replication.dll because of the following error: Das angegebene Modul wurde nicht gefunden. (Exception from HRESULT: 0x8007007E). Error: (01/14/2015 06:09:07 PM) (Source: OculusVR) (EventID: 0) (User: ) Description: Error: {ERR-027} [WatchDogObserver] Deadlock detected: DeviceManager Error: (01/14/2015 06:09:07 PM) (Source: OculusVR) (EventID: 0) (User: ) Description: Error: {ERR-009w} [HIDDevice] SetFeatureReport 17 failed Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 4010 Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 4010 Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 3011 Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 3011 Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (01/14/2015 06:20:19 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "NLA (Network Location Awareness)" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073741288. Error: (01/14/2015 06:20:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (01/14/2015 06:20:09 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "NLA (Network Location Awareness)" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073741288. Error: (01/14/2015 06:20:09 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (01/14/2015 06:19:59 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "NLA (Network Location Awareness)" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073741288. Error: (01/14/2015 06:19:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (01/14/2015 06:19:49 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "NLA (Network Location Awareness)" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073741288. Error: (01/14/2015 06:19:49 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (01/14/2015 06:19:39 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "NLA (Network Location Awareness)" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073741288. Error: (01/14/2015 06:19:39 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Microsoft Office Sessions: ========================= Error: (01/14/2015 06:09:53 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile Microsoft.SqlServer.Replication, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 because of the following error: Das angegebene Modul wurde nicht gefunden. (Exception from HRESULT: 0x8007007E). Microsoft.SqlServer.Replication, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 Error: (01/14/2015 06:09:44 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile C:\Program Files (x86)\Microsoft SQL Server\100\SDK\Assemblies\Microsoft.SqlServer.Replication.dll because of the following error: Das angegebene Modul wurde nicht gefunden. (Exception from HRESULT: 0x8007007E). C:\Program Files (x86)\Microsoft SQL Server\100\SDK\Assemblies\Microsoft.SqlServer.Replication.dll Error: (01/14/2015 06:09:07 PM) (Source: OculusVR) (EventID: 0) (User: ) Description: Error: {ERR-027} [WatchDogObserver] Deadlock detected: DeviceManager Error: (01/14/2015 06:09:07 PM) (Source: OculusVR) (EventID: 0) (User: ) Description: Error: {ERR-009w} [HIDDevice] SetFeatureReport 17 failed Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 4010 Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 4010 Error: (01/14/2015 05:54:54 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 3011 Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 3011 Error: (01/14/2015 05:54:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second CodeIntegrity Errors: =================================== Date: 2014-04-18 17:38:58.950 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.885 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.809 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.648 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.588 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.529 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.476 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.358 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-18 17:38:58.238 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows.old\WINDOWS\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-13 20:50:46.621 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\explorer.exe" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Percentage of memory in use: 21% Total physical RAM: 8121.55 MB Available physical RAM: 6411.35 MB Total Pagefile: 16241.29 MB Available Pagefile: 12419.99 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:238.47 GB) (Free:24.08 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:465.76 GB) (Free:72.73 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: (Filme) (Fixed) (Total:857.58 GB) (Free:168.45 GB) NTFS Drive g: (Sonstiges) (Fixed) (Total:488.9 GB) (Free:163.52 GB) NTFS Drive h: (Spiele) (Fixed) (Total:516.52 GB) (Free:182.49 GB) NTFS Drive j: () (Removable) (Total:1.85 GB) (Free:0.76 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 52B537C5) Partition 1: (Active) - (Size=238.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 000054F5) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: E0E0F604) Partition 1: (Not Active) - (Size=1863 GB) - (Type=42) ======================================================== Disk: 3 (Size: 1.9 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ |
14.01.2015, 19:14 | #5 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.01.2015, 19:36 | #6 | |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Combofix.txt : Zitat:
|
14.01.2015, 19:41 | #7 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.01.2015, 20:03 | #8 |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Mbam.txt : Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 14.01.2015 Suchlauf-Zeit: 19:48:03 Logdatei: mbam.txt Administrator: Ja Version: 2.00.4.1028 Malware Datenbank: v2014.12.26.06 Rootkit Datenbank: v2014.12.23.02 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bˆsartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Sven Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 362436 Verstrichene Zeit: 5 Min, 31 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Tiefer Rootkit-Suchlauf: Aktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (Keine sch‰dliche Elemente erkannt) Module: 0 (Keine sch‰dliche Elemente erkannt) Registrierungsschl¸ssel: 0 (Keine sch‰dliche Elemente erkannt) Registrierungswerte: 0 (Keine sch‰dliche Elemente erkannt) Registrierungsdaten: 0 (Keine sch‰dliche Elemente erkannt) Ordner: 0 (Keine sch‰dliche Elemente erkannt) Dateien: 0 (Keine sch‰dliche Elemente erkannt) Physische Sektoren: 0 (Keine sch‰dliche Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v4.107 - Bericht erstellt am 14/01/2015 um 19:55:51 # Aktualisiert 07/01/2015 von Xplode # Database : 2014-12-21.4 [Local] # Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits) # Benutzername : Sven - SVEN-PC # Gestartet von : C:\Users\Sven\Downloads\AdwCleaner_4.107.exe # Option : Lˆschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelˆscht : C:\ProgramData\WPM Ordner Gelˆscht : C:\Users\Sven\AppData\Local\cool_mirage Ordner Gelˆscht : C:\Users\Sven\AppData\Local\CrashRpt Ordner Gelˆscht : C:\Users\Sven\AppData\Roaming\337Games Ordner Gelˆscht : C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1clickmoviedownloader.com Ordner Gelˆscht : C:\Users\Sven\Documents\Optimizer Pro Ordner Gelˆscht : C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{75623D5D-4683-402A-B610-AC4BAB767C86} Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhnkgpdlogbknkhlgdjlejeljbhflim Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\chklaanhfefbnpoihckbnefhakgolnmc Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh Ordner Gelˆscht : C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip Datei Gelˆscht : C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\foxydeal.sqlite Datei Gelˆscht : C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\user.js ***** [ Tasks ] ***** ***** [ Verkn¸pfungen ] ***** Verkn¸pfung Desinfiziert : C:\Users\Public\Desktop\Aurora.lnk Verkn¸pfung Desinfiziert : C:\Users\Public\Desktop\Google Chrome.lnk Verkn¸pfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora.lnk Verkn¸pfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Verkn¸pfung Desinfiziert : C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Verkn¸pfung Desinfiziert : C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Verkn¸pfung Desinfiziert : C:\Users\Sven\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ***** [ Registrierungsdatenbank ] ***** Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh Schl¸ssel Gelˆscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wpm Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\CLSID\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\CLSID\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F} Wert Gelˆscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{8DCB7100-DF86-4384-8842-8FA844297B3F}] Schl¸ssel Gelˆscht : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} Schl¸ssel Gelˆscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schl¸ssel Gelˆscht : HKCU\Software\OCS Schl¸ssel Gelˆscht : HKCU\Software\Optimizer Pro Schl¸ssel Gelˆscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schl¸ssel Gelˆscht : HKCU\Software\AppDataLow\Software\BetterMarkIt Schl¸ssel Gelˆscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schl¸ssel Gelˆscht : HKLM\SOFTWARE\IePlugin Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Wpm ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17496 Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.dynamic_preferences_timestamp", "1405100925035"); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.inst_id", "084623530976450598025452660654703"); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.inst_timestamp", "1388603408099"); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.last_seen_splash", "343"); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.partner_code", "MZ"); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.server_error_time", ""); [8n73zav8.default\prefs.js] - Zeile gelˆscht : user_pref("surfcanyon.server_error_url", ""); -\\ Google Chrome v40.0.2214.69 -\\ Chromium v ************************* AdwCleaner[R0].txt - [5301 octets] - [14/01/2015 19:54:51] AdwCleaner[S0].txt - [5713 octets] - [14/01/2015 19:55:51] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5773 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.1 (12.28.2014:1) OS: Windows 7 Professional x64 Ran by Sven on 14.01.2015 at 19:57:20,38 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 14.01.2015 at 19:59:22,35 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-01-2015 02 Ran by Sven (administrator) on SVEN-PC on 14-01-2015 18:19:49 Running from C:\Users\Sven\Downloads Loaded Profile: Sven (Available profiles: Sven) Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe () C:\Program Files (x86)\Oculus\Service\OVRServiceLauncher.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe () C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe (Cambridge Silicon Radio Limited) C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (Spotify Ltd) C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd) C:\Users\Sven\AppData\Roaming\Spotify\spotify.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (inMethod) C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Oculus VR, LLC) C:\Program Files (x86)\Oculus\Tools\OculusConfigUtil.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\VRChat\VRChatMonitor\VRChatMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (inMethod) C:\Program Files (x86)\AirVideoServer HD\AirVideoServerUI.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\main.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\AirVideoServer HD\ExternalEncoder.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.69\nacl64.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRISCT.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE () C:\Program Files (x86)\Oculus\Service\OVRServer_x64.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [4465448 2014-08-29] (O&O Software GmbH) HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [25792 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [529616 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531984 2015-01-07] (NVIDIA Corporation) HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [39128 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CsrSyncMLServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [244944 2012-03-22] () HKLM\...\Run: [CsrHCRPServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [1134288 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CSRHarmonySkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [146656 2012-03-22] (Cambridge Silicon Radio Limited) HKLM\...\Run: [CsrAudioguiCtrl] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [511696 2012-03-22] (Cambridge Silicon Radio Limited) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-11-24] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [60640 2014-09-11] (Razer Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe [2081792 2013-03-29] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [ASRock A-Tuning] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [956024 2014-12-23] (Link64 GmbH) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [TBPanel] => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2173224 2013-11-08] (Gainward Co. Ltd.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1941696 2015-01-06] (Valve Corporation) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Spotify Web Helper] => C:\Users\Sven\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-10] (Spotify Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Spotify] => C:\Users\Sven\AppData\Roaming\Spotify\spotify.exe [6737976 2014-12-10] (Spotify Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [Plex Media Server] => C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [5105288 2014-10-15] (Plex, Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-10-17] (Apple Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [GoogleChromeAutoLaunch_6376B5EE50201B8D362125E4D5560106] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [843592 2015-01-07] (Google Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3618648 2014-12-18] (Electronic Arts) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\Run: [AirVideoServerHD] => C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe [2217736 2014-09-29] (inMethod) HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day0] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day1] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day2] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day3] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day4] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day5] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\RunOnce: [AsrOMG_Day6] => [X] HKU\S-1-5-21-890943707-450372048-868329369-1000\...\MountPoints2: E - E:\twom_hde.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OculusConfigUtil.lnk ShortcutTarget: OculusConfigUtil.lnk -> C:\Program Files (x86)\Oculus\Tools\OculusConfigUtil.exe (Oculus VR, LLC) Startup: C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VRChatMonitor.lnk ShortcutTarget: VRChatMonitor.lnk -> C:\Program Files (x86)\VRChat\VRChatMonitor\VRChatMonitor.exe () BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-890943707-450372048-868329369-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658&q={searchTerms} SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4A0F972F-24CB-4FBD-A361-D981AEBF462D&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-890943707-450372048-868329369-1000 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll (Microsoft Corporation.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default FF NetworkProxy: "http", "www-proxy.t-online.de" FF NetworkProxy: "http_port", 80 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKU\S-1-5-21-890943707-450372048-868329369-1000: @acestream.net/acestreamplugin,version=2.2.10-next -> C:\Users\Sven\AppData\Roaming\ACEStream\player\npace_plugin.dll (Innovative Digital Technologies) FF user.js: detected! => C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\user.js FF Extension: Avira Browser Safety - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\abs@avira.com [2014-11-20] FF Extension: German Dictionary - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\de-DE@dictionaries.addons.mozilla.org [2014-06-12] FF Extension: iCloud Bookmarks - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefoxdav@icloud.com [2014-11-20] FF Extension: Xmarks - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\foxmarks@kei.com [2014-07-24] FF Extension: FoxyProxy Standard - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\foxyproxy@eric.h.jung [2014-11-20] FF Extension: AS Magic Player - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\magicplayer@acestream.org [2014-09-07] FF Extension: Forecastfox - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2014-01-01] FF Extension: ColorfulTabs - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} [2014-07-24] FF Extension: Autocopy - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0FED7D55-65D4-47b6-A6DE-9A4ADB55355F} [2014-01-01] FF Extension: Flashblock - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2014-01-01] FF Extension: Fire.fm - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3} [2014-01-01] FF Extension: Fast Search by Surf Canyon - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{75623d5d-4683-402a-b610-ac4bab767c86} [2014-01-01] FF Extension: WOT - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-01-01] FF Extension: DownloadHelper - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-03-26] FF Extension: TabGroups Manager - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{ca526f8b-9e0a-4756-9077-19d6f3e64ea8} [2014-01-01] FF Extension: SearchPreview - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6} [2014-05-26] FF Extension: Proxy-Listen.de - Proxyswitcher - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\admin@proxy-listen.de.xpi [2014-01-01] FF Extension: Add to Amazon Wish List Button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\amznUWL2@amazon.com.xpi [2014-01-01] FF Extension: AutoPager - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\autopager@mozilla.org.xpi [2014-01-01] FF Extension: Bookmark Previews - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\bookmarkpreviews@mozdev.org.xpi [2014-01-01] FF Extension: Add-on Compatibility Reporter - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\compatibility@addons.mozilla.org.xpi [2014-01-01] FF Extension: feedly - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\feedly@devhd.xpi [2014-01-01] FF Extension: Video Downloader professional - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\ffext_basicvideoext@startpage24.xpi [2014-01-09] FF Extension: Ghostery - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefox@ghostery.com.xpi [2014-01-01] FF Extension: MEGA EXTENSION - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\firefox@mega.co.nz.xpi [2014-01-01] FF Extension: Open GMail with toolbar button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\gmail@borsosfisoft.com.xpi [2014-01-01] FF Extension: Gmail Watcher - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\gmailwatcher@sonthakit.xpi [2014-01-01] FF Extension: Greasefire - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\greasefire@skrul.com.xpi [2014-01-01] FF Extension: ProxTube - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\ich@maltegoetz.de.xpi [2014-11-20] FF Extension: Telekom YouTube Turbo - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\info@maltegoetz.de.xpi [2014-01-01] FF Extension: bitcoinprices - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-gE6fXk2VSQ2MYANuOWvdRaWA3cw@jetpack.xpi [2014-01-02] FF Extension: kicktraq - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-i79UhEDcYiUOiFdxIadGhfvSpTA@jetpack.xpi [2014-01-01] FF Extension: Bitcoin Price Ticker - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\jid0-ziK34XHkBWB9ezxd4l9Q1yC7RP0@jetpack.xpi [2014-01-01] FF Extension: RSS Icon - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\kitsuneymg@gmail.com.xpi [2014-01-01] FF Extension: Personas Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\personas@christopher.beard.xpi [2014-01-01] FF Extension: Siphon - Sync Add-ons - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\siphon@siphon.ian-halpern.com.xpi [2014-01-01] FF Extension: Tab Scope - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\tabscope@xuldev.org.xpi [2014-01-01] FF Extension: Test Pilot - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\testpilot@labs.mozilla.com.xpi [2014-01-01] FF Extension: Tweet Line - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\twitterline@www.greenspace.info.xpi [2014-01-01] FF Extension: Location Bar Enhancer - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\UIEnhancer@girishsharma.xpi [2014-01-01] FF Extension: WiseStamp - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\wisestamp@wisestamp.com.xpi [2014-01-01] FF Extension: URL Fixer - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{0fa2149e-bb2c-4ac2-a8d3-479599819475}.xpi [2014-01-01] FF Extension: Flagfox - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2014-03-08] FF Extension: HootBar - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1a0c9ebe-ddf9-4b76-b8a3-675c77874d37}.xpi [2014-01-01] FF Extension: RSS Ticker - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{1f91cde0-c040-11da-a94d-0800200c9a66}.xpi [2014-01-01] FF Extension: Fierr - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{2E481B23-66AC-313F-D6A8-A81DDDF26249}.xpi [2014-01-01] FF Extension: PDF Download - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}.xpi [2014-01-01] FF Extension: AniWeather - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{4176DFF4-4698-11DE-BEEB-45DA55D89593}.xpi [2014-01-01] FF Extension: Download Statusbar Fixed - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{4204c864-50bf-467a-95b3-0912b7f15869}.xpi [2014-01-09] FF Extension: Gmail Notifier - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{44d0a1b4-9c90-4f86-ac92-8680b5d6549e}.xpi [2014-01-01] FF Extension: Stylish - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-01-01] FF Extension: SmoothWheel (mozdev.org) - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC}.xpi [2014-01-01] FF Extension: Speed Dial - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2014-01-01] FF Extension: Personas Rotator - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{6e73f6b7-b9ab-44b8-b744-6393e3c2e351}.xpi [2014-03-28] FF Extension: MiroIt - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{79287D2F-D399-471A-A95E-BCBED9AEDB3B}.xpi [2014-01-01] FF Extension: YouTube High Definition - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-07-11] FF Extension: Soundcloud SUPER +2: Downloader and Recommender - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{988da70d-b78d-44a1-a9c7-ed11832a9e2e}.xpi [2014-01-01] FF Extension: Nightly Tester Tools Lite - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{BB68DBF8-55E6-45A8-8F9F-D443EDDC12E8}.xpi [2014-01-01] FF Extension: CoolPreviews - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi [2014-01-01] FF Extension: Adblock Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-01] FF Extension: Download Statusbar - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi [2014-01-01] FF Extension: Facebook Share Button - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{d4e0dc9c-c356-438e-afbe-dca439f4399d}.xpi [2014-07-04] FF Extension: DownThemAll! - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-01-01] FF Extension: Greasemonkey - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-01-01] FF Extension: QuickWiki - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\8n73zav8.default\Extensions\{EE223D7A-F30F-11DD-8F0A-D2AD55D89593}.xpi [2014-01-01] FF StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR HomePage: Default -> hxxp://search.conduit.com/?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP4A0F972F-24CB-4FBD-A361-D981AEBF462D&SSPV= CHR StartupUrls: Default -> "https://www.google.de/", "https://de.search.yahoo.com/?fr=spigot-yhp-gcmac&ilc=12&type=967150", "hxxp://isearch.omiga-plus.com/?type=hp&ts=1419592702&from=ild&uid=ADATAXSP900_7D3220002658" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-29] CHR Extension: (TechSmith Snagit (Extension)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\annopcfmbiofommjmcmcfmhklhgbhkce [2014-05-12] CHR Extension: (Google Drive) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-02] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-24] CHR Extension: (Turn Off the Lights) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-05-12] CHR Extension: (WOT) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-05-12] CHR Extension: (Klassische Spiele) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpckajjkmjncafjlkielcgheibdlnfgc [2014-05-09] CHR Extension: (AddThis - Share & Bookmark (new)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbogdmdefihhljhfeiklfiedefalcde [2014-05-12] CHR Extension: (JSONView) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\chklaanhfefbnpoihckbnefhakgolnmc [2014-05-09] CHR Extension: (Easy SteamGifts) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cklbilaeedbblhpkhjfcnmaocjdodcnm [2014-12-30] CHR Extension: (Alexa Traffic Rank) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2014-05-12] CHR Extension: (Spotify - Music for every moment) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2014-05-12] CHR Extension: (Read Later Fast) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji [2014-07-29] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-05-09] CHR Extension: (Proxy SwitchySharp) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2014-01-21] CHR Extension: (Fabulous for Facebook) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehhfialhajmaoobgcjlfmphcfphfpkkg [2014-05-12] CHR Extension: (Video Downloader professional) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2014-08-16] CHR Extension: (Video VR Extension) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\epianonacnaknehmhdlfbdlfobejoica [2014-05-09] CHR Extension: (My JDownloader) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2014-05-09] CHR Extension: (TechSmith Snagit) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcnghgbgmemnlbckdipnmelbanpgneik [2014-05-18] CHR Extension: (Postman - REST Client) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdmmgilgnpjigdojojpjoooidkmcomcm [2014-12-03] CHR Extension: (Stylish) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2014-08-11] CHR Extension: (Avira Browserschutz) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-08-14] CHR Extension: (Hola Besseres Internet) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-08-31] CHR Extension: (Netflix Watchlist) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hepinjgeompggemfpgkpkmcippneehah [2014-09-16] CHR Extension: (Advanced REST client) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgmloofddffdnphfgcellkdfbfbjeloo [2014-05-09] CHR Extension: (Bitcoin) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlbcbefdgkijadppmojnghjbinmjmenp [2014-07-04] CHR Extension: (Kindle Cloud Reader) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2014-07-30] CHR Extension: (Wolfram|Alpha (Official)) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\icncamkooinmbehmkeilcccmoljfkdhp [2014-05-12] CHR Extension: (Netflix Enhancer - Old) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijanohecbcpdgnpiabdfehfjgcapepbm [2014-09-16] CHR Extension: (Dropbox) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2014-08-24] CHR Extension: (Steam Market Auto-Agree) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlicldafjdigokihkkdlbpfgehihjodl [2014-06-20] CHR Extension: (Andrew@ChromeFans) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\jollpecbpialleljionejgkdgjfgamma [2014-07-29] CHR Extension: (Netflix IMDb ratings) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\laclklcdckbolhgghhmffhcpdjobddbf [2014-09-16] CHR Extension: (Audio EQ) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfafdlnjaliaghpjdajmlcnnblkgcefh [2014-05-12] CHR Extension: (Letterboxd) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdbiimjkkhkbmolbddbjjgnbjeknjeb [2014-09-16] CHR Extension: (AS Magic Player) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhnkgpdlogbknkhlgdjlejeljbhflim [2014-12-26] CHR Extension: (Netflix Trailer Button Adder) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgdhgbjlokeheknpnmiidkbdliimhapm [2014-09-16] CHR Extension: (Google Mail-Checker) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-12] CHR Extension: (Kicktraq) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfbmdekphdknccdlbhlkbifdbdioekd [2014-07-29] CHR Extension: (Ghostery) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2014-05-09] CHR Extension: (Netflix Showdown) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnnjdpeifhophmpnfhfnimhdegicgcab [2014-09-16] CHR Extension: (CanIStream.It) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nefjaladmbgpekhpikihnnchgbdfojpk [2014-09-16] CHR Extension: (dict-cc) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2014-05-12] CHR Extension: (Google Wallet) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-02] CHR Extension: (Better Flix) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocajedaanblpimghlakmcajhblfnlkgo [2014-09-16] CHR Extension: (Tor) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohielanlcdleofjibfmjbbkaajdcpoil [2014-11-08] CHR Extension: (Enhanced Steam) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2014-06-20] CHR Extension: (Click&Clean App) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-05-12] CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-11-24] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-11-24] (Avira Operations GmbH & Co. KG) S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [993584 2014-11-24] (Avira Operations GmbH & Co. KG) R2 ASRockIOMon; C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe [454656 2013-05-28] () [File not signed] R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG) R2 BtSwitcherService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [64216 2012-03-22] (Cambridge Silicon Radio Limited) R2 CSRBtAudioService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [465624 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtOBEX-Dienst; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [1041616 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [825032 2012-03-22] (Cambridge Silicon Radio Limited) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2013-11-21] (Futuremark) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-01-07] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-03] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [182248 2013-03-14] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] () S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.) S2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [40999448 2008-07-10] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2015-01-07] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19822736 2015-01-07] (NVIDIA Corporation) R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1660200 2014-08-29] (O&O Software GmbH) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1903472 2014-12-18] (Electronic Arts) R2 OVRService; C:\Program Files (x86)\Oculus\Service\OVRServiceLauncher.exe [231952 2014-12-03] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-01-06] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [183488 2014-10-31] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [105448 2014-09-11] (Razer Inc.) S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) S4 SQLAgent$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [369688 2008-07-10] (Microsoft Corporation) S3 COMSysApp; %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} S4 SQLBrowser; "C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-01-01] (ASRock Incorporation) R0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-05-09] (ASRock Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-11-24] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-11-24] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-11-24] (Avira Operations GmbH & Co. KG) S3 CsrBthAudioHF; C:\Windows\System32\DRIVERS\CsrBthAudioHF.sys [39120 2012-03-22] (Cambridge Silicon Radio Limited) S3 CsrBtPort; C:\Windows\System32\DRIVERS\CsrBtPort.sys [2784968 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrhfgcc; C:\Windows\System32\DRIVERS\csrhfgcc.sys [38080 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrpan; C:\Windows\System32\DRIVERS\csrpan.sys [39616 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrserial; C:\Windows\System32\DRIVERS\csrserial.sys [61128 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusb; C:\Windows\System32\Drivers\csrusb.sys [47296 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusbfilter; C:\Windows\System32\Drivers\csrusbfilter.sys [23752 2012-03-22] (Cambridge Silicon Radio Limited) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-07] (Disc Soft Ltd) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-05-30] (Intel Corporation) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation) R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [21048 2013-03-14] () R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [21048 2013-03-14] () R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-03-14] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-01-07] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation) R3 OCUSBVID; C:\Windows\System32\DRIVERS\OCUSBVID.sys [47560 2014-10-23] (Oculus VR, LLC) R1 RiftEnabler; C:\Windows\System32\DRIVERS\RiftEnabler.sys [53704 2014-12-03] (Oculus VR, LLC) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2014-10-31] (Razer, Inc.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-02-25] (Duplex Secure Ltd.) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2015-01-14] () S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation) U3 as92ga0c; C:\Windows\System32\Drivers\as92ga0c.sys [0 ] (Intel Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-14 18:19 - 2015-01-14 18:19 - 00049368 _____ () C:\Users\Sven\Downloads\FRST.txt 2015-01-14 18:19 - 2015-01-14 18:19 - 00000000 ____D () C:\FRST 2015-01-14 18:19 - 2015-01-14 18:18 - 02124288 _____ (Farbar) C:\Users\Sven\Downloads\FRST64.exe 2015-01-14 17:41 - 2015-01-14 17:41 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp 2015-01-14 14:56 - 2015-01-14 17:41 - 00034752 _____ () C:\Windows\system32\Drivers\WPRO_41_2001.sys 2015-01-14 14:15 - 2014-09-11 08:57 - 00593080 _____ (Sysinternals - www.sysinternals.com) C:\Users\Sven\Downloads\autoruns.exe 2015-01-14 14:15 - 2014-09-11 08:57 - 00505536 _____ (Sysinternals - www.sysinternals.com) C:\Users\Sven\Downloads\autorunsc.exe 2015-01-14 14:15 - 2014-08-05 08:20 - 00049518 _____ () C:\Users\Sven\Downloads\autoruns.chm 2015-01-14 14:15 - 2014-08-05 08:20 - 00007005 _____ () C:\Users\Sven\Downloads\Eula.txt 2015-01-14 14:14 - 2015-01-14 14:13 - 00511633 _____ () C:\Users\Sven\Downloads\Autoruns.zip 2015-01-14 13:58 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150114-135801.backup 2015-01-14 13:43 - 2015-01-14 13:59 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-01-14 13:43 - 2015-01-14 13:43 - 00001387 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-01-14 13:43 - 2015-01-14 13:43 - 00001375 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-01-14 13:43 - 2015-01-14 13:43 - 00000656 _____ () C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000628 _____ () C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000458 _____ () C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job 2015-01-14 13:43 - 2015-01-14 13:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-01-14 13:43 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-01-14 13:42 - 2015-01-14 13:43 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-01-14 13:42 - 2015-01-14 13:37 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Sven\Downloads\spybot-2.4.exe 2015-01-14 13:03 - 2015-01-14 13:00 - 05708715 _____ () C:\Users\Sven\Documents\LAN_Realtek_V7_34_1130_2010.zip 2015-01-14 11:42 - 2015-01-14 11:42 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Avira 2015-01-14 11:41 - 2015-01-14 11:41 - 00002062 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2015-01-14 11:41 - 2014-11-24 10:23 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-01-14 11:41 - 2014-11-24 10:23 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-01-14 11:41 - 2014-11-24 10:23 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-01-14 11:33 - 2015-01-14 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-01-14 11:33 - 2015-01-14 11:41 - 00000000 ____D () C:\ProgramData\Avira 2015-01-14 11:33 - 2015-01-14 11:33 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk 2015-01-14 10:34 - 2015-01-14 17:30 - 00000000 ____D () C:\Windows\pss 2015-01-08 21:40 - 2015-01-08 21:40 - 00000000 ____D () C:\Users\Sven\AppData\Local\BloodMine 2015-01-08 21:34 - 2015-01-08 21:34 - 00000000 ____D () C:\websymbols 2015-01-04 14:23 - 2015-01-04 14:23 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\NVIDIA 2015-01-04 14:23 - 2015-01-04 14:23 - 00000000 ____D () C:\Users\Sven\AppData\Local\Oculusr Rift in Action 2015-01-03 09:35 - 2015-01-03 09:35 - 00000000 ____D () C:\Users\Sven\AppData\Local\FRACTOSC 2015-01-01 10:09 - 2015-01-01 10:13 - 00000000 ____D () C:\Users\Sven\Documents\Assassin's Creed Liberation HD 2015-01-01 09:40 - 2015-01-01 09:40 - 00000000 ____D () C:\Users\Sven\Documents\Ubisoft 2014-12-30 16:06 - 2014-12-30 16:06 - 00000000 ____D () C:\Users\Sven\AppData\Local\CoolChristmasVR 2014-12-30 15:59 - 2014-12-30 15:59 - 00000000 ____D () C:\Users\Sven\AppData\Local\picard 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2008 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2008 2014-12-27 21:29 - 2014-12-27 21:29 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-12-27 10:57 - 2014-12-27 10:57 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\FiraxisLive 2014-12-27 10:50 - 2015-01-14 17:41 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-12-27 10:50 - 2014-12-13 11:08 - 00074056 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-12-27 10:50 - 2014-12-13 11:08 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 06859408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 03513488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 00935240 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-12-27 10:50 - 2014-12-13 09:03 - 00386368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-12-27 10:50 - 2014-12-13 09:03 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-12-27 10:50 - 2014-12-13 01:47 - 00620176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-12-27 10:50 - 2014-12-13 00:11 - 04151176 _____ () C:\Windows\system32\nvcoproc.bin 2014-12-27 10:49 - 2014-12-13 11:08 - 32099472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 25460552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 24764232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 20465808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 18594432 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 17264312 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 13288360 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 13202520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10770120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10710160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 10345280 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-12-27 10:49 - 2014-12-13 11:08 - 03610440 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 03248968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 01895056 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434709.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 01556624 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434709.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00994384 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00968336 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00942400 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00928072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00906560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00876976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00496272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00399688 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00391488 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00353224 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00346944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00306328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00178632 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-12-27 10:49 - 2014-12-13 11:08 - 00165760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-12-27 10:36 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-12-27 10:36 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-12-26 14:27 - 2015-01-14 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v7.1 2014-12-26 14:19 - 2014-12-26 14:19 - 00002052 _____ () C:\Windows\epplauncher.mif 2014-12-26 14:00 - 2014-12-27 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ 2008 Express Edition 2014-12-26 14:00 - 2014-12-26 14:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 9.0 2014-12-26 13:48 - 2014-12-26 13:48 - 00000677 _____ () C:\Users\Public\Desktop\Dolphin.lnk 2014-12-26 13:48 - 2014-12-26 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin 2014-12-26 13:47 - 2014-12-26 13:47 - 00003120 _____ () C:\Windows\System32\Tasks\{8D7CC765-0A4E-40BC-82BC-1620ACA632A5} 2014-12-26 13:44 - 2014-12-26 13:44 - 00003142 _____ () C:\Windows\System32\Tasks\{FDD27265-12B6-4FF0-9124-760E9EF1D1CA} 2014-12-26 13:05 - 2014-12-26 13:05 - 00000000 ____D () C:\Windows\system32\appraiser 2014-12-26 12:57 - 2014-12-26 12:57 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010 2014-12-26 12:57 - 2014-12-26 12:57 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010 2014-12-26 12:56 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-12-26 12:56 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2014-12-26 12:56 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-12-26 12:56 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2014-12-26 12:56 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2014-12-26 12:56 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2014-12-26 12:56 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2014-12-26 12:56 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2014-12-26 12:56 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2014-12-26 12:56 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-12-26 12:54 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2014-12-26 12:54 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-12-26 12:54 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2014-12-26 12:54 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-12-26 12:54 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-12-26 12:54 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-12-26 12:54 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-12-26 12:54 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-12-26 12:54 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-12-26 12:54 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-12-26 12:54 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-12-26 12:54 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-12-26 12:54 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-12-26 12:54 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-12-26 12:54 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-12-26 12:54 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-12-26 12:54 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-12-26 12:54 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-12-26 12:54 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-12-26 12:54 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-12-26 12:54 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-12-26 12:54 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-12-26 12:54 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-12-26 12:54 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-12-26 12:54 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-12-26 12:54 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-12-26 12:54 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-12-26 12:54 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-12-26 12:54 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-12-26 12:54 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-12-26 12:54 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-12-26 12:54 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-12-26 12:54 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-12-26 12:54 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-12-26 12:54 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-12-26 12:54 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-12-26 12:54 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-12-26 12:54 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-12-26 12:54 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-12-26 12:54 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-12-26 12:54 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-12-26 12:54 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-12-26 12:54 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-12-26 12:54 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-12-26 12:54 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-12-26 12:54 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-12-26 12:54 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-12-26 12:54 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-12-26 12:54 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-12-26 12:54 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-12-26 12:54 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-12-26 12:54 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-12-26 12:54 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-12-26 12:54 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-12-26 12:54 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-12-26 12:54 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-12-26 12:54 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-12-26 12:54 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-12-26 12:54 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-26 12:54 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2014-12-26 12:54 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-12-26 12:54 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2014-12-26 12:54 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-12-26 12:54 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2014-12-26 12:54 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-12-26 12:54 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-12-26 12:54 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-12-26 12:54 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-12-26 12:54 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll 2014-12-26 12:54 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-12-26 12:53 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-12-26 12:53 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2014-12-26 12:53 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-12-26 12:53 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2014-12-26 12:53 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-12-26 12:53 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-12-26 12:53 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2014-12-26 12:53 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2014-12-26 12:53 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-12-26 12:53 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-12-26 12:53 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-12-26 12:53 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-12-26 12:53 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-12-26 12:53 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-12-26 12:53 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-12-26 12:53 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-12-26 12:53 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-12-26 12:53 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-12-26 12:53 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-12-26 12:53 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2014-12-26 12:53 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2014-12-26 12:53 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2014-12-26 12:53 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2014-12-26 12:53 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2014-12-26 12:53 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe 2014-12-26 12:53 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2014-12-26 12:53 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-12-26 12:53 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-12-26 12:53 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-12-26 12:53 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-12-26 12:53 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-12-26 12:53 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 05780480 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-12-26 12:53 - 2014-08-29 03:07 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-12-26 12:53 - 2014-08-29 03:06 - 01125888 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-12-26 12:53 - 2014-08-29 02:44 - 04922368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-12-26 12:53 - 2014-08-29 02:44 - 01050112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-12-26 12:53 - 2014-08-29 02:44 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-12-26 12:53 - 2014-08-29 02:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-12-26 12:53 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2014-12-26 12:53 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2014-12-26 12:53 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-12-26 12:53 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2014-12-26 12:53 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-12-26 12:53 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2014-12-26 12:53 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-12-26 12:53 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-12-26 12:21 - 2015-01-14 17:36 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-12-26 12:18 - 2014-12-26 12:18 - 00000000 ____D () C:\Users\Sven\Documents\Optimizer Pro 2014-12-26 12:17 - 2014-12-26 12:17 - 00002139 _____ () C:\Windows\patsearch.bin 2014-12-26 12:17 - 2014-12-26 12:17 - 00000944 _____ () C:\Users\Sven\Desktop\FreeTVDownloader.lnk 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNewH_01009.Wdf 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1clickmoviedownloader.com 2014-12-26 12:17 - 2014-12-26 12:17 - 00000000 ____D () C:\Users\Sven\AppData\Local\Cool_Mirage 2014-12-25 10:08 - 2014-10-09 08:17 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2014-12-24 14:03 - 2014-12-24 14:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-12-24 14:03 - 2014-12-24 14:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-12-20 11:23 - 2014-12-20 11:23 - 00001721 _____ () C:\Users\Sven\Documents\Neue Datenbank.odb 2014-12-20 11:23 - 2014-12-20 11:23 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.1.lnk 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Users\Sven\Desktop\OpenOffice 4.1.1 (de) Installation Files 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\OpenOffice 2014-12-20 11:23 - 2014-12-20 11:23 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-12-19 08:59 - 2014-12-19 08:59 - 00000000 ____D () C:\Users\Sven\AppData\Local\CrashReportClient 2014-12-19 08:50 - 2014-12-19 08:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xb1usb_01011.Wdf 2014-12-18 18:08 - 2014-11-18 09:45 - 01868624 _____ (Leap Motion) C:\Windows\SysWOW64\Leap.dll 2014-12-18 09:08 - 2014-12-17 06:18 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-12-18 09:08 - 2014-12-17 06:18 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-12-18 09:07 - 2014-11-22 11:46 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-12-18 09:07 - 2014-11-22 11:46 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-14 18:09 - 2014-11-08 14:19 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Spotify 2015-01-14 18:09 - 2014-07-26 10:27 - 00000000 ____D () C:\Users\Sven\AppData\Local\Oculus 2015-01-14 17:49 - 2009-07-14 05:45 - 00031664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-01-14 17:49 - 2009-07-14 05:45 - 00031664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-01-14 17:47 - 2011-04-12 08:43 - 00766626 _____ () C:\Windows\system32\perfh007.dat 2015-01-14 17:47 - 2011-04-12 08:43 - 00175354 _____ () C:\Windows\system32\perfc007.dat 2015-01-14 17:47 - 2009-07-14 06:13 - 01810760 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-01-14 17:44 - 2014-01-04 11:07 - 00000000 ____D () C:\Users\Sven\AppData\Local\CrashDumps 2015-01-14 17:44 - 2014-01-01 19:53 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-01-14 17:41 - 2010-11-21 04:47 - 00587798 _____ () C:\Windows\PFRO.log 2015-01-14 17:41 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2015-01-14 17:41 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-14 17:41 - 2009-07-14 05:51 - 00877845 _____ () C:\Windows\setupact.log 2015-01-14 17:39 - 2014-01-02 12:19 - 00000000 ____D () C:\ProgramData\Origin 2015-01-14 17:37 - 2014-01-01 19:21 - 01869380 _____ () C:\Windows\WindowsUpdate.log 2015-01-14 17:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-01-14 14:58 - 2014-11-17 23:04 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-01-14 13:27 - 2014-12-13 13:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0 2015-01-14 13:03 - 2014-01-02 10:37 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-01-14 13:03 - 2014-01-02 10:37 - 00000000 ____D () C:\Program Files (x86)\Realtek 2015-01-14 11:41 - 2014-01-01 23:58 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-01-14 11:33 - 2014-01-02 23:12 - 00000000 ____D () C:\ProgramData\Package Cache 2015-01-08 21:33 - 2014-01-01 23:34 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\vlc 2015-01-08 21:32 - 2014-01-02 20:43 - 00002357 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-01-08 21:32 - 2014-01-02 20:42 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-08 21:28 - 2014-01-04 13:16 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-01-08 21:09 - 2014-01-02 12:19 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-01-08 21:07 - 2014-11-08 14:19 - 00000000 ____D () C:\Users\Sven\AppData\Local\Spotify 2015-01-08 21:07 - 2014-01-02 20:42 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-07 08:35 - 2014-06-20 22:18 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-01-07 08:35 - 2014-01-01 19:51 - 02210224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-01-07 08:34 - 2014-06-20 22:18 - 01715408 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-01-07 08:34 - 2014-01-01 19:51 - 02824504 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-01-04 14:56 - 2014-10-23 09:58 - 00000000 ____D () C:\VR_Game_Manager - By Bilago 2015-01-04 14:55 - 2014-02-08 08:34 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Skype 2015-01-04 12:57 - 2014-09-26 20:31 - 00000000 ____D () C:\Users\Sven\AppData\Local\Amazon_FireTV_Utility_App 2015-01-02 23:11 - 2014-01-01 23:24 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Bitcoin 2015-01-01 10:09 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-01-01 09:38 - 2014-01-01 23:52 - 00782230 _____ () C:\Windows\DirectX.log 2014-12-27 21:29 - 2014-11-23 10:32 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-12-27 21:28 - 2014-11-12 07:56 - 00000000 ____D () C:\Users\Sven\AppData\Local\JDownloader 2.0 2014-12-27 20:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-12-27 18:46 - 2014-01-01 19:51 - 00001343 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-12-27 17:05 - 2014-01-01 23:46 - 00000000 ____D () C:\Users\Sven\Documents\my games 2014-12-27 10:50 - 2014-01-01 19:26 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-12-27 10:50 - 2014-01-01 19:25 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-12-27 10:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-12-27 10:46 - 2014-01-01 19:26 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-12-27 10:32 - 2014-01-01 19:21 - 00000000 ____D () C:\Users\Sven 2014-12-26 14:27 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-12-26 13:38 - 2014-12-13 13:53 - 00000000 ____D () C:\Users\Sven\Documents\Visual Studio 2010 2014-12-26 13:05 - 2014-05-09 20:17 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-12-26 13:05 - 2009-07-14 05:45 - 00299152 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-12-26 13:05 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-12-26 12:59 - 2014-01-02 00:39 - 00000000 ____D () C:\Windows\system32\MRT 2014-12-26 12:42 - 2014-02-14 21:45 - 00000000 ____D () C:\ProgramData\Adobe 2014-12-26 12:40 - 2014-11-17 23:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-12-26 12:40 - 2014-11-17 23:04 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-12-26 12:40 - 2014-01-01 23:33 - 00001098 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-12-26 12:18 - 2014-01-01 19:48 - 00001272 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aurora.lnk 2014-12-26 12:18 - 2014-01-01 19:48 - 00001260 _____ () C:\Users\Public\Desktop\Aurora.lnk 2014-12-26 12:18 - 2014-01-01 19:21 - 00001611 _____ () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-12-26 11:01 - 2014-02-03 17:47 - 00000000 ____D () C:\ProgramData\Codemasters 2014-12-25 10:09 - 2014-01-01 19:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-12-24 14:03 - 2014-02-08 08:34 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-12-24 14:03 - 2014-02-08 08:34 - 00000000 ____D () C:\ProgramData\Skype 2014-12-24 14:01 - 2014-08-11 16:52 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\TS3Client 2014-12-24 13:47 - 2014-01-02 12:20 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Origin 2014-12-24 13:45 - 2011-04-12 08:54 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-12-24 13:29 - 2014-08-28 16:15 - 00001280 _____ () C:\Users\Sven\Desktop\Start vorpX.lnk 2014-12-24 13:29 - 2014-08-24 15:33 - 00000000 ____D () C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vorpX 2014-12-23 16:40 - 2014-08-16 15:48 - 00000890 _____ () C:\Users\Sven\Desktop\Video Downloader Ultimate.lnk 2014-12-23 16:40 - 2014-08-16 15:48 - 00000000 ____D () C:\ProgramData\VideoDownloaderUltimateWinApp 2014-12-20 11:23 - 2014-01-01 19:34 - 00064920 _____ () C:\Users\Sven\AppData\Local\GDIPFONTCACHEV1.DAT 2014-12-19 21:04 - 2014-09-08 17:58 - 00000000 ____D () C:\Users\Sven\AppData\Local\Targem 2014-12-17 06:18 - 2014-01-07 22:24 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll Some content of TEMP: ==================== C:\Users\Sven\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-01-04 16:08 ==================== End Of Log ============================ --- --- --- |
15.01.2015, 06:59 | #9 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklickESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.01.2015, 07:20 | #10 |
| Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Morgen, ESET Online Scan geht leider nicht da ich weiterhin nich online komme. Die Windows Firewall kann ich mittlerweile wieder aktivieren. Die Netzwerkdienste lassen sich aber weiterhin nicht starten mit der selben Fehlermeldung ( FM: "Der Abhängigkeitsdienst oder die Abhängigkeitsgruppe konnte nicht gestartet werden.") und auch der rechtsklick auf ein Laufwerk im File Explorer lässt diesen crashen. Ich werde jetzt wohl mal Windows 8 installieren, wird eh Zeit für ein Update. Geändert von Inditronic (15.01.2015 um 07:38 Uhr) |
15.01.2015, 08:29 | #11 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick Falls Du weiter machen willst:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.01.2015, 08:42 | #12 |
| Danke Hi, nochmal Danke für die grossartige Hilfe, hab es jetzt mit dem Windows 8 Update hinbekommen. Werde aber auf jeden Fall den online Scanner laufen lassen den du empfohlen hast. Wünsche dir einen schönen Tag. |
15.01.2015, 10:26 | #13 |
/// the machine /// TB-Ausbilder | Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick ok
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Keine Internetverbindung, Firewall nicht aktivierbar, Explorer crash bei rechtsklick |
abgesicherte, abgesicherten, bereits, crash, einschalten, ethernet, explorer, file, firewall, firewall nicht aktivierbar, gestartet, heute, interne, internet, internetverbindung, konnte, laufen, malwarebytes, modus, morgen, nicht mehr, rechner, rechtsklick, stürzt, verbindung, versucht |