|
Alles rund um Windows: Booting ZeitlupeWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
12.04.2016, 12:03 | #1 |
| Problem: Booting Zeitlupe Hi Leute Ich habe seit neustem das Problem das mein pc meint alles in zeitlupe abzuspielen also dauert das hochfahren 5 minuten aber normalerweise 1 min >.< Programme zu öffnen läuft langsam, Spiele wie League of Legends laufen alle im zeitlupeneffekt, Also alles langsamer als sonnst -.- und seit neustem wird mir auch der leerlaufprozess mit 90 % auslastung im taskmanager angezeigt das finde ich etwas komisch! normalerweise war der bei mir immer unter 0,0 Mein Eq : AMD FX 6300, 8gb RAM, nvidia geforce gtx 770 Hab schon viel gegoogelt und denke das es an einem virus liegt aber mehr weiß ich nun auch nicht falls ihr was gepostet braucht bitte sagt bescheidt dann poste ich das was ihr wollt und nun helft mir bitte xDDD OTL.TXTOTL Logfile: Code:
ATTFilter OTL logfile created on: 12.04.2016 12:48:00 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Maurice\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,98 Gb Total Physical Memory | 5,28 Gb Available Physical Memory | 66,11% Memory free 15,96 Gb Paging File | 13,21 Gb Available in Paging File | 82,74% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 698,10 Gb Total Space | 186,41 Gb Free Space | 26,70% Space Free | Partition Type: NTFS Drive D: | 29,28 Gb Total Space | 24,59 Gb Free Space | 83,97% Space Free | Partition Type: FAT32 Drive F: | 63,86 Gb Total Space | 63,68 Gb Free Space | 99,71% Space Free | Partition Type: NTFS Computer Name: MAURICE-PC | User Name: Maurice | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Maurice\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Users\Maurice\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) PRC - C:\Users\Maurice\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd) PRC - C:\Users\Maurice\AppData\Roaming\Spotify\SpotifyCrashService.exe (Spotify Ltd) PRC - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) PRC - C:\Programme\AVAST Software\Avast\avastui.exe (AVAST Software) PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Malwarebytes) PRC - C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) PRC - C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes) PRC - C:\Windows\SysWOW64\PnkBstrA.exe () PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) PRC - C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software) PRC - C:\Programme\AVAST Software\Avast\afwServ.exe (AVAST Software) PRC - C:\Programme\AVAST Software\Avast\avBugReport.exe (AVAST Software) PRC - C:\Programme\AVAST Software\Avast\setup\instup.exe (AVAST Software) PRC - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) PRC - C:\Program Files (x86)\Skiller PRO\Monitor.EXE (Sharkoon Technologies) PRC - C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe () PRC - C:\Programme\VIA XHCI UASP Utility\usb3Monitor.exe (VIA Technologies, Inc.) ========== Modules (No Company Name) ========== MOD - C:\Users\Maurice\AppData\Roaming\Spotify\libcef.dll () MOD - C:\Users\Maurice\AppData\Roaming\Spotify\libglesv2.dll () MOD - C:\Users\Maurice\AppData\Roaming\Spotify\libegl.dll () MOD - C:\Programme\AVAST Software\Avast\ffl2.dll () MOD - C:\Programme\AVAST Software\Avast\log.dll () MOD - C:\Programme\AVAST Software\Avast\JsonRpcServer.dll () MOD - C:\Programme\AVAST Software\Avast\libcef.dll () MOD - C:\Program Files (x86)\Skiller PRO\lan.dll () MOD - C:\Windows\SysWOW64\PrxerNsp.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\OCK.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\work.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\MFCCPU.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\HM.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\Normal.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\SF.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\AMD8.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\platform.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\device.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\GVTunner.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\ycc.dll () MOD - C:\Program Files (x86)\Skiller PRO\hiddriver.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\GPTT.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe () MOD - C:\Program Files (x86)\GIGABYTE\ET6\STT.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\StabilityLib.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\IccLibDll.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\CIAMIB.dll () MOD - C:\Program Files (x86)\GIGABYTE\ET6\Sound.dll () ========== Services (SafeList) ========== SRV:64bit: - (PnkBstrA) -- C:\Windows\SysNative\PnkBstrA.exe () SRV:64bit: - (AppleChargerSrv) -- C:\Windows\SysNative\AppleChargerSrv.exe () SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (BEService) -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe () SRV - (Origin Client Service) -- C:\Program Files (x86)\Origin\OriginClientService.exe (Electronic Arts) SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) SRV - (NvNetworkService) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) SRV - (GfExperienceService) -- C:\Programme\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) SRV - (NvStreamSvc) -- C:\Programme\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) SRV - (NvStreamNetworkSvc) -- C:\Programme\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies) SRV - (DigitalWave.Update.Service) -- C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (Digital Wave Ltd.) SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation) SRV - (BstHdUpdaterSvc) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (BlueStack Systems, Inc.) SRV - (BstHdLogRotatorSvc) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) SRV - (BstHdAndroidSvc) -- C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems, Inc.) SRV - (MBAMService) -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Malwarebytes) SRV - (MBAMScheduler) -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) SRV - (SetupARService) -- C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe (Realtek Semiconductor.) SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe () SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) SRV - (avgsvc) -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (AVG Technologies CZ, s.r.o.) SRV - (avast! Antivirus) -- C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software) SRV - (avast! Firewall) -- C:\Programme\AVAST Software\Avast\afwServ.exe (AVAST Software) SRV - (npggsvc) -- C:\Windows\SysWOW64\GameMon.des (INCA Internet Co., Ltd.) SRV - (Disc Soft Lite Bus Service) -- C:\Programme\DAEMON Tools Lite\DiscSoftBusService.exe (Disc Soft Ltd) SRV - (ManyCam Service) -- C:\ProgramData\ManyCam\Service\service.exe (Visicom Media Inc.) SRV - (TeamViewer) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) SRV - (HerculesDJControlMP3) -- C:\Programme\DJHERCULESMIX\Audio\DJ Console Series\drivers\amd64\HerculesDJControlMP3.EXE (Guillemot Corporation ®) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (AODService) -- C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe () SRV - (MSCamSvc) -- C:\Programme\Microsoft LifeCam\MSCamS64.exe (Microsoft Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (MBAMSwissArmy) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys (Malwarebytes) DRV:64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation) DRV:64bit: - (MBAMWebAccessControl) -- C:\Windows\SysNative\drivers\mwac.sys (Malwarebytes Corporation) DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes) DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswSnx.sys (AVAST Software) DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software) DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (AVAST Software) DRV:64bit: - (aswNetSec) -- C:\Windows\SysNative\drivers\aswNetSec.sys (AVAST Software) DRV:64bit: - (aswVmm) -- C:\Windows\SysNative\drivers\aswVmm.sys (AVAST Software) DRV:64bit: - (VBoxNetLwf) -- C:\Windows\SysNative\drivers\VBoxNetLwf.sys (Oracle Corporation) DRV:64bit: - (VBoxNetAdp) -- C:\Windows\SysNative\drivers\VBoxNetAdp6.sys (Oracle Corporation) DRV:64bit: - (dtliteusbbus) -- C:\Windows\SysNative\drivers\dtliteusbbus.sys (Disc Soft Ltd) DRV:64bit: - (dtlitescsibus) -- C:\Windows\SysNative\drivers\dtlitescsibus.sys (Disc Soft Ltd) DRV:64bit: - (aswStm) -- C:\Windows\SysNative\drivers\aswStm.sys (AVAST Software) DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (AVAST Software) DRV:64bit: - (aswRvrt) -- C:\Windows\SysNative\drivers\aswRvrt.sys (AVAST Software) DRV:64bit: - (aswHwid) -- C:\Windows\SysNative\drivers\aswHwid.sys (AVAST Software) DRV:64bit: - (aswKbd) -- C:\Windows\SysNative\drivers\aswKbd.sys (AVAST Software) DRV:64bit: - (aswNdisFlt) -- C:\Windows\SysNative\drivers\aswNdisFlt.sys (AVAST Software) DRV:64bit: - (aswTap) -- C:\Windows\SysNative\drivers\aswTap.sys (The OpenVPN Project) DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation) DRV:64bit: - (Bulk) -- C:\Windows\SysNative\drivers\HDJBulk.sys (© Guillemot R&D, 2015. All rights reserved.) DRV:64bit: - (HDJMidi) -- C:\Windows\SysNative\drivers\HDJMidi.sys (© Guillemot R&D, 2015. All rights reserved.) DRV:64bit: - (ManyCam) -- C:\Windows\SysNative\drivers\mcvidrv.sys (Visicom Media Inc.) DRV:64bit: - (mcaudrv_simple) -- C:\Windows\SysNative\drivers\mcaudrv_x64.sys (Visicom Media Inc.) DRV:64bit: - (VUSB3HUB) -- C:\Windows\SysNative\drivers\ViaHub3.sys (VIA Technologies, Inc.) DRV:64bit: - (xhcdrv) -- C:\Windows\SysNative\drivers\xhcdrv.sys (VIA Technologies, Inc.) DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek ) DRV:64bit: - (AppleCharger) -- C:\Windows\SysNative\drivers\AppleCharger.sys () DRV:64bit: - (UsbCharger) -- C:\Windows\SysNative\drivers\UsbCharger.sys () DRV:64bit: - (tap0901) -- C:\Windows\SysNative\drivers\tap0901.sys (The OpenVPN Project) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (WmVirHid) -- C:\Windows\SysNative\drivers\WmVirHid.sys (Logitech Inc.) DRV:64bit: - (WmBEnum) -- C:\Windows\SysNative\drivers\WmBEnum.sys (Logitech Inc.) DRV:64bit: - (WmXlCore) -- C:\Windows\SysNative\drivers\WmXlCore.sys (Logitech Inc.) DRV:64bit: - (WmFilter) -- C:\Windows\SysNative\drivers\WmFilter.sys (Logitech Inc.) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (xnacc) -- C:\Windows\SysNative\drivers\xnacc.sys (Microsoft Corporation) DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV - (GVTDrv64) -- C:\Windows\GVTDrv64.sys () DRV - (gdrv) -- C:\Windows\gdrv.sys (Windows (R) Server 2003 DDK provider) DRV - (NvStreamKms) -- C:\Programme\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys (NVIDIA Corporation) DRV - (etdrv) -- C:\Windows\etdrv.sys (Windows (R) Server 2003 DDK provider) DRV - (BstHdDrv) -- C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys (BlueStack Systems) DRV - (CEDRIVER60) -- C:\Program Files (x86)\Cheat Engine 6.5\dbk64.sys () DRV - (AODDriver4.3.0) -- C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys (Advanced Micro Devices) DRV - (ISODrive) -- C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys (EZB Systems, Inc.) DRV - (speedfan) -- C:\Windows\SysWOW64\speedfan.sys (Almico Software) DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\SOFTWARE\Microsoft\Internet Explorer\Main,DefaultWANProfile = 123108459 IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = Hotmail Login, Outlook, Messenger und Skype - MSN Deutschland IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = C5 34 03 D5 6F 7D D1 01 [binary data] IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.countryCode: "DE" FF - prefs.js..browser.search.defaultengine: "Google (avast)" FF - prefs.js..browser.search.defaultenginename: "Coolrom Search Engine" FF - prefs.js..browser.search.defaultthis.engineName: "Google (avast)" FF - prefs.js..browser.search.defaulturl: "https://www.google.com/search?trackid=sp-006" FF - prefs.js..browser.search.hiddenOneOffs: "Coolrom Search Engine,Google (avast),Yahoo,Amazon.de,Bing,DuckDuckGo,eBay,LEO Eng-Deu,Wikipedia (de)" FF - prefs.js..browser.search.order.1: "Google (avast)" FF - prefs.js..browser.search.region: "DE" FF - prefs.js..browser.search.selectedEngine: "Google (avast)" FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "https://www.google.com/?trackid=sp-006" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:45.0.1 FF - prefs.js..keyword.URL: "https://www.google.com/search?trackid=sp-006" FF - user.js - File not found FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.73.2: C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.73.2: C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1224194.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=2.3.0: C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.77.2: C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.77.2: C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF [2016.04.12 12:38:35 | 000,000,000 | ---D | M] 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\sp@avast.com: C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SAFEPRICE\FF [2016.04.12 12:38:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2016.04.12 12:38:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\sp@avast.com: C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016.04.12 12:38:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 45.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 45.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2016.02.02 18:52:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\Extensions [2016.04.12 12:46:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\Firefox\Profiles\s1fx2xxc.default-1455007487433\extension-data [2016.04.06 19:55:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\Firefox\Profiles\s1fx2xxc.default-1455007487433\extensions [2016.04.11 11:15:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\Firefox\Profiles\u5HuzAy9.default\extensions [2016.04.06 19:55:59 | 001,456,068 | ---- | M] () (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\firefox\profiles\s1fx2xxc.default-1455007487433\extensions\uBlock0@raymondhill.net.xpi [2016.03.24 21:33:43 | 000,030,452 | ---- | M] () (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\firefox\profiles\s1fx2xxc.default-1455007487433\extensions\{0fc22c4c-93ed-48ea-ad12-dc8039cf3795}.xpi [2016.04.01 00:49:25 | 001,656,045 | ---- | M] () (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\firefox\profiles\s1fx2xxc.default-1455007487433\features\{9c952769-b37b-4135-97c5-8064cdb60af6}\loop@mozilla.org.xpi [2016.04.11 11:15:10 | 000,917,239 | ---- | M] () (No name found) -- C:\Users\Maurice\AppData\Roaming\mozilla\firefox\profiles\u5HuzAy9.default\extensions\abs@avira.com.xpi [2016.03.03 19:11:47 | 000,002,428 | ---- | M] () -- C:\Users\Maurice\AppData\Roaming\mozilla\firefox\profiles\s1fx2xxc.default-1455007487433\searchplugins\google-avast.xml [2016.03.20 01:53:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions ========== Chrome ========== CHR - default_search_provider: () CHR - default_search_provider: search_url = CHR - default_search_provider: suggest_url = CHR - plugin: Error reading preferences file CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\11.1.0.221_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmggmdngboajiakmbpdknfpdelbjbcg\3.1.1_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\ CHR - Extension: No name found = C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\ O1 HOSTS File: ([2016.03.07 23:15:25 | 000,000,872 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 live.virtualdj.com O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.8.0_73\bin\ssv.dll (Oracle Corporation) O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre1.8.0_73\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll (Oracle Corporation) O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll (Oracle Corporation) O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:64bit: - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation) O4:64bit: - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.) O4:64bit: - HKLM..\Run: [VIAxHCUtl] C:\Program Files\VIA XHCI UASP Utility\usb3Monitordows\SysNative\nvspcap64.dll (NVIDIA Corporation) File not found O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) O4 - HKLM..\Run: [Skiller PRO] C:\Program Files (x86)\Skiller PRO\Monitor.exe (Sharkoon Technologies) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd) O4 - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000..\Run: [Spotify] C:\Users\Maurice\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) O4 - HKU\S-1-5-21-1270300581-4203435593-1291585088-1000..\Run: [Spotify Web Helper] C:\Users\Maurice\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd) O4 - HKLM..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETcall.exe () O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1 O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Windows\SysNative\PrxerNsp.dll () O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\PrxerDrv.dll (Initex) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\PrxerDrv.dll (Initex) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\PrxerDrv.dll (Initex) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\PrxerDrv.dll (Initex) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000015 - C:\Windows\SysNative\PrxerDrv.dll (Initex) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\PrxerNsp.dll () O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex) O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.169.185.33 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{38695ECE-F725-4F58-B873-DA497AE9B91B}: DhcpNameServer = 83.169.185.33 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3B42ECC9-3F82-40B6-8095-B2E5E34D0FF7}: NameServer = 77.234.40.79 O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{29dd5da2-de47-11e5-8888-408d5c7e5326}\Shell - "" = AutoRun O33 - MountPoints2\{29dd5da2-de47-11e5-8888-408d5c7e5326}\Shell\AutoRun\command - "" = E:\setup.exe O33 - MountPoints2\{8e340db7-e79d-11e5-8fcf-408d5c7e5326}\Shell - "" = AutoRun O33 - MountPoints2\{8e340db7-e79d-11e5-8fcf-408d5c7e5326}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\setup.exe O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2016.04.11 13:09:14 | 000,398,152 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2016.04.11 12:10:57 | 000,000,000 | ---D | C] -- C:\$WINDOWS.~LS [2016.04.11 11:07:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira [2016.04.11 02:26:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VulkanRT [2016.04.07 14:37:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\BattlEye [2016.04.06 07:02:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm [2016.04.06 06:43:39 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Documents\Heroes of the Storm [2016.04.06 06:43:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Heroes of the Storm [2016.04.06 06:33:08 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\Blizzard Entertainment [2016.04.06 06:33:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment [2016.04.06 06:33:05 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\Battle.net [2016.04.06 06:32:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net [2016.04.06 06:31:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Battle.net [2016.04.06 06:27:25 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Battle.net [2016.04.06 06:26:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Battle.net [2016.04.06 04:43:47 | 000,000,000 | ---D | C] -- C:\ProgramData\KONAMI [2016.04.06 04:43:20 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Documents\KONAMI [2016.04.05 22:47:09 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Desktop\prisonarchitect-rc620151001-pc [2016.04.05 20:40:32 | 000,000,000 | ---D | C] -- C:\ProgramData\.mono [2016.04.05 20:40:31 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\.mono [2016.04.05 03:13:33 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Documents\EA Games [2016.04.05 03:12:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medal of Honor Pacific Assault™ [2016.03.31 08:07:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft [2016.03.31 08:07:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeCodecPack [2016.03.31 08:07:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft [2016.03.31 08:07:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft [2016.03.31 08:07:10 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\DVDVideoSoft [2016.03.30 18:57:53 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Proxifier [2016.03.30 18:57:46 | 000,143,944 | ---- | C] (Initex) -- C:\Windows\SysNative\ProxifierShellExt.dll [2016.03.30 18:57:46 | 000,119,880 | ---- | C] (Initex) -- C:\Windows\SysWow64\ProxifierShellExt.dll [2016.03.30 18:57:46 | 000,118,856 | ---- | C] (Initex) -- C:\Windows\SysNative\PrxerDrv.dll [2016.03.30 18:57:46 | 000,097,864 | ---- | C] (Initex) -- C:\Windows\SysWow64\PrxerDrv.dll [2016.03.30 18:57:46 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SPORDER.DLL [2016.03.30 18:57:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxifier [2016.03.30 18:57:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Proxifier [2016.03.29 20:05:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java [2016.03.29 20:02:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2016.03.29 20:02:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2016.03.29 20:02:17 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2016.03.28 21:11:25 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games [2016.03.28 21:09:32 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVE Launcher [2016.03.28 21:08:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EVE ONLINE [2016.03.28 20:52:39 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\CCP [2016.03.23 23:17:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PCXS4 [2016.03.23 10:32:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech [2016.03.23 10:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech [2016.03.23 10:32:04 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech [2016.03.23 10:30:43 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Logitech [2016.03.23 10:30:43 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\Logishrd [2016.03.23 10:18:45 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\MotioninJoy [2016.03.23 10:18:41 | 000,328,712 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\MijFrc.dll [2016.03.23 10:18:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy [2016.03.23 10:18:40 | 000,000,000 | ---D | C] -- C:\Program Files\MotioninJoy [2016.03.23 10:11:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project 64 2.2 [2016.03.23 10:11:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Project64 2.2 [2016.03.21 18:28:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Port Forwarding [2016.03.21 18:28:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Smart Port Forwarding [2016.03.21 18:28:37 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Desktop\spf [2016.03.19 01:42:10 | 000,045,992 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\TURegOpt.exe [2016.03.19 01:42:04 | 000,037,288 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\authuitu.dll [2016.03.19 01:42:04 | 000,032,680 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysWow64\authuitu.dll [2016.03.19 01:41:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp [2016.03.19 01:38:35 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files [2016.03.19 01:38:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg [2016.03.19 01:38:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG [2016.03.19 01:38:08 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\AvgSetupLog [2016.03.19 01:38:08 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\Avg [2016.03.16 19:41:05 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\CrashReportClient [2016.03.15 20:40:59 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\VikingGame [2016.03.15 12:00:13 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\CrashRpt [2016.03.14 21:55:53 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacksGameManager [2016.03.14 21:54:48 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacks [2016.03.14 21:54:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BlueStacks [2016.03.14 21:52:29 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacksSetup [2016.03.14 21:52:27 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Local\Bluestacks [2016.03.14 00:00:52 | 000,000,000 | ---D | C] -- C:\Users\Maurice\AppData\Roaming\uTorrent [2016.03.13 23:40:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO [2016.03.13 23:40:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UltraISO [2016.03.13 23:40:53 | 000,000,000 | ---D | C] -- C:\Users\Maurice\Documents\My ISO Files [2016.03.13 23:40:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\EZB Systems [2016.03.13 22:58:47 | 000,000,000 | ---D | C] -- C:\Users\Maurice\VirtualBox VMs [2016.03.13 22:57:18 | 000,000,000 | ---D | C] -- C:\Users\Maurice\.VirtualBox [2016.03.13 22:56:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox [2016.03.13 22:56:23 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2016.03.13 22:56:14 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle [2016.03.13 16:30:45 | 000,000,000 | ---D | C] -- C:\Windows\Minidump ========== Files - Modified Within 30 Days ========== [2016.04.12 12:40:56 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys [2016.04.12 12:40:32 | 000,030,528 | ---- | M] () -- C:\Windows\GVTDrv64.sys [2016.04.12 12:40:31 | 000,000,004 | ---- | M] () -- C:\Windows\SysWow64\GVTunner.ref [2016.04.12 12:40:13 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\Windows\gdrv.sys [2016.04.12 12:38:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2016.04.12 12:38:38 | 2132,975,615 | -HS- | M] () -- C:\hiberfil.sys [2016.04.11 20:54:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2016.04.11 13:12:11 | 000,001,928 | ---- | M] () -- C:\Users\Public\Desktop\Avast Premier.lnk [2016.04.11 13:11:46 | 000,001,043 | ---- | M] () -- C:\Users\Public\Desktop\Avast SafeZone 1 Browser.lnk [2016.04.11 12:54:54 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml [2016.04.11 12:54:54 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml [2016.04.08 05:54:20 | 000,797,376 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2016.04.08 05:54:20 | 000,142,528 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2016.04.06 20:31:31 | 000,000,222 | ---- | M] () -- C:\Users\Maurice\Desktop\ARK Survival Of The Fittest.url [2016.04.06 07:02:07 | 000,001,165 | ---- | M] () -- C:\Users\Public\Desktop\Heroes of the Storm.lnk [2016.04.06 06:32:45 | 000,001,088 | ---- | M] () -- C:\Users\Public\Desktop\Battle.net.lnk [2016.04.06 04:52:46 | 000,000,222 | ---- | M] () -- C:\Users\Maurice\Desktop\The Forgotten Ones.url [2016.04.06 03:48:24 | 000,000,222 | ---- | M] () -- C:\Users\Maurice\Desktop\Pro Evolution Soccer 2016 myClub.url [2016.04.05 20:34:05 | 000,000,222 | ---- | M] () -- C:\Users\Maurice\Desktop\Creativerse.url [2016.04.05 03:12:53 | 000,001,271 | ---- | M] () -- C:\Users\Public\Desktop\Medal of Honor Pacific Assault™.lnk [2016.03.31 08:07:53 | 000,001,368 | ---- | M] () -- C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk [2016.03.31 08:06:51 | 001,618,320 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2016.03.31 08:06:51 | 000,698,688 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2016.03.31 08:06:51 | 000,653,526 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2016.03.31 08:06:51 | 000,148,828 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2016.03.31 08:06:51 | 000,121,398 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2016.03.30 18:57:46 | 000,000,989 | ---- | M] () -- C:\Users\Maurice\Desktop\Proxifier.lnk [2016.03.29 20:04:44 | 000,097,856 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll [2016.03.29 20:02:18 | 000,002,699 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2016.03.27 14:12:43 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\Windows\etdrv.sys [2016.03.23 10:18:41 | 000,000,929 | ---- | M] () -- C:\Users\Public\Desktop\DS3 Tool.lnk [2016.03.23 04:40:54 | 000,001,072 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2016.03.23 00:49:33 | 000,226,168 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe [2016.03.22 21:33:33 | 000,226,168 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0 [2016.03.22 05:34:06 | 000,041,127 | ---- | M] () -- C:\Users\Maurice\Desktop\My Snapshot_2.jpg [2016.03.21 22:01:36 | 000,056,384 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvvad64v.sys [2016.03.21 22:01:28 | 000,109,632 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvaudcap64v.dll [2016.03.21 22:01:28 | 000,100,416 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvaudcap32v.dll [2016.03.21 18:28:48 | 000,001,037 | ---- | M] () -- C:\Users\Public\Desktop\Smart Port Forwarding.lnk [2016.03.16 22:03:30 | 000,000,439 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.ics [2016.03.14 21:55:59 | 000,001,683 | ---- | M] () -- C:\Users\Public\Desktop\BlueStacks.lnk [2016.03.13 23:40:54 | 000,000,977 | ---- | M] () -- C:\Users\Public\Desktop\UltraISO.lnk [2016.03.13 22:56:40 | 000,001,082 | ---- | M] () -- C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk ========== Files Created - No Company Name ========== [2016.04.11 13:11:46 | 000,001,043 | ---- | C] () -- C:\Users\Public\Desktop\Avast SafeZone 1 Browser.lnk [2016.04.11 13:11:46 | 000,001,043 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone 1 Browser.lnk [2016.04.11 12:50:21 | 000,002,562 | ---- | C] () -- C:\Windows\diagwrn.xml [2016.04.11 12:50:21 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml [2016.04.06 20:31:31 | 000,000,222 | ---- | C] () -- C:\Users\Maurice\Desktop\ARK Survival Of The Fittest.url [2016.04.06 07:02:07 | 000,001,165 | ---- | C] () -- C:\Users\Public\Desktop\Heroes of the Storm.lnk [2016.04.06 06:32:45 | 000,001,088 | ---- | C] () -- C:\Users\Public\Desktop\Battle.net.lnk [2016.04.06 04:52:46 | 000,000,222 | ---- | C] () -- C:\Users\Maurice\Desktop\The Forgotten Ones.url [2016.04.06 03:48:24 | 000,000,222 | ---- | C] () -- C:\Users\Maurice\Desktop\Pro Evolution Soccer 2016 myClub.url [2016.04.05 20:34:05 | 000,000,222 | ---- | C] () -- C:\Users\Maurice\Desktop\Creativerse.url [2016.04.05 03:12:53 | 000,001,271 | ---- | C] () -- C:\Users\Public\Desktop\Medal of Honor Pacific Assault™.lnk [2016.03.31 08:07:53 | 000,001,368 | ---- | C] () -- C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk [2016.03.30 18:57:46 | 000,096,840 | ---- | C] () -- C:\Windows\SysNative\PrxerNsp.dll [2016.03.30 18:57:46 | 000,084,040 | ---- | C] () -- C:\Windows\SysWow64\PrxerNsp.dll [2016.03.30 18:57:46 | 000,000,989 | ---- | C] () -- C:\Users\Maurice\Desktop\Proxifier.lnk [2016.03.29 20:02:18 | 000,002,699 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk [2016.03.28 16:03:40 | 000,000,004 | ---- | C] () -- C:\Windows\SysWow64\GVTunner.ref [2016.03.23 10:18:41 | 000,000,929 | ---- | C] () -- C:\Users\Public\Desktop\DS3 Tool.lnk [2016.03.22 05:34:06 | 000,041,127 | ---- | C] () -- C:\Users\Maurice\Desktop\My Snapshot_2.jpg [2016.03.21 18:28:48 | 000,001,037 | ---- | C] () -- C:\Users\Public\Desktop\Smart Port Forwarding.lnk [2016.03.19 01:41:54 | 000,002,196 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk [2016.03.14 21:55:59 | 000,001,683 | ---- | C] () -- C:\Users\Public\Desktop\BlueStacks.lnk [2016.03.13 23:40:54 | 000,000,977 | ---- | C] () -- C:\Users\Public\Desktop\UltraISO.lnk [2016.03.13 22:56:40 | 000,001,082 | ---- | C] () -- C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk [2016.03.07 22:50:29 | 000,000,370 | ---- | C] () -- C:\Windows\SysWow64\HDJcustom.ini [2016.03.06 17:31:03 | 037,616,184 | ---- | C] () -- C:\Windows\SysWow64\nvcompiler.dll [2016.03.05 04:37:01 | 000,089,816 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat [2016.02.28 21:37:47 | 000,000,000 | -HS- | C] () -- C:\Users\Maurice\AppData\Local\LumaEmu [2016.02.28 18:39:18 | 003,894,632 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe [2016.02.20 15:43:37 | 000,000,284 | ---- | C] () -- C:\Users\Maurice\AppData\Roaming\GPU MeterV2_Settings.ini [2016.02.18 00:29:36 | 000,226,168 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe [2016.02.18 00:29:19 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe [2016.02.04 21:30:20 | 000,000,628 | ---- | C] () -- C:\Users\Maurice\AppData\Roaming\All CPU MeterV3_Settings.ini [2016.02.03 15:45:31 | 000,007,625 | ---- | C] () -- C:\Users\Maurice\AppData\Local\Resmon.ResmonCfg [2016.02.02 19:15:19 | 000,030,528 | ---- | C] () -- C:\Windows\GVTDrv64.sys [2016.02.02 18:49:09 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl [2016.02.02 01:42:29 | 001,591,896 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2016.02.02 01:35:58 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini ========== ZeroAccess Check ========== [2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2010.11.21 05:23:55 | 014,174,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2010.11.21 05:24:02 | 012,872,192 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== LOP Check ========== [2016.04.05 20:40:31 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\.mono [2016.03.05 19:32:36 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\AVAST Software [2016.02.04 19:29:39 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Awesomium [2016.04.11 13:44:53 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Battle.net [2016.04.06 07:03:13 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\DAEMON Tools Lite [2016.03.09 06:06:40 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Dev-Cpp [2016.03.31 08:28:40 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\DVDVideoSoft [2016.03.12 03:54:11 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Guild Wars 2 [2016.02.03 16:25:09 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Imperium Romanum [2016.02.03 20:06:58 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\LolClient [2016.03.09 01:18:08 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\ManyCam [2016.03.23 10:18:45 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\MotioninJoy [2016.03.04 02:26:49 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Mount&Blade Warband [2016.03.09 15:12:39 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Natural Selection 2 [2016.02.19 22:08:59 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\OBS [2016.03.05 02:26:50 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Opera Software [2016.04.05 02:38:16 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Origin [2016.03.30 18:57:53 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Proxifier [2016.02.02 19:11:31 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Riot Games [2016.04.12 12:57:58 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\Spotify [2016.04.06 07:03:14 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\TeamViewer [2016.02.02 22:53:47 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\TERA [2016.03.11 18:43:23 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\The Creative Assembly [2016.04.11 10:59:49 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\TS3Client [2016.03.14 20:46:11 | 000,000,000 | ---D | M] -- C:\Users\Maurice\AppData\Roaming\uTorrent ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 16 bytes -> C:\Windows\Temp:$DATA < End of report > |
Themen zu Booting Zeitlupe |
amd, angezeigt, auslastung, bescheid, bluestacks, brauch, dauert, geforce, gepostet, helft, hochfahren, komisch, langsam, langsamer, laufen, launch, league, leerlaufprozess, leute, minute, minuten, nvidia, problem, programme, taskmanager, ublock, virtualbox, virus, zeitlupe, öffnen |