Sorry das es kein vollscann ist aber immer wen ich die schlaufe weiter ausführe henkt sich mein pc nach einer stunde auf. er zeigt dann 15 Funde an.Seit ich den Virus habe henkt sich mein Leptop auf :C
Avira Free Antivirus
Erstellungsdatum der Reportdatei: Dienstag, 24. September 2013 17:25
Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.
Lizenznehmer : Avira Free Antivirus
Seriennummer : 0000149996-ADJIE-0000001
Plattform : Windows 7 Home Premium
Windowsversion : (Service Pack 1) [6.1.7601]
Boot Modus : Normal gebootet
Benutzername : SYSTEM
Computername : JANTHE12-PC
Versionsinformationen:
BUILD.DAT : 13.0.0.4052 55009 Bytes 29.08.2013 17:56:00
AVSCAN.EXE : 13.6.20.2100 639032 Bytes 03.09.2013 10:43:47
AVSCANRC.DLL : 13.6.20.2174 63032 Bytes 03.09.2013 10:43:47
LUKE.DLL : 13.6.20.2174 65080 Bytes 03.09.2013 10:45:05
AVSCPLR.DLL : 13.6.20.2174 92216 Bytes 03.09.2013 10:43:49
AVREG.DLL : 13.6.20.2174 250424 Bytes 03.09.2013 10:43:44
avlode.dll : 13.6.20.2174 497720 Bytes 03.09.2013 10:43:38
avlode.rdf : 13.0.1.42 26846 Bytes 27.08.2013 11:11:53
VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 11:23:30
VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 15:41:52
VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 10:23:25
VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 12:02:02
VBASE004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 10:51:57
VBASE005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 15:44:27
VBASE006.VDF : 7.11.103.230 2293248 Bytes 24.09.2013 14:02:57
VBASE007.VDF : 7.11.103.231 2048 Bytes 24.09.2013 14:02:58
VBASE008.VDF : 7.11.103.232 2048 Bytes 24.09.2013 14:02:58
VBASE009.VDF : 7.11.103.233 2048 Bytes 24.09.2013 14:02:58
VBASE010.VDF : 7.11.103.234 2048 Bytes 24.09.2013 14:02:58
VBASE011.VDF : 7.11.103.235 2048 Bytes 24.09.2013 14:02:58
VBASE012.VDF : 7.11.103.236 2048 Bytes 24.09.2013 14:02:58
VBASE013.VDF : 7.11.103.237 2048 Bytes 24.09.2013 14:02:59
VBASE014.VDF : 7.11.103.238 2048 Bytes 24.09.2013 14:02:59
VBASE015.VDF : 7.11.103.239 2048 Bytes 24.09.2013 14:02:59
VBASE016.VDF : 7.11.103.240 2048 Bytes 24.09.2013 14:02:59
VBASE017.VDF : 7.11.103.241 2048 Bytes 24.09.2013 14:02:59
VBASE018.VDF : 7.11.103.242 2048 Bytes 24.09.2013 14:03:00
VBASE019.VDF : 7.11.103.243 2048 Bytes 24.09.2013 14:03:00
VBASE020.VDF : 7.11.103.244 2048 Bytes 24.09.2013 14:03:00
VBASE021.VDF : 7.11.103.245 2048 Bytes 24.09.2013 14:03:00
VBASE022.VDF : 7.11.103.246 2048 Bytes 24.09.2013 14:03:00
VBASE023.VDF : 7.11.103.247 2048 Bytes 24.09.2013 14:03:00
VBASE024.VDF : 7.11.103.248 2048 Bytes 24.09.2013 14:03:01
VBASE025.VDF : 7.11.103.249 2048 Bytes 24.09.2013 14:03:01
VBASE026.VDF : 7.11.103.250 2048 Bytes 24.09.2013 14:03:01
VBASE027.VDF : 7.11.103.251 2048 Bytes 24.09.2013 14:03:01
VBASE028.VDF : 7.11.103.252 2048 Bytes 24.09.2013 14:03:01
VBASE029.VDF : 7.11.103.253 2048 Bytes 24.09.2013 14:03:02
VBASE030.VDF : 7.11.103.254 2048 Bytes 24.09.2013 14:03:02
VBASE031.VDF : 7.11.104.28 64512 Bytes 24.09.2013 14:03:02
Engineversion : 8.2.12.122
AEVDF.DLL : 8.1.3.4 102774 Bytes 07.06.2013 14:35:13
AESCRIPT.DLL : 8.1.4.150 516478 Bytes 23.09.2013 16:39:20
AESCN.DLL : 8.1.10.4 131446 Bytes 24.03.2013 14:54:04
AESBX.DLL : 8.2.16.26 1245560 Bytes 22.09.2013 11:32:17
AERDL.DLL : 8.2.0.128 688504 Bytes 07.06.2013 14:35:06
AEPACK.DLL : 8.3.2.28 749945 Bytes 13.09.2013 10:39:44
AEOFFICE.DLL : 8.1.2.76 205181 Bytes 07.09.2013 16:09:27
AEHEUR.DLL : 8.1.4.648 6525306 Bytes 23.09.2013 16:39:19
AEHELP.DLL : 8.1.27.6 266617 Bytes 27.08.2013 16:38:50
AEGEN.DLL : 8.1.7.14 446839 Bytes 06.09.2013 10:23:52
AEEXP.DLL : 8.4.1.62 328055 Bytes 13.09.2013 10:39:45
AEEMU.DLL : 8.1.3.2 393587 Bytes 04.07.2012 17:02:25
AECORE.DLL : 8.1.32.0 201081 Bytes 22.09.2013 11:32:15
AEBB.DLL : 8.1.1.4 53619 Bytes 16.01.2013 11:55:42
AVWINLL.DLL : 13.6.20.2174 23608 Bytes 03.09.2013 10:43:01
AVPREF.DLL : 13.6.20.2174 48184 Bytes 03.09.2013 10:43:44
AVREP.DLL : 13.6.20.2174 175672 Bytes 03.09.2013 10:43:44
AVARKT.DLL : 13.6.20.2174 258104 Bytes 03.09.2013 10:43:07
AVEVTLOG.DLL : 13.6.20.2174 165432 Bytes 03.09.2013 10:43:21
SQLITE3.DLL : 3.7.0.1 394824 Bytes 08.08.2013 13:52:31
AVSMTP.DLL : 13.6.20.2174 60472 Bytes 03.09.2013 10:43:50
NETNT.DLL : 13.6.20.2174 13368 Bytes 03.09.2013 10:45:05
RCIMAGE.DLL : 13.6.20.2174 4786744 Bytes 03.09.2013 10:43:01
RCTEXT.DLL : 13.6.20.2174 68152 Bytes 03.09.2013 10:43:02
Konfiguration für den aktuellen Suchlauf:
Job Name..............................: Vollständige Systemprüfung
Konfigurationsdatei...................: C:\program files (x86)\avira\antivir desktop\sysscan.avp
Protokollierung.......................: standard
Primäre Aktion........................: Interaktiv
Sekundäre Aktion......................: Ignorieren
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: ein
Bootsektoren..........................: C:, D:,
Durchsuche aktive Programme...........: ein
Laufende Programme erweitert..........: ein
Durchsuche Registrierung..............: ein
Suche nach Rootkits...................: ein
Integritätsprüfung von Systemdateien..: aus
Prüfe alle Dateien....................: Alle Dateien
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: erweitert
Abweichende Gefahrenkategorien........: +JOKE,
Beginn des Suchlaufs: Dienstag, 24. September 2013 17:25
Der Suchlauf über die Masterbootsektoren wird begonnen:
Masterbootsektor HD0
[INFO] Es wurde kein Virus gefunden!
Der Suchlauf über die Bootsektoren wird begonnen:
Bootsektor 'C:\'
[INFO] Es wurde kein Virus gefunden!
Bootsektor 'D:\'
[INFO] Es wurde kein Virus gefunden!
Der Suchlauf nach versteckten Objekten wird begonnen.
Versteckter Treiber
[HINWEIS] Eine Speicherveränderung wurde entdeckt, die möglicherweise zur versteckten Dateizugriffen missbraucht werden könnte.
Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '91' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '111' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '170' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '105' Modul(e) wurden durchsucht
Durchsuche Prozess 'atieclxx.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '73' Modul(e) wurden durchsucht
Durchsuche Prozess 'ASLDRSrv.exe' - '24' Modul(e) wurden durchsucht
Durchsuche Prozess 'GFNEXSrv.exe' - '14' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '80' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '71' Modul(e) wurden durchsucht
Durchsuche Prozess 'Fuel.Service.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '108' Modul(e) wurden durchsucht
Durchsuche Prozess 'CooLSrv.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'smartlogon.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'c2c_service.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSVC.EXE' - '76' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '68' Modul(e) wurden durchsucht
Durchsuche Prozess 'Dwm.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '174' Modul(e) wurden durchsucht
Durchsuche Prozess 'AmIcoSinglun64.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'RAVCpl64.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'sensorsrv.exe' - '31' Modul(e) wurden durchsucht
Durchsuche Prozess 'BatteryLife.exe' - '50' Modul(e) wurden durchsucht
Durchsuche Prozess 'ACMON.exe' - '42' Modul(e) wurden durchsucht
Durchsuche Prozess 'Dropbox.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'Boingo Wi-Fi.exe' - '53' Modul(e) wurden durchsucht
Durchsuche Prozess 'ATKOSD2.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'DMedia.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'HControlUser.exe' - '22' Modul(e) wurden durchsucht
Durchsuche Prozess 'DDMService.exe' - '31' Modul(e) wurden durchsucht
Durchsuche Prozess 'jusched.exe' - '50' Modul(e) wurden durchsucht
Durchsuche Prozess 'CLMLSvc.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'AsScrPro.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '96' Modul(e) wurden durchsucht
Durchsuche Prozess 'ACEngSvr.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'MMLoadDrv.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'AVWEBGRD.EXE' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'ControlDeck.exe' - '99' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '54' Modul(e) wurden durchsucht
Durchsuche Prozess 'alg.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '59' Modul(e) wurden durchsucht
Durchsuche Prozess 'MMLoadDrv.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '56' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmpnetwk.exe' - '120' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'avcenter.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '126' Modul(e) wurden durchsucht
Durchsuche Prozess 'vssvc.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'PresentationFontCache.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '107' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchProtocolHost.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchFilterHost.exe' - '27' Modul(e) wurden durchsucht
Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'services.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht
Results of screen317's Security Check version 0.99.73
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 10
``````````````Antivirus/Firewall Check:``````````````
Avira Desktop
Antivirus up to date! (On Access scanning
disabled!)
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware Version 1.75.0.1300
Java(TM) 6 Update 31
Java version out of Date!
Adobe Flash Player 10
Flash Player out of Date!
Adobe Reader 9
Adobe Reader out of Date!
Mozilla Firefox 21.0
Firefox out of Date!
Google Chrome 29.0.1547.66
Google Chrome 29.0.1547.76
````````Process Check: objlist.exe by Laurent````````
Avira Antivir avgnt.exe
Avira Antivir avguard.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:
````````````````````End of Log``````````````````````
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-09-2013
Ran by JanThe12 (administrator) on JANTHE12-PC on 24-09-2013 18:32:48
Running from C:\Users\JanThe12\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
() d:\Program Files (x86)\CPUCooL\CooLSrv.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Dropbox, Inc.) C:\Users\JanThe12\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Boingo Wireless, Inc.) C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(DivX, LLC) C:\Program Files (x86)\DivX\DivX Plus Web Player\DDMService.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Windows\AsScrPro.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\AI Recovery\AIRecoveryRemind.exe
(asus) C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ASUS WebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324608 2010-01-18] (Alcor Micro Corp.)
HKLM\...\Run: [Setwallpaper] - c:\programdata\SetWallpaper.cmd
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11369576 2010-08-10] (Realtek Semiconductor)
HKCU\...\Run: [uTorrent] - D:\Users\uTorrent.exe [1051984 2013-04-15] (BitTorrent Inc.)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\JanThe12\AppData\Local\Akamai\netsession_win.exe [4441920 2012-10-09] (Akamai Technologies, Inc.)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-11-18] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKLM-x32\...\Run: [UpdateLBPShortCut] - C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Boingo Wi-Fi] - C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2429 2010-11-18] ()
HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912 2010-02-05] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-01-05] (ASUS)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440 2010-07-02] ()
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1226608 2010-12-09] ()
HKLM-x32\...\Run: [DivX Download Manager] - C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe [63360 2010-12-08] (DivX, LLC)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-03] (CyberLink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUS Screen Saver Protector] - C:\Windows\AsScrPro.exe [3054136 2010-11-18] (ASUS)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
Startup: C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPUCooL.lnk
ShortcutTarget: CPUCooL.lnk -> D:\Program Files (x86)\CPUCooL\CPUCooL.exe ()
Startup: C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\JanThe12\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll No File
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
Toolbar: HKLM - No Name - !{120A8821-2BEE-4C29-BCDA-62C577781992} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll No File
Toolbar: HKLM-x32 - No Name - !{120A8821-2BEE-4C29-BCDA-62C577781992} - No File
Toolbar: HKLM-x32 - No Name - !{872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 01 %SystemRoot%\System32\mswsock.dll [232448] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\JanThe12\AppData\Roaming\Mozilla\Firefox\Profiles\p9slhnqa.default
FF NewTab: user_pref("browser.newtab.url", "");
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX OVS Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/JavaPlugin - F:\meine sachen 2\scheisse 2\bin\plugin2\npjp2.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\JanThe12\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Amazon-Icon - C:\Users\JanThe12\AppData\Roaming\Mozilla\Firefox\Profiles\p9slhnqa.default\Extensions\amazon-icon@winload.de
FF Extension: Recorder Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\{10743931-94DF-476f-A987-4391233C17A2}
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll ()
CHR Plugin: (Java Deployment Toolkit 6.0.230.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Mozilla Firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (DivX OVS Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Unity Player) - C:\Users\JanThe12\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Extension: (Google Docs) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (DivX HiQ) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_1
CHR Extension: (Skype Click to Call) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.2.0.10687_1
CHR Extension: (Amazon-Icon) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg\1.0_1
CHR Extension: (Chrome In-App Payments service) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_1
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.0.900_1
CHR Extension: (Gmail) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [ccbgjfdieajmokelnlapbedknchgenne] - C:\Users\JanThe12\AppData\Local\Temp\ccex.crx
CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\JanThe12\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx
==================== Services (Whitelisted) =================
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-31] (Akamai Technologies, Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2011-07-28] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 CPUCooLServer; d:\Program Files (x86)\CPUCooL\CooLSrv.exe [743936 2011-12-01] ()
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 npggsvc; C:\Windows\SysWow64\GameMon.des [4023760 2010-11-30] (INCA Internet Co., Ltd.)
S4 RemoteAccess; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S2 Hamachi2Svc; "F:\meine sachen 2\scheisse 2\hamachi-2.exe" -s [x]
==================== Drivers (Whitelisted) ====================
R2 AODDriver4.01; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55424 2011-06-24] (Advanced Micro Devices)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-08] (Avira Operations GmbH & Co. KG)
S3 AX88772; C:\Windows\System32\DRIVERS\ax88772.sys [79360 2011-06-01] (ASIX Electronics Corp.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [279616 2011-12-22] (DT Soft Ltd)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 NPPTNT2; C:\Windows\SysWow64\npptNT2.sys [4682 2004-12-30] (INCA Internet Co., Ltd.)
R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] ()
S3 s1018bus; C:\Windows\System32\DRIVERS\s1018bus.sys [113704 2009-03-25] (MCCI Corporation)
S3 s1018mdfl; C:\Windows\System32\DRIVERS\s1018mdfl.sys [19496 2009-03-25] (MCCI Corporation)
S3 s1018mdm; C:\Windows\System32\DRIVERS\s1018mdm.sys [153128 2009-03-25] (MCCI Corporation)
S3 s1018mgmt; C:\Windows\System32\DRIVERS\s1018mgmt.sys [133160 2009-03-25] (MCCI Corporation)
S3 s1018nd5; C:\Windows\System32\DRIVERS\s1018nd5.sys [34856 2009-03-25] (MCCI Corporation)
S3 s1018obex; C:\Windows\System32\DRIVERS\s1018obex.sys [128552 2009-03-25] (MCCI Corporation)
S3 s1018unic; C:\Windows\System32\DRIVERS\s1018unic.sys [146472 2009-03-25] (MCCI Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800192 2009-08-20] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [526392 2011-10-16] ()
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 dump_wmimmc; \??\D:\Program Files\gPotato.eu\Rappelz\GameGuard\dump_wmimmc.sys [x]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [x]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [x]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [x]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [x]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [x]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [x]
S3 NPPTNT2; \??\C:\Windows\system32\npptNT2.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-24 18:32 - 2013-09-24 18:32 - 01955802 _____ (Farbar) C:\Users\JanThe12\Downloads\FRST64.exe
2013-09-24 18:24 - 2013-09-24 18:25 - 00891144 _____ C:\Users\JanThe12\Desktop\SecurityCheck.exe
2013-09-24 16:04 - 2013-09-24 16:04 - 97531747 _____ C:\Windows\SysWOW64\悞槗Ḽ¡
2013-09-23 20:59 - 2013-09-23 20:59 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (2).exe
2013-09-23 19:58 - 2013-09-23 19:58 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (1).exe
2013-09-23 19:21 - 2013-09-23 19:21 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\CyberLink
2013-09-23 18:41 - 2013-09-23 18:41 - 98674763 _____ C:\Windows\SysWOW64\�ꀶḼW
2013-09-23 18:18 - 2013-09-23 18:18 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu.exe
2013-09-23 18:18 - 2013-09-23 18:18 - 00000000 ____D C:\Program Files (x86)\ESET
2013-09-22 21:57 - 2013-09-22 21:57 - 00026251 _____ C:\Users\JanThe12\Desktop\JRT.txt
2013-09-22 21:36 - 2013-09-22 21:36 - 00000000 ____D C:\Windows\ERUNT
2013-09-22 21:32 - 2013-09-22 21:32 - 01030038 _____ (Thisisu) C:\Users\JanThe12\Desktop\JRT.exe
2013-09-22 21:21 - 2013-09-22 21:24 - 00000000 ____D C:\AdwCleaner
2013-09-22 21:20 - 2013-09-22 21:21 - 01039554 _____ C:\Users\JanThe12\Desktop\adwcleaner.exe
2013-09-22 20:54 - 2013-09-22 20:54 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Malwarebytes
2013-09-22 20:53 - 2013-09-22 20:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-22 20:53 - 2013-09-22 20:53 - 00001075 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-22 20:53 - 2013-09-22 20:53 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-22 20:53 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-09-22 20:51 - 2013-09-22 20:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\JanThe12\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-22 15:47 - 2013-09-22 15:47 - 00032130 _____ C:\ComboFix.txt
2013-09-22 15:36 - 2013-09-22 21:13 - 00010806 _____ C:\Windows\PFRO.log
2013-09-22 15:17 - 2013-09-24 18:13 - 00088762 _____ C:\Windows\WindowsUpdate.log
2013-09-22 09:12 - 2013-09-22 09:12 - 05128554 _____ (Swearware) C:\Users\JanThe12\Downloads\ComboFix (1).exe
2013-09-22 00:41 - 2013-09-22 00:41 - 00000000 ___HD C:\Windows\PIF
2013-09-21 23:06 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-09-21 23:06 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-09-21 23:06 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-09-21 23:03 - 2013-09-22 15:47 - 00000000 ____D C:\Qoobox
2013-09-21 23:03 - 2013-09-22 15:42 - 00000000 ____D C:\Windows\erdnt
2013-09-21 22:35 - 2013-09-21 22:36 - 05128554 ____R (Swearware) C:\Users\JanThe12\Downloads\ComboFix.exe
2013-09-21 21:57 - 2013-09-21 21:58 - 00035127 _____ C:\Users\JanThe12\Downloads\Addition.txt
2013-09-21 21:53 - 2013-09-21 21:53 - 00000000 ____D C:\FRST
2013-09-21 21:16 - 2013-09-22 21:32 - 00000800 _____ C:\Users\JanThe12\Desktop\jj.txt
2013-09-21 21:16 - 2013-09-21 21:16 - 00003220 _____ C:\Users\JanThe12\Documents\Ereignisse.txt
2013-09-21 21:03 - 2013-09-21 21:03 - 00002898 _____ C:\Users\JanThe12\Desktop\Ereignisse2.txt
2013-09-21 20:55 - 2013-09-21 20:55 - 00126938 _____ C:\Users\JanThe12\Desktop\Ereignisse.txt
2013-09-21 19:50 - 2013-09-21 19:50 - 00602112 _____ (OldTimer Tools) C:\Users\JanThe12\Downloads\OTL.exe
2013-09-21 19:18 - 2013-09-21 19:18 - 00000704 _____ C:\Users\JanThe12\Desktop\CPUCooL.lnk
2013-09-21 19:18 - 2013-09-21 19:18 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CPUCooL
2013-09-21 19:05 - 2013-09-21 19:06 - 04200348 _____ C:\Users\JanThe12\Downloads\CPUCOOL9.EXE
2013-09-21 18:50 - 2013-09-24 18:13 - 00000672 _____ C:\Windows\setupact.log
2013-09-21 18:50 - 2013-09-21 18:50 - 00000000 _____ C:\Windows\setuperr.log
2013-09-21 15:58 - 2013-09-21 15:58 - 00000022 _____ C:\Users\JanThe12\Desktop\Neuer ZIP-komprimierter Ordner.zip
2013-09-21 15:29 - 2013-09-21 15:29 - 98547399 _____ C:\Windows\SysWOW64\ꮾ껴Ḽ™
2013-09-21 12:35 - 2013-09-21 12:35 - 00014274 _____ C:\Users\JanThe12\Downloads\21F75A164209ABBDD4BF05E363189B84D1947FB9.torrent
2013-09-21 09:29 - 2013-09-21 09:29 - 98498750 _____ C:\Windows\SysWOW64\㴛ᆈḼA
2013-09-20 17:46 - 2013-09-20 17:46 - 00000000 ____D C:\Users\JanThe12\Documents\Games for Windows - LIVE Demos
2013-09-20 17:44 - 2013-09-20 17:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-09-20 17:44 - 2013-09-20 17:44 - 00000000 ____D C:\Windows\SysWOW64\xlive
2013-09-20 17:40 - 2013-09-20 17:41 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-09-19 15:16 - 2013-09-19 15:16 - 00000000 ____D C:\Users\JanThe12\Documents\My Cheat Tables
2013-09-18 20:36 - 2013-08-27 02:52 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Game Dev Tycoon
2013-09-18 20:35 - 2013-09-18 20:36 - 00000000 ____D C:\Program Files (x86)\Game Dev Tycoon
2013-09-18 01:30 - 2013-09-18 01:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 01:30 - 2013-09-18 01:30 - 00000000 ____D C:\ProgramData\Mozilla
2013-09-17 19:55 - 24753-01-26 06:13 - 3199631360 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-17 16:14 - 2013-09-17 18:30 - 1404459941 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It) (1).7z
2013-09-16 17:37 - 2013-09-16 19:59 - 1199253032 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-16 15:40 - 24753-01-26 06:13 - 3148382208 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-16 13:23 - 2013-09-16 15:38 - 1415234514 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-15 15:31 - 2013-09-15 20:55 - 2003530963 _____ C:\Users\JanThe12\Downloads\Need for Speed - Underground 2 (Europe) (En,Fr,De,Es,It,Nl,Sv,Da).7z
2013-09-15 13:03 - 2013-09-15 13:03 - 00933417 _____ C:\Users\JanThe12\Downloads\WarGear V6.zip
2013-09-14 19:14 - 2013-09-14 19:14 - 00000000 ____D C:\Users\JanThe12\Documents\PCSX2
2013-09-13 17:51 - 2013-09-13 22:16 - 2372181055 _____ C:\Users\JanThe12\Downloads\Buzz! Hollywood (Europe) (Es,Pt).7z
2013-09-13 17:43 - 2013-09-13 18:43 - 392259125 _____ C:\Users\JanThe12\Downloads\Crash Bandicoot (E) (EDC) [SCES-00344].7z
2013-09-13 17:16 - 2013-09-13 17:17 - 11355145 _____ C:\Users\JanThe12\Downloads\ePSXe_1.8.0.rar
2013-09-13 15:03 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-09-13 15:03 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-09-13 15:03 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-09-13 15:03 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-09-13 15:03 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-09-13 15:03 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-09-13 15:03 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-09-13 15:03 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-09-13 15:03 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-09-13 15:02 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-09-13 14:36 - 2013-09-13 14:36 - 02994265 _____ C:\Users\JanThe12\Downloads\a_galaxy_divided_v11.1.rar
2013-09-13 14:33 - 2013-09-13 14:33 - 00850069 _____ C:\Users\JanThe12\Downloads\spacewarinland.rar
2013-09-13 14:27 - 2013-09-13 14:27 - 00071386 _____ C:\Users\JanThe12\Downloads\1vs1_critical_distance_by_soong.zip
2013-09-13 13:12 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-13 13:12 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-13 13:12 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-13 13:12 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-13 13:12 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 13:12 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-13 13:11 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-13 13:11 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-13 13:11 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-13 13:11 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-13 13:11 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-13 13:11 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-13 13:11 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-12 13:06 - 2013-09-12 13:06 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LucasArts
2013-09-12 12:32 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-12 12:32 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-09-12 12:32 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-09-12 12:32 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2013-09-12 12:32 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-12 12:32 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2013-09-12 12:32 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-12 12:32 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-09-12 12:32 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-09-12 12:32 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-12 12:32 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-09-12 12:32 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-09-12 12:32 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-12 12:32 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-12 12:31 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-12 12:31 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-09-12 12:31 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-09-11 19:08 - 2013-09-11 19:08 - 05926929 _____ C:\Users\JanThe12\Downloads\eawmapeditor.zip
2013-09-07 19:47 - 2013-09-07 19:53 - 00000000 ____D C:\Users\JanThe12\Documents\Stronghold 2
2013-09-02 22:02 - 2013-09-02 22:02 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Unity
2013-09-02 22:01 - 2013-09-02 22:01 - 00648240 _____ (Unity Technologies ApS) C:\Users\JanThe12\Downloads\UnityWebPlayer.exe
2013-09-02 15:44 - 2013-09-02 15:44 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Ston bricker (1.6) - Kopie
2013-08-31 14:03 - 2013-08-31 14:03 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon Backups
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03.zip
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03 (1).zip
2013-08-30 13:53 - 2013-08-30 13:53 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27 (1).zip
2013-08-30 13:52 - 2013-08-30 13:52 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27.zip
2013-08-29 23:44 - 2013-08-29 23:44 - 00012191 _____ C:\Users\JanThe12\Downloads\[kickass.to]need.for.speed.most.wanted.pc.cd.iso.torrent
2013-08-28 18:23 - 2013-08-28 18:23 - 00002403 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger.zip
2013-08-28 17:57 - 2013-09-21 15:45 - 00000000 ____D C:\Windows\Minidump
2013-08-28 17:29 - 2013-08-28 17:29 - 00002124 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger_ger2eng-steve.zip
2013-08-28 17:26 - 2013-08-31 14:37 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon
2013-08-28 17:20 - 2013-08-28 17:20 - 02394295 _____ C:\Users\JanThe12\Downloads\vty-nsc4.rar
2013-08-28 16:19 - 2013-08-28 16:21 - 08904704 _____ C:\Users\JanThe12\Downloads\nfsc.exe
2013-08-27 19:43 - 2013-08-27 19:43 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (2).torrent
2013-08-27 19:36 - 2013-08-27 19:36 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (1).torrent
2013-08-27 19:08 - 2013-08-27 19:08 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t.torrent
2013-08-27 18:55 - 2013-09-21 15:47 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\DAEMON Tools Lite
2013-08-27 16:35 - 2013-09-20 13:46 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\.minecraft
2013-08-27 10:08 - 2013-09-13 13:11 - 00000000 ____D C:\Windows\system32\MRT
==================== One Month Modified Files and Folders =======
24753-01-26 06:13 - 2013-09-17 19:55 - 3199631360 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
24753-01-26 06:13 - 2013-09-16 15:40 - 3148382208 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-24 18:32 - 2013-09-24 18:32 - 01955802 _____ (Farbar) C:\Users\JanThe12\Downloads\FRST64.exe
2013-09-24 18:28 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-24 18:28 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-24 18:25 - 2013-09-24 18:24 - 00891144 _____ C:\Users\JanThe12\Desktop\SecurityCheck.exe
2013-09-24 18:23 - 2013-09-22 15:17 - 00088762 _____ C:\Windows\WindowsUpdate.log
2013-09-24 18:17 - 2011-12-19 23:37 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\uTorrent
2013-09-24 18:16 - 2012-01-01 14:15 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Skype
2013-09-24 18:16 - 2011-10-30 18:00 - 00000439 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2013-09-24 18:15 - 2013-02-11 21:13 - 00000000 ___RD C:\Users\JanThe12\Dropbox
2013-09-24 18:15 - 2013-02-11 21:07 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Dropbox
2013-09-24 18:14 - 2010-11-18 03:24 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-24 18:13 - 2013-09-21 18:50 - 00000672 _____ C:\Windows\setupact.log
2013-09-24 18:13 - 2010-11-18 03:24 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-24 18:13 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-24 18:10 - 2012-05-25 22:43 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-24 17:19 - 2009-07-14 07:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-24 16:04 - 2013-09-24 16:04 - 97531747 _____ C:\Windows\SysWOW64\悞槗Ḽ¡
2013-09-23 20:59 - 2013-09-23 20:59 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (2).exe
2013-09-23 19:58 - 2013-09-23 19:58 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (1).exe
2013-09-23 19:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-09-23 19:21 - 2013-09-23 19:21 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\CyberLink
2013-09-23 18:41 - 2013-09-23 18:41 - 98674763 _____ C:\Windows\SysWOW64\�ꀶḼW
2013-09-23 18:18 - 2013-09-23 18:18 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu.exe
2013-09-23 18:18 - 2013-09-23 18:18 - 00000000 ____D C:\Program Files (x86)\ESET
2013-09-22 21:57 - 2013-09-22 21:57 - 00026251 _____ C:\Users\JanThe12\Desktop\JRT.txt
2013-09-22 21:36 - 2013-09-22 21:36 - 00000000 ____D C:\Windows\ERUNT
2013-09-22 21:32 - 2013-09-22 21:32 - 01030038 _____ (Thisisu) C:\Users\JanThe12\Desktop\JRT.exe
2013-09-22 21:32 - 2013-09-21 21:16 - 00000800 _____ C:\Users\JanThe12\Desktop\jj.txt
2013-09-22 21:24 - 2013-09-22 21:21 - 00000000 ____D C:\AdwCleaner
2013-09-22 21:24 - 2013-04-13 13:27 - 00001252 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-09-22 21:24 - 2013-01-28 00:29 - 00001003 _____ C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-09-22 21:21 - 2013-09-22 21:20 - 01039554 _____ C:\Users\JanThe12\Desktop\adwcleaner.exe
2013-09-22 21:13 - 2013-09-22 15:36 - 00010806 _____ C:\Windows\PFRO.log
2013-09-22 21:13 - 2011-01-01 19:17 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2013-09-22 20:54 - 2013-09-22 20:54 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Malwarebytes
2013-09-22 20:54 - 2013-09-22 20:53 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-22 20:53 - 2013-09-22 20:53 - 00001075 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-22 20:53 - 2013-09-22 20:53 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-22 20:52 - 2013-09-22 20:51 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\JanThe12\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-22 15:47 - 2013-09-22 15:47 - 00032130 _____ C:\ComboFix.txt
2013-09-22 15:47 - 2013-09-21 23:03 - 00000000 ____D C:\Qoobox
2013-09-22 15:47 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default
2013-09-22 15:42 - 2013-09-21 23:03 - 00000000 ____D C:\Windows\erdnt
2013-09-22 15:39 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-09-22 15:12 - 2011-01-25 21:04 - 00000000 ____D C:\Users\JanThe12\Tracing
2013-09-22 09:12 - 2013-09-22 09:12 - 05128554 _____ (Swearware) C:\Users\JanThe12\Downloads\ComboFix (1).exe
2013-09-22 00:41 - 2013-09-22 00:41 - 00000000 ___HD C:\Windows\PIF
2013-09-21 22:36 - 2013-09-21 22:35 - 05128554 ____R (Swearware) C:\Users\JanThe12\Downloads\ComboFix.exe
2013-09-21 21:58 - 2013-09-21 21:57 - 00035127 _____ C:\Users\JanThe12\Downloads\Addition.txt
2013-09-21 21:53 - 2013-09-21 21:53 - 00000000 ____D C:\FRST
2013-09-21 21:16 - 2013-09-21 21:16 - 00003220 _____ C:\Users\JanThe12\Documents\Ereignisse.txt
2013-09-21 21:03 - 2013-09-21 21:03 - 00002898 _____ C:\Users\JanThe12\Desktop\Ereignisse2.txt
2013-09-21 20:55 - 2013-09-21 20:55 - 00126938 _____ C:\Users\JanThe12\Desktop\Ereignisse.txt
2013-09-21 19:50 - 2013-09-21 19:50 - 00602112 _____ (OldTimer Tools) C:\Users\JanThe12\Downloads\OTL.exe
2013-09-21 19:19 - 2011-01-01 19:23 - 00000000 ___RD C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-09-21 19:18 - 2013-09-21 19:18 - 00000704 _____ C:\Users\JanThe12\Desktop\CPUCooL.lnk
2013-09-21 19:18 - 2013-09-21 19:18 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CPUCooL
2013-09-21 19:06 - 2013-09-21 19:05 - 04200348 _____ C:\Users\JanThe12\Downloads\CPUCOOL9.EXE
2013-09-21 18:50 - 2013-09-21 18:50 - 00000000 _____ C:\Windows\setuperr.log
2013-09-21 16:19 - 2011-01-02 19:27 - 00000000 __RHD C:\Users\JanThe12\Desktop\meine sachen
2013-09-21 16:01 - 2010-11-18 03:24 - 00000000 ____D C:\Program Files (x86)\Google
2013-09-21 15:58 - 2013-09-21 15:58 - 00000022 _____ C:\Users\JanThe12\Desktop\Neuer ZIP-komprimierter Ordner.zip
2013-09-21 15:47 - 2013-08-27 18:55 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\DAEMON Tools Lite
2013-09-21 15:47 - 2011-12-01 17:49 - 00000000 ____D C:\Users\JanThe12\AppData\Local\LogMeIn Hamachi
2013-09-21 15:45 - 2013-08-28 17:57 - 00000000 ____D C:\Windows\Minidump
2013-09-21 15:45 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther
2013-09-21 15:29 - 2013-09-21 15:29 - 98547399 _____ C:\Windows\SysWOW64\ꮾ껴Ḽ™
2013-09-21 12:35 - 2013-09-21 12:35 - 00014274 _____ C:\Users\JanThe12\Downloads\21F75A164209ABBDD4BF05E363189B84D1947FB9.torrent
2013-09-21 12:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-09-21 11:58 - 2011-01-01 23:58 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Google
2013-09-21 09:29 - 2013-09-21 09:29 - 98498750 _____ C:\Windows\SysWOW64\㴛ᆈḼA
2013-09-20 17:47 - 2012-07-16 14:10 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft Games
2013-09-20 17:46 - 2013-09-20 17:46 - 00000000 ____D C:\Users\JanThe12\Documents\Games for Windows - LIVE Demos
2013-09-20 17:45 - 2013-09-20 17:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-09-20 17:44 - 2013-09-20 17:44 - 00000000 ____D C:\Windows\SysWOW64\xlive
2013-09-20 17:41 - 2013-09-20 17:40 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-09-20 15:10 - 2012-05-25 22:43 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-09-20 15:10 - 2012-05-25 22:43 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-20 15:10 - 2012-05-25 22:43 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-09-20 13:46 - 2013-08-27 16:35 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\.minecraft
2013-09-19 15:16 - 2013-09-19 15:16 - 00000000 ____D C:\Users\JanThe12\Documents\My Cheat Tables
2013-09-18 20:36 - 2013-09-18 20:35 - 00000000 ____D C:\Program Files (x86)\Game Dev Tycoon
2013-09-18 20:17 - 2013-03-29 16:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-18 01:31 - 2013-09-18 01:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 01:30 - 2013-09-18 01:30 - 00000000 ____D C:\ProgramData\Mozilla
2013-09-17 18:30 - 2013-09-17 16:14 - 1404459941 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It) (1).7z
2013-09-16 19:59 - 2013-09-16 17:37 - 1199253032 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-16 15:38 - 2013-09-16 13:23 - 1415234514 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-15 20:55 - 2013-09-15 15:31 - 2003530963 _____ C:\Users\JanThe12\Downloads\Need for Speed - Underground 2 (Europe) (En,Fr,De,Es,It,Nl,Sv,Da).7z
2013-09-15 16:42 - 2011-01-01 19:23 - 00000000 ___RD C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-09-15 16:35 - 2009-07-14 06:45 - 00323584 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-15 13:03 - 2013-09-15 13:03 - 00933417 _____ C:\Users\JanThe12\Downloads\WarGear V6.zip
2013-09-14 19:14 - 2013-09-14 19:14 - 00000000 ____D C:\Users\JanThe12\Documents\PCSX2
2013-09-14 12:36 - 2009-08-04 11:51 - 00708494 _____ C:\Windows\system32\perfh007.dat
2013-09-14 12:36 - 2009-08-04 11:51 - 00152098 _____ C:\Windows\system32\perfc007.dat
2013-09-14 12:36 - 2009-07-14 07:13 - 01666092 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-13 22:16 - 2013-09-13 17:51 - 2372181055 _____ C:\Users\JanThe12\Downloads\Buzz! Hollywood (Europe) (Es,Pt).7z
2013-09-13 18:43 - 2013-09-13 17:43 - 392259125 _____ C:\Users\JanThe12\Downloads\Crash Bandicoot (E) (EDC) [SCES-00344].7z
2013-09-13 17:17 - 2013-09-13 17:16 - 11355145 _____ C:\Users\JanThe12\Downloads\ePSXe_1.8.0.rar
2013-09-13 14:36 - 2013-09-13 14:36 - 02994265 _____ C:\Users\JanThe12\Downloads\a_galaxy_divided_v11.1.rar
2013-09-13 14:33 - 2013-09-13 14:33 - 00850069 _____ C:\Users\JanThe12\Downloads\spacewarinland.rar
2013-09-13 14:27 - 2013-09-13 14:27 - 00071386 _____ C:\Users\JanThe12\Downloads\1vs1_critical_distance_by_soong.zip
2013-09-13 13:11 - 2013-08-27 10:08 - 00000000 ____D C:\Windows\system32\MRT
2013-09-13 13:04 - 2011-03-28 21:11 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-12 13:06 - 2013-09-12 13:06 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LucasArts
2013-09-12 13:03 - 2013-08-03 18:51 - 00000000 ____D C:\Program Files (x86)\LucasArts
2013-09-11 19:08 - 2013-09-11 19:08 - 05926929 _____ C:\Users\JanThe12\Downloads\eawmapeditor.zip
2013-09-07 19:53 - 2013-09-07 19:47 - 00000000 ____D C:\Users\JanThe12\Documents\Stronghold 2
2013-09-06 01:14 - 2011-01-01 19:17 - 00070336 _____ C:\Users\JanThe12\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-05 14:01 - 2013-08-24 17:55 - 00000328 _____ C:\Users\JanThe12\Desktop\Neues Textdokument.txt
2013-09-03 12:45 - 2013-08-13 17:21 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-09-03 12:45 - 2013-08-13 17:16 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-09-03 12:45 - 2013-08-13 17:16 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-09-02 22:02 - 2013-09-02 22:02 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Unity
2013-09-02 22:01 - 2013-09-02 22:01 - 00648240 _____ (Unity Technologies ApS) C:\Users\JanThe12\Downloads\UnityWebPlayer.exe
2013-09-02 15:44 - 2013-09-02 15:44 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Ston bricker (1.6) - Kopie
2013-08-31 14:37 - 2013-08-28 17:26 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon
2013-08-31 14:03 - 2013-08-31 14:03 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon Backups
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03.zip
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03 (1).zip
2013-08-30 13:53 - 2013-08-30 13:53 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27 (1).zip
2013-08-30 13:52 - 2013-08-30 13:52 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27.zip
2013-08-29 23:44 - 2013-08-29 23:44 - 00012191 _____ C:\Users\JanThe12\Downloads\[kickass.to]need.for.speed.most.wanted.pc.cd.iso.torrent
2013-08-28 18:23 - 2013-08-28 18:23 - 00002403 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger.zip
2013-08-28 17:56 - 2011-08-01 14:31 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2013-08-28 17:29 - 2013-08-28 17:29 - 00002124 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger_ger2eng-steve.zip
2013-08-28 17:20 - 2013-08-28 17:20 - 02394295 _____ C:\Users\JanThe12\Downloads\vty-nsc4.rar
2013-08-28 16:53 - 2011-01-01 21:35 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-08-28 16:21 - 2013-08-28 16:19 - 08904704 _____ C:\Users\JanThe12\Downloads\nfsc.exe
2013-08-27 19:43 - 2013-08-27 19:43 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (2).torrent
2013-08-27 19:36 - 2013-08-27 19:36 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (1).torrent
2013-08-27 19:08 - 2013-08-27 19:08 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t.torrent
2013-08-27 10:07 - 2011-08-04 23:16 - 01621994 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-08-27 02:52 - 2013-09-18 20:36 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Game Dev Tycoon
ZeroAccess:
C:\Windows\assembly\GAC_32\Desktop.ini
ZeroAccess:
C:\Windows\assembly\GAC_64\Desktop.ini
Some content of TEMP:
====================
C:\Users\JanThe12\AppData\Local\Temp\Quarantine.exe
C:\Users\JanThe12\AppData\Local\Temp\utt114E.tmp.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-01 21:04
==================== End Of Log ============================
--- --- ---
--- --- ---