![]() |
|
Plagegeister aller Art und deren Bekämpfung: Win32-KeygenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 | |
![]() ![]() | ![]() Win32-Keygen Hallo ich habe mir beim Download von uTorrent Schadware eingefangen. Ich bitte darum das sich jemand mal das Logfile ansieht. Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:12-12-2015 01 durchgeführt von x4v33r (2015-12-12 23:30:12) Gestartet von C:\Users\x4v33r\Downloads Windows 7 Ultimate Service Pack 1 (X64) (2015-11-27 18:35:26) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3673911049-2636675181-2431685007-500 - Administrator - Disabled) Gast (S-1-5-21-3673911049-2636675181-2431685007-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3673911049-2636675181-2431685007-1002 - Limited - Enabled) x4v33r (S-1-5-21-3673911049-2636675181-2431685007-1000 - Administrator - Enabled) => C:\Users\x4v33r ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acronis True Image 2016 (HKLM-x32\...\{5E5999D7-85DD-4B82-B48B-5F60BDFAC502}Visible) (Version: 19.0.5634 - Acronis) Acronis True Image 2016 (x32 Version: 19.0.5634 - Acronis) Hidden Avast Premier (HKLM-x32\...\Avast) (Version: 11.1.2241 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CyberGhost 5 (HKLM\...\CyberGhost 5_is1) (Version: - CyberGhost S.R.L.) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) EVE Launcher (HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\...\{ba5473e9-184b-4d7a-959a-57b9810b8829}) (Version: 1.0.0 - CCP) EveHQ (HKLM-x32\...\EveHQ) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Gpg4win (2.3.0) (HKLM-x32\...\GPG4Win) (Version: 2.3.0 - The Gpg4win Project) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.10.255 - Intel Corporation) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) JonDo (HKLM-x32\...\JonDoUninstall) (Version: - ) Logitech Gaming Software 8.76 (HKLM\...\Logitech Gaming Software) (Version: 8.76.155 - Logitech Inc.) Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 42.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 de)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.4.0 - Mozilla) Mozilla Thunderbird 38.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.4.0 (x86 de)) (Version: 38.4.0 - Mozilla) MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.7 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 359.06 - NVIDIA Corporation) NVIDIA GeForce Experience 2.7.4.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.7.4.10 - NVIDIA Corporation) NVIDIA Grafiktreiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6564 - Realtek Semiconductor Corp.) ROCCAT Kone XTD Optical Mouse Driver (HKLM-x32\...\{AD43B296-FE63-42C0-AA39-D8759B905420}) (Version: - Roccat GmbH) SafeZone Stable 1.46.1990.55 (x32 Version: 1.46.1990.55 - Avast Software) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 4.1.0240 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.7.4.10 - NVIDIA Corporation) Hidden Skype™ 7.16 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.16.101 - Skype Technologies S.A.) Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform) Spotify (HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\...\Spotify) (Version: 1.0.18.60.g5fe0413d - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) TeamSpeak 3 Client (HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) Unchecky v0.4.1 (HKLM-x32\...\Unchecky) (Version: 0.4.1 - RaMMicHaeL) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 11.1.0 - VMware, Inc) VMware Workstation (Version: 11.1.0 - VMware, Inc.) Hidden WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) Wireshark 2.0.0 (64-bit) (HKLM-x32\...\Wireshark) (Version: 2.0.0 - The Wireshark developer community, hxxps://www.wireshark.org) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 03-12-2015 19:32:11 Windows-Sicherung 04-12-2015 19:26:00 Installed Java 7 Update 25 04-12-2015 19:52:03 Removed Java 7 Update 25 06-12-2015 16:56:10 Installed Microsoft Office Professional Plus 2010 06-12-2015 19:00:19 Windows-Sicherung 07-12-2015 01:45:26 Windows Update 08-12-2015 15:03:37 ASU_MSI_TRAN 08-12-2015 23:08:00 Gerätetreiber-Paketinstallation: CrowdStrike, Inc. Netzwerkadapter 08-12-2015 23:28:42 Windows Update 09-12-2015 02:13:12 Windows Update 10-12-2015 02:40:06 Windows Update 11-12-2015 03:00:10 Windows Update 12-12-2015 22:39:55 JRT Pre-Junkware Removal ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-12-12 22:36 - 00002059 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activation.acronis.com 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Da befinden sich 4 zusätzliche Einträge. ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {39A2933B-3E7B-4FDF-BBE7-7A98A1C98EA2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-28] (Google Inc.) Task: {409B6C2E-349E-4FE5-89AC-93EC4D068810} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {4D954B3E-D499-4220-B5E7-E577BB42E4AB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-28] (Google Inc.) Task: {937029E2-A2F5-4F9A-9BFB-579A435A0770} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-03] (AVAST Software) Task: {9F166C25-E466-4337-A889-C75FF76329A8} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-11-28] (AVAST Software) Task: {E8C9C94C-1023-452E-957E-F57F98B2AC76} - System32\Tasks\SafeZone scheduled Autoupdate 1448734258 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2015-10-30] (Avast Software) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\x4v33r\Desktop\Cryptload\router\FRITZ!Box\reconnect.bat - Verknüpfung.lnk -> D:\Dokumente\Visual Studio 2005\Projects\Linker\Linker\bin\Release\CryptLoad_Secure\router\FRITZ!Box\reconnect.bat (Keine Datei) <==== ACHTUNG ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-11-24 19:32 - 2015-11-24 19:32 - 00216576 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe 2015-02-06 18:14 - 2015-02-06 18:14 - 12730048 _____ () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2015-11-27 21:02 - 2015-11-24 19:40 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-12-12 22:43 - 2015-05-14 11:54 - 00422600 _____ () C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe 2015-10-22 12:22 - 2015-10-22 12:22 - 00175080 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\quazip.dll 2015-10-22 12:21 - 2015-10-22 12:21 - 00103400 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2015-10-22 12:21 - 2015-10-22 12:21 - 00108008 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2015-10-22 12:22 - 2015-10-22 12:22 - 00312296 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2015-10-22 12:22 - 2015-10-22 12:22 - 00483816 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2015-09-21 15:24 - 2015-09-21 15:24 - 00317440 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\ssleay32.dll 2015-09-21 15:24 - 2015-09-21 15:24 - 01709056 _____ () C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\LIBEAY32.dll 2015-11-28 19:07 - 2015-11-28 19:07 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-11-28 19:07 - 2015-11-28 19:07 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-12-12 20:07 - 2015-12-12 20:07 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15121202\algo.dll 2015-11-28 19:07 - 2015-11-28 19:07 - 00466448 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-11-24 19:20 - 2015-11-24 19:20 - 00221696 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll 2015-11-24 19:14 - 2015-11-24 19:14 - 00087552 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll 2015-11-24 19:09 - 2015-11-24 19:09 - 00050176 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll 2015-11-24 19:20 - 2015-11-24 19:20 - 00073728 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll 2015-11-24 19:22 - 2015-11-24 19:22 - 00751104 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-20.dll 2015-02-06 18:40 - 2015-02-06 18:40 - 01301696 _____ () C:\Program Files (x86)\VMware\VMware Workstation\libxml2.dll 2015-02-06 18:14 - 2015-02-06 18:14 - 00191680 _____ () C:\Program Files (x86)\VMware\VMware Workstation\LIBEXPAT.dll 2015-02-06 18:14 - 2015-02-06 18:14 - 00388288 _____ () C:\Program Files (x86)\VMware\VMware Workstation\ssoClient.dll 2015-02-06 18:14 - 2015-02-06 18:14 - 00194752 _____ () C:\Program Files (x86)\VMware\VMware Workstation\nfc-types.dll 2015-11-28 19:07 - 2015-11-28 19:07 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-09-23 01:24 - 2015-09-23 01:24 - 00035792 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll 2015-09-23 01:25 - 2015-09-23 01:25 - 00445904 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll 2015-09-23 01:24 - 2015-09-23 01:24 - 00115664 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\EXPAT.dll 2015-11-28 19:00 - 2015-11-12 19:39 - 00012080 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2015-10-29 14:32 - 2015-12-08 13:25 - 03518200 _____ () H:\EvE Online\bin\blue.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00877568 _____ () H:\EvE Online\bin\_ssl.pyd 2015-09-14 22:13 - 2015-09-14 22:13 - 00631936 _____ () H:\EvE Online\bin\d3dinfo.pyd 2015-09-14 22:13 - 2015-09-14 22:13 - 01053696 _____ () H:\EvE Online\bin\cairo.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00111104 _____ () H:\EvE Online\bin\cairo-script.dll 2015-10-29 14:32 - 2015-10-29 14:32 - 00205440 _____ () H:\EvE Online\bin\_yaml.pyd 2015-10-29 14:32 - 2015-10-29 14:32 - 00083072 _____ () H:\EvE Online\bin\_ctypes.pyd 2015-09-14 22:31 - 2015-09-14 22:31 - 00461824 _____ () H:\EvE Online\bin\pyFSD.pyd 2015-10-29 14:32 - 2015-10-29 14:32 - 00131200 _____ () H:\EvE Online\bin\pyexpat.pyd 2015-09-14 22:13 - 2015-09-14 22:13 - 00276840 _____ () H:\EvE Online\bin\ortp.dll 2015-09-14 22:14 - 2015-09-14 22:14 - 01150976 _____ () H:\EvE Online\bin\ccpBrowserHost.pyd 2015-09-14 22:13 - 2015-09-14 22:13 - 00075080 _____ () H:\EvE Online\bin\pychartdir27.pyd 2015-10-29 14:32 - 2015-10-29 14:32 - 00690816 _____ () H:\EvE Online\bin\unicodedata.pyd 2015-10-29 14:32 - 2015-12-08 13:25 - 00632568 _____ () H:\EvE Online\bin\pyEvePathfinder.dll 2015-10-29 14:32 - 2015-12-08 13:25 - 00129784 _____ () H:\EvE Online\bin\_twitch.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00890368 _____ () H:\EvE Online\bin\twitchsdk_32_release.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00394810 _____ () H:\EvE Online\bin\libmp3lame-ttv.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00113171 _____ () H:\EvE Online\bin\swresample-ttv-0.dll 2015-09-14 22:13 - 2015-09-14 22:13 - 00246332 _____ () H:\EvE Online\bin\avutil-ttv-51.dll 2015-10-29 14:32 - 2015-12-08 13:25 - 00064248 _____ () H:\EvE Online\bin\_ime.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: CyberGhost => "C:\Program Files\CyberGhost 5\CyberGhost.exe" /autostart /min MSCONFIG\startupreg: DAEMON Tools Pro Agent => "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\x4v33r\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\x4v33r\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: TrueImageMonitor.exe => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe MSCONFIG\startupreg: vmware-tray.exe => "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{B04BDF2F-E539-4893-AE26-04848DFB54B0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1EAC689B-E595-43C3-9D39-AD10C46AEEC5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4927970F-23C4-424D-9A30-E87C34A842CD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{8FA7B491-E135-4585-B0E0-5C9243AF74B7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{39B4E03C-D8FA-43D0-A1E4-ABD42F3BB4F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{293E2445-3BD8-4F9B-AA9C-152664B30C53}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{B8062190-3EC7-4F65-9852-DB0458C3D98E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{76752C55-886D-4AAE-834C-8FC3D65227F2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{51024863-B0CC-43C7-BDE5-0B860AB14452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{75FCC3E8-4F2E-490C-813A-74D92D714F1F}C:\users\x4v33r\downloads\routerclient.exe] => (Allow) C:\users\x4v33r\downloads\routerclient.exe FirewallRules: [UDP Query User{45A66FCB-24FF-4863-88F1-A66A173CE617}C:\users\x4v33r\downloads\routerclient.exe] => (Allow) C:\users\x4v33r\downloads\routerclient.exe FirewallRules: [{526CFDA5-D9F0-48E1-8F64-416A254C9A90}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{44AF3B9C-3644-4CED-938E-526163E3F172}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{69FF7C48-EF48-42D0-B536-A61E5DCACD03}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{21F7A9B7-E045-4F47-BA33-4AB5B6DACD0C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{52486277-FC24-4099-B165-21E6F7C2C9DE}C:\users\x4v33r\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\x4v33r\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{CFFA1983-373D-4710-A1AF-DD4CA5E82398}C:\users\x4v33r\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\x4v33r\appdata\roaming\spotify\spotify.exe FirewallRules: [{A340E0E5-0B71-4193-958A-5D31BF574A33}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{E95CA8F5-10CA-4C82-B92D-07F1938A6B80}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{32F5EF39-7507-47A2-BB8B-032F597DDE7F}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{AD9DFDBD-A6DE-4520-B540-30B267886168}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{4FBEFE3A-6037-442B-B932-A52736C05C53}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{C148469C-FD96-47CB-B84F-D650FA62AA44}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{B5006867-3752-4FB9-8FB2-BA42A2DB027E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{89EA6729-2893-406B-9055-4B510BE7C60C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{DA19D9B4-A93E-4478-B597-08924388185C}] => (Allow) H:\Counterstrike\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{98FD973D-2A07-4367-9B7A-901D90391551}] => (Allow) H:\Counterstrike\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{3EFF37D8-12E4-437D-802B-6DC7EBB2CDA8}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{6B7BD15E-0CA0-4E5D-8BCA-2F06855093D8}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{6F7C56F0-FDA9-439C-94EA-89773BE62D33}H:\eve online\bin\exefile.exe] => (Allow) H:\eve online\bin\exefile.exe FirewallRules: [UDP Query User{5BC0C6E4-ED05-4E5C-B2F8-7C2730BB8EFB}H:\eve online\bin\exefile.exe] => (Allow) H:\eve online\bin\exefile.exe FirewallRules: [{B8242B00-1E54-4117-98B8-8F050ABC754D}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{5FFD4B2D-73E8-4D66-B604-77E6944B281D}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe FirewallRules: [TCP Query User{3CD5BA38-1701-4359-98C1-6E93B848B257}C:\users\x4v33r\appdata\local\temp\rar$exa0.315\microsoft toolkit.exe] => (Block) C:\users\x4v33r\appdata\local\temp\rar$exa0.315\microsoft toolkit.exe FirewallRules: [UDP Query User{38A006AB-5665-4220-A320-56A9F770A9BA}C:\users\x4v33r\appdata\local\temp\rar$exa0.315\microsoft toolkit.exe] => (Block) C:\users\x4v33r\appdata\local\temp\rar$exa0.315\microsoft toolkit.exe FirewallRules: [{AA9705F1-84A9-496B-982A-9CBAB0306406}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{424FBEFB-A5F6-4976-A726-995C45E34C3C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: TAP-Windows Adapter V9 Description: TAP-Windows Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Windows Provider V9 Service: tap0901 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/12/2015 10:43:35 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/12/2015 10:43:32 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/12/2015 10:43:32 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/12/2015 10:43:32 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/12/2015 10:43:30 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (12/12/2015 10:37:05 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 10:29:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 09:20:34 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80004005 Error: (12/12/2015 02:17:32 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 90080108 Error: (12/11/2015 11:18:30 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80004005 Systemfehler: ============= Error: (12/12/2015 10:45:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/12/2015 10:45:33 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\x4v33r\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (12/12/2015 10:45:32 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\x4v33r\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (12/12/2015 10:45:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/12/2015 10:45:32 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\x4v33r\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (12/12/2015 10:45:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/12/2015 10:44:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/12/2015 10:44:07 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\x4v33r\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (12/12/2015 10:44:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/12/2015 10:44:07 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\x4v33r\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. CodeIntegrity: =================================== Date: 2015-12-09 01:32:42.972 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume6\Windows\System32\drivers\tortilla.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-12-09 01:32:42.946 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume6\Windows\System32\drivers\tortilla.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-12-08 23:08:19.287 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume6\Windows\System32\drivers\tortilla.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-12-08 23:08:19.256 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume6\Windows\System32\drivers\tortilla.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz Prozentuale Nutzung des RAM: 23% Installierter physikalischer RAM: 16332.41 MB Verfügbarer physikalischer RAM: 12471.82 MB Summe virtueller Speicher: 32663.04 MB Verfügbarer virtueller Speicher: 27950.56 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:232.79 GB) (Free:103.06 GB) NTFS Drive e: (HDD Daten) (Fixed) (Total:488.28 GB) (Free:473.65 GB) NTFS Drive f: (HDD Musik) (Fixed) (Total:457.78 GB) (Free:451.99 GB) NTFS Drive g: (HDD Diverses ) (Fixed) (Total:457.78 GB) (Free:443.23 GB) NTFS Drive h: (SSD) (Fixed) (Total:55.68 GB) (Free:27.36 GB) NTFS Drive i: (HDD Games) (Fixed) (Total:488.28 GB) (Free:166.11 GB) NTFS Drive j: (HDD Cinema) (Fixed) (Total:886.45 GB) (Free:349.08 GB) NTFS Drive k: (Save ) (Fixed) (Total:1863.01 GB) (Free:1349.49 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 267F3630) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 16CDA452) Partition 1: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=886.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E315B32D) Partition: GPT. ======================================================== Disk: 3 (Size: 55.9 GB) (Disk ID: E315B311) Partition: GPT. ======================================================== Disk: 4 (Size: 1863 GB) (Disk ID: 2EAA0CC6) Partition 1: (Active) - (Size=1863 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:12-12-2015 01 durchgeführt von x4v33r (Administrator) auf X4V33R-PC (12-12-2015 23:29:52) Gestartet von C:\Users\x4v33r\Downloads Geladene Profile: x4v33r (Verfügbare Profile: x4v33r) Platform: Windows 7 Ultimate Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (ESET) C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe () C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe (TeamSpeak Systems GmbH) C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe (CCP hf.) H:\EvE Online\bin\exefile.exe (Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6463592 2012-02-03] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [15033976 2015-11-20] (Logitech Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376 2015-11-28] (AVAST Software) HKLM-x32\...\Run: [RoccatKoneXTDOptical] => C:\Program Files (x86)\ROCCAT\Kone XTD Optical Mouse\KoneXTDOpticalMonitor.EXE [552960 2014-04-14] (ROCCAT GmbH) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-09-17] (Intel Corporation) HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-3673911049-2636675181-2431685007-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-11-28] (AVAST Software) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F3745D6E-5D25-49A2-94F6-B02D62C887A5}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-28] (AVAST Software) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-04] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-28] (AVAST Software) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-04] (Oracle Corporation) FireFox: ======== FF ProfilePath: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-04] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-04] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-24] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-24] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\duckduckgo-ssl-javascript-free.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\google-de-ssl.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\google-encrypted-no-personalization.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ixquick---deutsch.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ixquick-ssl-pictures---deutsch.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ixquick-ssl-pictures---english.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ixquick.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\leo-eng-ger.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\leo-esp-ale.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\leo-fra-all.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\metager.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ssl-wikipedia-deutsch.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\ssl-wikipedia-english.xml [2015-09-28] FF SearchPlugin: C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\searchplugins\startpage-https---deutsch.xml [2015-09-28] FF Extension: NoScript - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-11-28] FF Extension: Beeline - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\extensions\{58b8f3d7-269c-421c-a200-b01913f7e1b2}.xpi [2015-12-04] FF Extension: BetterPrivacy - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2015-12-04] FF Extension: Disable Anti-Adblock - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi [2015-12-04] FF Extension: Adblock Plus Filter Uploader - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\extensions\uploader@adblockfilters.mozdev.org.xpi [2015-12-06] FF Extension: Kein Name - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\Extensions\sortbookmarks@bouanto.xpi [2015-12-04] [ist nicht signiert] FF Extension: FT DeepDark - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66} [2015-12-04] FF Extension: Adblock Plus - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-28] FF Extension: Adblock Edge - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\i3wabxgz.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2015-12-05] FF Extension: Kein Name - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\CanvasBlocker@kkapsner.de.xpi [2015-09-28] [ist nicht signiert] FF Extension: HTTPS-Everywhere - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\https-everywhere@eff.org [2015-12-04] FF Extension: Kein Name - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{437be45a-4114-11dd-b9ab-71d256d89593}.xpi [2015-10-07] [ist nicht signiert] FF Extension: Kein Name - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-09-28] [ist nicht signiert] FF Extension: Cookie Controller - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{ac2cfa60-bc96-11e0-962b-0800200c9a66}.xpi [2015-09-28] FF Extension: Video DownloadHelper - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2015-12-04] FF Extension: Adblock Plus - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-28] FF Extension: ProfileSwitcher - C:\Users\x4v33r\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Extensions\{fa8476cf-a98c-4e08-99b4-65a69cb4b7d4}.xpi [2015-09-28] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-11-28] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-11-28] Chrome: ======= CHR Profile: C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-28] CHR Extension: (Google Docs) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-01] CHR Extension: (Google Drive) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-01] CHR Extension: (YouTube) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-01] CHR Extension: (Google-Suche) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-01] CHR Extension: (Google Tabellen) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-28] CHR Extension: (Google Docs Offline) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-01] CHR Extension: (Avast Online Security) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-12-01] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-28] CHR Extension: (Google Mail) - C:\Users\x4v33r\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-01] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-11-28] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416 2015-11-28] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109520 2015-11-28] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [5554152 2015-11-28] (Avast Software) R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [65640 2015-11-05] (CyberGhost S.R.L) R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2015-11-24] () [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400 2015-11-12] (NVIDIA Corporation) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193144 2015-11-20] (Logitech Inc.) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation) R2 Themes; C:\Windows\system32\themeservice.dll [44544 2015-11-29] (Microsoft Corporation) [Datei ist nicht signiert] R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\Unchecky_svc.exe [242936 2015-11-28] (RaMMicHaeL) R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [12730048 2015-02-06] () R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-11-28] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28144 2015-11-28] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-11-28] (AVAST Software) R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [466400 2015-11-28] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-11-28] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-11-28] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-28] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-28] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [154256 2015-11-28] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-11-28] (AVAST Software) S3 dtproscsibus; C:\Windows\System32\DRIVERS\dtproscsibus.sys [30352 2015-11-29] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [323040 2015-12-03] (Acronis International GmbH) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-12] (Malwarebytes) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [147088 2015-11-28] (AVAST Software) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-11-12] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1057728 2015-12-03] (Acronis International GmbH) R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [198088 2015-12-03] (Acronis International GmbH) S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [553912 2015-12-03] (Acronis International GmbH) R3 Tortilla; C:\Windows\System32\DRIVERS\tortilla.sys [14992 2015-12-08] () R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [310904 2015-11-28] (Avast Software) R2 VMparport; C:\Windows\system32\drivers\VMparport.sys [31936 2015-02-06] (VMware, Inc.) R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-01-07] (VMware, Inc.) R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-mntapi20-shared.sys [33872 2013-08-28] (VMware, Inc.) S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-12 23:29 - 2015-12-12 23:30 - 00022191 _____ C:\Users\x4v33r\Downloads\FRST.txt 2015-12-12 23:29 - 2015-12-12 23:29 - 02369536 _____ (Farbar) C:\Users\x4v33r\Downloads\FRST64.exe 2015-12-12 23:29 - 2015-12-12 23:29 - 00000000 ____D C:\FRST 2015-12-12 22:43 - 2015-12-12 22:43 - 02870984 _____ (ESET) C:\Users\x4v33r\Downloads\esetsmartinstaller_deu.exe 2015-12-12 22:43 - 2015-12-12 22:43 - 00000000 ____D C:\Program Files (x86)\ESET 2015-12-12 22:36 - 2015-12-12 22:36 - 00000022 _____ C:\Windows\S.dirmngr 2015-12-12 22:33 - 2015-12-12 22:33 - 01599336 _____ (Malwarebytes) C:\Users\x4v33r\Desktop\JRT801.exe 2015-12-11 13:48 - 2015-12-11 13:48 - 00001265 _____ C:\Users\x4v33r\AppData\Local\recently-used.xbel 2015-12-10 15:26 - 2015-12-10 15:26 - 00448512 _____ (OldTimer Tools) C:\Users\x4v33r\Desktop\TFC.exe 2015-12-08 23:24 - 2015-12-08 23:24 - 01738240 _____ C:\Users\x4v33r\Desktop\adwcleaner_5.024.exe 2015-12-08 23:10 - 2015-12-08 23:12 - 00000000 ____D C:\Users\x4v33r\Desktop\Tortilla+TOR 2015-12-08 23:07 - 2015-12-11 13:01 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\tor 2015-12-08 23:07 - 2015-12-08 23:07 - 00014992 _____ C:\Windows\system32\Drivers\tortilla.sys 2015-12-08 20:55 - 2015-11-11 22:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-12-08 20:55 - 2015-11-11 21:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-12-08 20:55 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2015-12-08 20:55 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2015-12-08 20:55 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2015-12-08 20:55 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2015-12-08 20:55 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-12-08 20:55 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-12-08 20:55 - 2015-11-11 16:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-12-08 20:55 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-12-08 20:55 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-12-08 20:55 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-12-08 20:55 - 2015-11-11 15:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-12-08 20:55 - 2015-11-10 19:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-12-08 20:55 - 2015-11-10 19:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-12-08 20:55 - 2015-11-10 19:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-12-08 20:55 - 2015-11-10 19:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-12-08 20:55 - 2015-11-10 19:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-12-08 20:55 - 2015-11-10 18:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-12-08 20:55 - 2015-11-10 01:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-12-08 20:55 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-12-08 20:55 - 2015-11-10 01:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-12-08 20:55 - 2015-11-10 01:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-12-08 20:55 - 2015-11-10 01:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-12-08 20:55 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-12-08 20:55 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-12-08 20:55 - 2015-11-10 01:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-12-08 20:55 - 2015-11-10 01:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-12-08 20:55 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-12-08 20:55 - 2015-11-10 01:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-12-08 20:55 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-12-08 20:55 - 2015-11-10 01:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-12-08 20:55 - 2015-11-10 00:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-12-08 20:55 - 2015-11-10 00:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-12-08 20:55 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-12-08 20:55 - 2015-11-10 00:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-12-08 20:55 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-12-08 20:55 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-12-08 20:55 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-12-08 20:55 - 2015-11-10 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-12-08 20:55 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-12-08 20:55 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-12-08 20:55 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-12-08 20:55 - 2015-11-08 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-12-08 20:55 - 2015-11-08 23:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-12-08 20:55 - 2015-11-08 23:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-12-08 20:55 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-12-08 20:55 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-12-08 20:55 - 2015-11-08 23:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-12-08 20:55 - 2015-11-08 23:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-12-08 20:55 - 2015-11-08 23:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-12-08 20:55 - 2015-11-08 23:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-12-08 20:55 - 2015-11-08 23:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-12-08 20:55 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-12-08 20:55 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-12-08 20:55 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-12-08 20:55 - 2015-11-08 23:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-12-08 20:55 - 2015-11-08 23:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-12-08 20:55 - 2015-11-08 23:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-12-08 20:55 - 2015-11-08 22:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-12-08 20:55 - 2015-11-08 22:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-12-08 20:55 - 2015-11-08 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-12-08 20:55 - 2015-11-08 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-12-08 20:55 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-12-08 20:55 - 2015-11-08 22:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-12-08 20:55 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-12-08 20:55 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-12-08 20:55 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-12-08 20:55 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-12-08 20:55 - 2015-11-08 22:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-12-08 20:55 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-12-08 20:55 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-12-08 20:55 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-12-08 20:55 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-12-08 20:55 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2015-12-08 20:55 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2015-12-08 20:55 - 2015-11-05 20:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-12-08 20:55 - 2015-11-05 20:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2015-12-08 20:55 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-12-08 20:55 - 2015-11-03 20:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-12-08 20:55 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-12-08 20:53 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2015-12-08 20:53 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2015-12-08 19:14 - 2015-12-08 19:15 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Wireshark 2015-12-08 19:10 - 2015-12-08 19:10 - 00000000 ____D C:\Program Files\Wireshark 2015-12-08 15:05 - 2015-12-08 15:05 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-12-08 15:05 - 2015-12-08 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-12-07 01:50 - 2015-12-07 01:50 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2015-12-07 01:48 - 2015-12-07 01:48 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-12-07 01:48 - 2015-12-07 01:48 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-12-07 01:46 - 2015-12-07 01:46 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2015-12-06 22:11 - 2015-12-06 22:11 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-12-06 21:19 - 2015-12-06 21:19 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\NVIDIA 2015-12-06 21:18 - 2015-12-06 21:18 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVE Launcher 2015-12-06 17:01 - 2015-12-06 17:01 - 00000000 ____D C:\ProgramData\Microsoft Toolkit 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\Windows\PCHEALTH 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\Program Files\Microsoft Sync Framework 2015-12-06 16:57 - 2015-12-06 16:57 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2015-12-06 16:56 - 2015-12-06 16:57 - 00000000 ____D C:\Program Files\Microsoft Office 2015-12-06 16:56 - 2015-12-06 16:56 - 00000000 __RHD C:\MSOCache 2015-12-06 16:56 - 2015-12-06 16:56 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Microsoft Help 2015-12-06 16:56 - 2015-12-06 16:56 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2015-12-06 16:56 - 2015-12-06 16:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2015-12-06 16:56 - 2015-12-06 16:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2015-12-05 13:49 - 2015-12-05 13:49 - 00000020 _____ C:\Users\x4v33r\Desktop\teamspeak.txt 2015-12-04 20:21 - 2015-12-11 13:47 - 00001755 _____ C:\Users\x4v33r\Desktop\public key.txt 2015-12-04 20:21 - 2015-12-11 13:46 - 00000000 ____D C:\Users\x4v33r\AppData\Local\gtk-2.0 2015-12-04 20:11 - 2015-12-04 20:11 - 00000000 ____D C:\Users\x4v33r\AppData\Local\GNU 2015-12-04 20:05 - 2015-12-04 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gpg4win 2015-12-04 20:05 - 2015-12-04 20:05 - 00000000 ____D C:\Program Files (x86)\GNU 2015-12-04 19:58 - 2015-12-04 19:58 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-12-04 19:58 - 2015-12-04 19:58 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Sun 2015-12-04 19:58 - 2015-12-04 19:58 - 00000000 ____D C:\Users\x4v33r\.oracle_jre_usage 2015-12-04 19:58 - 2015-12-04 19:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-12-04 19:57 - 2015-12-04 20:00 - 00000000 ____D C:\ProgramData\Oracle 2015-12-04 19:57 - 2015-12-04 19:57 - 00000000 ____D C:\Program Files (x86)\Java 2015-12-04 19:52 - 2015-12-04 19:52 - 00000000 ____D C:\Windows\system32\appmgmt 2015-12-04 19:52 - 2015-12-04 19:52 - 00000000 ____D C:\Users\x4v33r\AppData\LocalLow\Oracle 2015-12-04 19:45 - 2015-12-11 13:50 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\gnupg 2015-12-04 19:45 - 2015-12-04 19:45 - 00000000 ____D C:\ProgramData\GNU 2015-12-04 19:27 - 2015-12-04 19:27 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JonDoFox 2015-12-04 19:26 - 2015-12-04 19:30 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\JonDo 2015-12-04 19:26 - 2015-12-04 19:26 - 00000000 ____D C:\ProgramData\Sun 2015-12-04 19:25 - 2015-12-04 19:25 - 00000000 ____D C:\Users\x4v33r\AppData\LocalLow\Sun 2015-12-04 19:25 - 2015-12-04 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JonDo 2015-12-04 19:25 - 2015-12-04 19:25 - 00000000 ____D C:\Program Files (x86)\JonDo 2015-12-03 23:27 - 2015-12-03 23:27 - 01057728 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib.sys 2015-12-03 23:27 - 2015-12-03 23:27 - 00553912 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tnd.sys 2015-12-03 23:27 - 2015-12-03 23:27 - 00323040 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\file_tracker.sys 2015-12-03 23:27 - 2015-12-03 23:27 - 00198088 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib_mounter.sys 2015-12-03 23:26 - 2015-12-03 23:41 - 00000000 ____D C:\ProgramData\Acronis 2015-12-03 23:26 - 2015-12-03 23:26 - 00333280 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys 2015-12-03 23:26 - 2015-12-03 23:26 - 00160736 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys 2015-12-03 23:26 - 2015-12-03 23:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2015-12-03 23:26 - 2015-12-03 23:26 - 00000000 ____D C:\Program Files (x86)\Acronis 2015-12-03 22:21 - 2015-12-03 22:22 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Acronis 2015-12-03 21:49 - 2014-12-15 00:59 - 00192040 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\EuFdDisk.sys 2015-12-03 21:49 - 2014-12-15 00:59 - 00060968 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\eubakup.sys 2015-12-03 21:49 - 2014-12-15 00:59 - 00048168 _____ C:\Windows\system32\Drivers\EUBKMON.sys 2015-12-03 21:49 - 2014-12-15 00:59 - 00018472 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\eudskacs.sys 2015-12-03 21:47 - 2015-12-03 21:57 - 00000000 ____D C:\Program Files (x86)\EaseUS 2015-12-03 19:10 - 2015-12-03 19:10 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2015-12-03 19:10 - 2015-12-03 19:10 - 00000000 ____D C:\Program Files\Common Files\AV 2015-12-03 00:52 - 2015-12-03 00:52 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2015-12-03 00:48 - 2015-12-12 20:23 - 00000000 ____D C:\Users\x4v33r\AppData\Local\JDownloader 2.0 2015-12-02 12:04 - 2015-12-02 12:04 - 00060966 _____ C:\Users\x4v33r\Desktop\STELLEBESETZT.pdf 2015-12-02 10:20 - 2015-11-20 19:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-12-02 10:20 - 2015-11-20 19:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-12-02 10:20 - 2015-11-20 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-12-02 10:20 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-12-02 10:20 - 2015-11-20 19:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-12-02 10:20 - 2015-11-20 19:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-12-02 10:20 - 2015-11-20 19:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-12-02 10:20 - 2015-11-20 19:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-12-02 10:20 - 2015-11-20 19:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-12-01 22:56 - 2015-11-24 19:29 - 00102704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2015-12-01 22:55 - 2015-11-25 00:10 - 42913912 _____ C:\Windows\system32\nvcompiler.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 37882488 _____ C:\Windows\SysWOW64\nvcompiler.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 22310008 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 18363696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 16553568 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 15717672 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 14835872 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 13527248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 12034248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 11131184 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-12-01 22:55 - 2015-11-25 00:10 - 02870392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 02490488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 01905272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435906.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 01564792 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435906.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00877360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00861816 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00689272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00673912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00501056 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00467912 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00422056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00413816 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00388024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00369272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00177600 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00151184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-12-01 22:55 - 2015-11-25 00:10 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-12-01 16:18 - 2015-12-01 16:18 - 00000000 ____D C:\Users\x4v33r\Desktop\brute force 2015-12-01 11:59 - 2015-12-01 11:59 - 00000000 ____D C:\Users\x4v33r\AppData\LocalLow\Temp 2015-11-30 01:09 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-11-30 01:09 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-11-30 01:09 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-11-30 01:09 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-11-30 01:09 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-11-30 01:09 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-11-30 01:09 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-11-30 01:09 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-11-30 01:09 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-11-30 01:09 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-11-30 01:09 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-11-30 01:09 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-11-30 01:09 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-11-30 01:09 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-11-30 01:09 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-11-30 01:09 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-11-30 01:09 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-11-30 01:09 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-11-30 01:09 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-11-30 01:09 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-11-30 01:09 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-11-30 01:09 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-11-30 01:09 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-11-30 01:09 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-11-30 01:09 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-11-30 01:09 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-11-30 01:09 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-11-30 01:09 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-11-30 01:09 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-11-30 01:09 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-11-30 01:09 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-11-30 01:09 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-11-30 01:09 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-11-30 01:09 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-11-30 01:09 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-11-30 01:09 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-11-30 01:09 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-11-30 01:09 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-11-30 01:09 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-11-30 01:09 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-11-30 01:09 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-11-30 01:09 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-11-30 01:09 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-11-30 01:09 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-11-30 01:09 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-11-30 01:09 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-11-30 01:09 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-11-30 01:09 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-11-30 01:09 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-11-30 01:09 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-11-30 01:09 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-11-30 01:09 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-11-30 01:09 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-11-30 01:09 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-11-30 01:09 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-11-30 01:09 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-11-30 01:09 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-11-30 01:09 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-11-30 01:09 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-11-30 01:09 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-11-30 01:09 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-11-30 01:09 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-11-30 01:09 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-11-30 01:09 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-11-30 01:09 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-11-30 01:09 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-11-30 01:09 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-11-30 01:09 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-11-30 01:09 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-11-30 01:09 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-11-30 01:09 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-11-30 01:09 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-11-30 01:09 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-11-30 01:09 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-11-30 01:09 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-11-30 01:09 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-11-30 01:09 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-11-30 01:09 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-11-30 01:09 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-11-30 01:09 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-11-30 01:09 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-11-30 01:09 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-11-30 01:09 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-11-30 01:09 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-11-30 01:09 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-11-30 01:09 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-11-30 01:09 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-11-30 01:09 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-11-30 01:09 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-11-30 01:09 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-11-30 01:09 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-11-30 01:09 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-11-30 01:09 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-11-30 01:09 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-11-30 01:09 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-11-30 01:09 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-11-30 01:09 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-11-30 01:09 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-11-30 01:09 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-11-30 01:09 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-11-30 01:09 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-11-30 01:09 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-11-30 01:09 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-11-30 01:09 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-11-30 01:09 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-11-30 01:09 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-11-30 01:09 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-11-30 01:09 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-11-30 01:09 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-11-30 01:09 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-11-30 01:09 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-11-30 01:09 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-11-30 01:09 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-11-30 01:09 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-11-30 01:09 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-11-30 01:09 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-11-30 01:09 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-11-30 01:09 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-11-30 00:59 - 2015-03-09 14:48 - 02508440 _____ (Sysinternals - www.sysinternals.com) C:\Users\x4v33r\Desktop\procexp.exe 2015-11-30 00:29 - 2015-11-30 00:29 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2015-11-29 23:57 - 2015-11-29 23:58 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\EveHQ 2015-11-29 23:57 - 2015-11-29 23:57 - 00000000 ____D C:\Users\x4v33r\Documents\EveHQ 2015-11-29 23:29 - 2015-11-29 23:29 - 00000000 ____D C:\Users\x4v33r\Documents\EVE 2015-11-29 23:29 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-11-29 23:29 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-11-29 23:29 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-11-29 23:28 - 2015-11-29 23:28 - 00000000 ____D C:\Users\x4v33r\AppData\Local\CCP 2015-11-29 17:00 - 2015-11-29 17:00 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Macromedia 2015-11-29 17:00 - 2015-11-29 17:00 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Macromedia 2015-11-29 16:55 - 2015-11-29 16:56 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Adobe 2015-11-29 16:55 - 2015-11-29 16:55 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2015-11-29 16:55 - 2015-11-29 16:55 - 00000000 ____D C:\Windows\system32\Macromed 2015-11-29 15:45 - 2015-11-29 15:45 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Logitech 2015-11-29 15:44 - 2015-12-10 16:54 - 00000000 ____D C:\AdwCleaner 2015-11-29 15:44 - 2015-11-29 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2015-11-29 15:44 - 2015-11-29 15:44 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2015-11-29 15:43 - 2015-11-29 15:43 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Logitech 2015-11-29 15:43 - 2015-11-29 15:43 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Logishrd 2015-11-29 15:34 - 2015-11-29 15:34 - 00000000 ____D C:\Windows\W7SBC 2015-11-29 15:34 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer_edit_w7sbc.exe 2015-11-29 15:34 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer_backup_w7sbc.exe 2015-11-29 15:34 - 2010-11-21 04:24 - 02389504 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-11-29 15:27 - 2009-07-14 02:41 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll.backup 2015-11-29 15:26 - 2010-11-21 04:23 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll.backup 2015-11-29 15:26 - 2009-07-14 02:41 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll.backup 2015-11-29 15:15 - 2015-11-29 15:21 - 00000000 ___RD C:\Users\x4v33r\OneDrive 2015-11-29 15:15 - 2015-11-29 15:21 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive 2015-11-29 15:15 - 2015-11-29 15:15 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-11-29 15:13 - 2015-11-29 15:13 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-11-29 15:11 - 2015-12-06 16:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2015-11-29 15:08 - 2015-11-29 15:08 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\DAEMON Tools iSCSI Target 2015-11-29 15:07 - 2015-12-10 22:22 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\DAEMON Tools Pro 2015-11-29 15:07 - 2015-11-29 15:07 - 00030352 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtproscsibus.sys 2015-11-29 15:01 - 2015-11-29 15:11 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro 2015-11-29 12:02 - 2015-11-29 12:02 - 00000000 ____D C:\Users\x4v33r\AppData\Local\GWX 2015-11-28 22:58 - 2015-11-28 23:23 - 00000000 ____D C:\Users\x4v33r\Documents\Virtual Machines 2015-11-28 22:56 - 2015-12-11 13:01 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\VMware 2015-11-28 22:56 - 2015-12-11 13:01 - 00000000 ____D C:\Users\x4v33r\AppData\Local\VMware 2015-11-28 22:55 - 2015-02-06 18:40 - 00066752 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmx86.sys 2015-11-28 22:55 - 2015-02-06 18:40 - 00031936 _____ (VMware, Inc.) C:\Windows\system32\Drivers\VMparport.sys 2015-11-28 22:55 - 2015-01-07 15:55 - 00076480 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vsock.sys 2015-11-28 22:55 - 2015-01-07 15:55 - 00068288 _____ (VMware, Inc.) C:\Windows\system32\vsocklib.dll 2015-11-28 22:55 - 2015-01-07 15:55 - 00064192 _____ (VMware, Inc.) C:\Windows\SysWOW64\vsocklib.dll 2015-11-28 22:54 - 2015-12-12 22:36 - 00000000 ____D C:\ProgramData\VMware 2015-11-28 22:54 - 2015-11-28 22:54 - 00001024 _____ C:\Windows\SysWOW64\%TMP% 2015-11-28 22:54 - 2015-11-28 22:54 - 00000000 ____D C:\Users\Public\Documents\Shared Virtual Machines 2015-11-28 22:54 - 2015-11-28 22:54 - 00000000 ____D C:\Program Files\Common Files\VMware 2015-11-28 22:54 - 2015-11-28 22:54 - 00000000 ____D C:\Program Files (x86)\VMware 2015-11-28 22:54 - 2015-02-06 18:40 - 00438464 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe 2015-11-28 22:54 - 2015-02-06 18:40 - 00359104 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe 2015-11-28 22:54 - 2015-02-06 18:40 - 00026816 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetuserif.sys 2015-11-28 22:54 - 2015-02-06 18:39 - 00931008 _____ (VMware, Inc.) C:\Windows\system32\vnetlib64.dll 2015-11-28 22:54 - 2015-01-07 08:02 - 00055488 _____ (VMware, Inc.) C:\Windows\system32\Drivers\hcmon.sys 2015-11-28 22:54 - 2015-01-07 08:02 - 00046144 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmusb.sys 2015-11-28 22:36 - 2015-12-11 02:40 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\vlc 2015-11-28 22:23 - 2015-11-28 22:23 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2015-11-28 22:22 - 2013-09-17 15:48 - 00795632 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys 2015-11-28 22:22 - 2013-09-17 15:48 - 00358896 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys 2015-11-28 22:22 - 2013-09-17 15:48 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys 2015-11-28 22:22 - 2013-09-17 15:47 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2015-11-28 22:22 - 2009-07-14 22:21 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2015-11-28 21:52 - 2015-11-28 21:52 - 00000000 ____D C:\ProgramData\ROCCAT 2015-11-28 21:51 - 2015-11-28 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2015-11-28 21:50 - 2015-11-28 21:50 - 00000000 ____D C:\Program Files (x86)\ROCCAT 2015-11-28 21:49 - 2015-11-28 21:49 - 00001090 _____ C:\Users\x4v33r\Desktop\MSI Afterburner.lnk 2015-11-28 21:49 - 2015-11-28 21:49 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2015-11-28 21:49 - 2015-11-28 21:49 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2015-11-28 21:46 - 2015-11-28 21:46 - 00000000 ____D C:\Program Files\Speccy 2015-11-28 21:40 - 2015-12-12 23:01 - 00000000 ____D C:\Windows\SysWOW64\vbox 2015-11-28 21:40 - 2015-12-12 23:01 - 00000000 ____D C:\Windows\system32\vbox 2015-11-28 21:23 - 2015-11-28 21:23 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EveHQ 2015-11-28 21:23 - 2015-11-28 21:23 - 00000000 ____D C:\Program Files (x86)\EveHQ 2015-11-28 21:19 - 2015-11-28 21:21 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Spotify 2015-11-28 21:19 - 2015-11-28 21:19 - 00001797 _____ C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-11-28 21:19 - 2015-11-28 21:19 - 00000000 ____D C:\Users\x4v33r\Tracing 2015-11-28 21:18 - 2015-12-12 20:37 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Skype 2015-11-28 21:18 - 2015-12-08 15:05 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Skype 2015-11-28 21:18 - 2015-12-08 15:05 - 00000000 ____D C:\ProgramData\Skype 2015-11-28 21:18 - 2015-11-28 21:21 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Spotify 2015-11-28 21:17 - 2015-11-28 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-11-28 21:16 - 2015-11-28 21:16 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2015-11-28 21:13 - 2015-12-12 23:08 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\TS3Client 2015-11-28 21:12 - 2015-11-28 21:12 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-11-28 21:12 - 2015-11-28 21:12 - 00000000 ____D C:\Users\x4v33r\AppData\Local\TeamSpeak 3 Client 2015-11-28 21:11 - 2015-12-06 21:23 - 00000000 ____D C:\Users\x4v33r\AppData\Local\CyberGhost 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Notepad++ 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\Users\x4v33r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\Program Files\TAP-Windows 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\Program Files\CyberGhost 5 2015-11-28 21:11 - 2015-11-28 21:11 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2015-11-28 21:08 - 2015-11-28 21:08 - 00000000 ____D C:\Users\x4v33r\Desktop\EFT 2015-11-28 21:04 - 2015-12-04 12:14 - 00000000 ____D C:\Users\x4v33r\AppData\Local\Steam 2015-11-28 21:04 - 2015-11-28 21:04 - 00000000 ____D C:\Users\x4v33r\AppData\Local\CEF 2015-11-28 21:04 - 2015-11-28 21:04 - 00000000 ____D C:\ProgramData\CCP
__________________ Zitat:
|
Themen zu Win32-Keygen |
antivirus, avast, cpu, defender, explorer, firefox, firewall, geforce, helper, installation, internet, internet explorer, logfile, musik, netstat, popup, programme, registry, router, scan, schadware, software, tcp, temp, udp, usb |