KaptainBollo | 17.12.2013 21:00 | AdwCleaner:
AdwCleaner Logfile: Code:
# AdwCleaner v3.015 - Bericht erstellt am 17/12/2013 um 20:43:11
# Updated 10/12/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : PC - PC-PC
# Gestartet von : C:\Users\PC\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro v3.2
Ordner Gelöscht : C:\Program Files (x86)\SweetIM
Ordner Gelöscht : C:\Users\PC\AppData\LocalLow\boost_interprocess
Ordner Gelöscht : C:\Users\PC\AppData\Roaming\OpenCandy
Ordner Gelöscht : C:\Users\PC\AppData\Roaming\pdfforge
Ordner Gelöscht : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default\SweetPacksToolbarData
Datei Gelöscht : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default\Extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
Datei Gelöscht : C:\Users\Public\Desktop\Open It!.lnk
Datei Gelöscht : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default\searchplugins\SweetIm.xml
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_splan_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_splan_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Schlüssel Gelöscht : HKCU\Software\IGearSettings
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\Software\InstallCore
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OpenIt Open It!
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\B6EF34C0188ECFA43B48A4BE9C00748E
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\B6EF34C0188ECFA43B48A4BE9C00748E
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v16.0.2 (de)
[ Datei : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default\prefs.js ]
Zeile gelöscht : user_pref("browser.search.defaultenginename", "AVG Secure Search");
Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.VisibilityGuardLastUnHide", "0");
Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.intervaldays", "7");
Zeile gelöscht : user_pref("sweetim.toolbar.cargo", "3.1010000.10025");
Zeile gelöscht : user_pref("sweetim.toolbar.cda.DisableOveride.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.cda.HideOveride.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.cda.RemoveOveride.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.cda.returnValue", "disable");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.handler", "chrome://sim_toolbar_package/content/optionsdialog-handler.js");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.height", "335");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.id", "id_options_dialog");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.title", "$string.config.label;");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.url", "hxxp://www.sweetim.com/simffbar/options_remote_ff_1_6.html");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.width", "761");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.handler", "chrome://sim_toolbar_package/content/exampledialog-handler.js");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.height", "300");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.id", "id_example_dialog");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.title", "Example (unit-test) dialog");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.url", "chrome://sim_toolbar_package/content/exampledialog.html");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.width", "500");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.handler", "chrome://sim_toolbar_package/content/cdadialog-handler.js");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.height", "150");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.id", "id_dialog_hide_disable_remove");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.title", "Option Dialog");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.url", "hxxp://www.sweetim.com/simffbar/simcdadialog.asp");
Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.width", "530");
Zeile gelöscht : user_pref("sweetim.toolbar.dnscatch.domain-blacklist", ".*.sweetim.com/.*|.*.facebook.com/.*|.*.google.com/.*|.*.google.co.in/.*|.*.google.com.br/.*|.*.google.es/.*|.*.youtube.com/.*|.*.yahoo.com/.*|.[...]
Zeile gelöscht : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
Zeile gelöscht : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
Zeile gelöscht : user_pref("sweetim.toolbar.mode.debug", "false");
Zeile gelöscht : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.sweetim.com/search.asp?src=2&q=");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.addcontextdiv", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.callback", "simVerification");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.domain-blacklist", "");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.domain-whitelist", "hxxp://(www.|apps.)?facebook\\.com.*");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.elementid", "id_script_sim_fb");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.enable", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.id", "id_script_fb");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.url", "hxxp://sc.sweetim.com/apps/in/fb/infb.js");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.addcontextdiv", "true");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.callback", "simVerification");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.domain-whitelist", "hxxps://(www.|apps.)?facebook\\.com.*");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.elementid", "id_script_sim_fb");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.enable", "false");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.id", "id_script_fb_hxxpS");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.url", "hxxps://sc.sweetim.com/apps/in/fb/infb.js");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.addcontextdiv", "false");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.callback", "");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.domain-blacklist", ".*.google..*|.*.bing..*|.*.live..*|.*.msn..*|.*.yahoo..*|.*.youtube.com.*|.*ask.com.*|.*.sweetim.com.*");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.domain-whitelist", "");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.elementid", "id_predict_include_script");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.enable", "false");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.id", "id_script_prad");
Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.url", "hxxp://cdn1.certified-apps.com/scripts/shared/enable.js?si=3104&tid=chff1");
Zeile gelöscht : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
Zeile gelöscht : user_pref("sweetim.toolbar.search.history.capacity", "10");
Zeile gelöscht : user_pref("sweetim.toolbar.simapp_id", "{02A51064-29F2-11E2-9FD3-F46D04534B53}");
Zeile gelöscht : user_pref("sweetim.toolbar.version", "1.6.0.3");
-\\ Google Chrome v31.0.1650.63
[ Datei : C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [12408 octets] - [17/12/2013 20:42:46]
AdwCleaner[S0].txt - [11828 octets] - [17/12/2013 20:43:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11889 octets] ########## --- --- ---
[/CODE]
FRST: Code:
can result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-12-2013 02
Ran by PC (administrator) on PC-PC on 17-12-2013 20:50:47
Running from C:\Users\PC\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(DTS) C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe
() C:\Program Files (x86)\Hardcopy\hcdll2_ex_Win32.exe
() C:\Program Files (x86)\Hardcopy\hcdll2_ex_x64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) D:\Steam\Steam.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(3M) C:\Program Files (x86)\3M\PSNLite\PsnLite.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(sw4you, Siegfried Weckmann) C:\Program Files (x86)\Hardcopy\hardcopy.exe
() C:\Program Files (x86)\Razer\Diamondback\Razer\Diamondback\razerhid.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(3M) C:\Program Files (x86)\3M\PSNLite\PSNGive.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
() C:\Program Files (x86)\Razer\Diamondback\Razer\Diamondback\razertra.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Diamondback\Razer\Diamondback\razerofa.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12558440 2011-08-02] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-08-02] (Realtek Semiconductor)
HKCU\...\Run: [Steam] - D:\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BrStsMon00] - C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-06-10] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Diamondback] - C:\Program Files (x86)\Razer\Diamondback\Razer\Diamondback\razerhid.exe [226816 2009-10-09] ()
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-11-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-10-23] (APN)
HKU\UpdatusUser\...\Run: [ROC_JAN2013_TB] - "C:\Program Files (x86)\AVG Secure Search\ROC_JAN2013_TB.exe" /PROMPT /CMPID=JAN2013_TB
Startup: C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hardcopy.LNK
ShortcutTarget: Hardcopy.LNK -> C:\Program Files (x86)\Hardcopy\hardcopy.exe (sw4you, Siegfried Weckmann)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO-x32: SwissAcademic.Citavi.Picker.IEPicker - {609D670F-B735-4da7-AC6D-F3BD358E325E} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{8168F9CA-8118-43EF-A9CF-9DEF6EDDB317}: [NameServer]80.69.100.174,80.69.100.198
FireFox:
========
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.7.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.7.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.116.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.116.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=2.1.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.2\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @live.heroesandgenerals.com/npretox - D:\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: toolbar_AVIRA-V7 - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\3j0x17cc.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
FF HKLM-x32\...\Firefox\Extensions: [{33044118-6597-4D2F-ABEA-7974BB185379}] - C:\Users\PC\AppData\Roaming\16001.008
FF HKLM-x32\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF HKCU\...\Firefox\Extensions: [{33044118-6597-4D2F-ABEA-7974BB185379}] - C:\Users\PC\AppData\Roaming\16001.008
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchKeyword: google.de
CHR DefaultSearchProvider: Google
CHR DefaultSearchURL: {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\20.0.1132.47\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\1.116.0\npesnlaunch.dll No File
CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File
CHR Plugin: (ESN Sonar API) - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\11.1.0\\npsitesafety.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0
CHR Extension: (Gmail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0
CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-11-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1164360 2013-11-27] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-10-23] (APN LLC.)
S4 btwdins; C:\Program Files (x86)\WIDCOMM\Bluetooth Software\bin\btwdins.exe [135168 2003-09-15] (WIDCOMM, Inc.)
R2 DTSAudioService; C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe [210024 2011-08-02] (DTS)
S4 FileOpenManagerService; C:\Program Files\FileOpen\Services\FileOpenManagerService64.exe [335288 2012-11-07] (FileOpen Systems Inc.)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [398184 2012-12-14] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [682344 2012-12-14] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29178224 2007-02-10] (Microsoft Corporation)
S4 msvsmon90; C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe [4466688 2007-11-08] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-02-21] ()
S4 SkypeUpdate; C:\Users\PC\Desktop\Updater\Updater.exe [x]
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [107416 2013-12-05] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [37720 2013-01-22] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132600 2013-11-27] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-27] (Avira Operations GmbH & Co. KG)
S0 BTKRNL; C:\Windows\SysWow64\drivers\btkrnl.sys [1257418 2003-09-15] (WIDCOMM, Inc.)
S2 BTSERIAL; C:\Windows\SysWow64\drivers\btserial.sys [22183 2003-09-15] ()
S2 BTSLBCSP; C:\Windows\SysWow64\drivers\btslbcsp.sys [222876 2003-09-15] (WIDCOMM, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-29] (DT Soft Ltd)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [24176 2012-12-14] (Malwarebytes Corporation)
R3 Razerlow; C:\Windows\System32\drivers\Razerlow.sys [21120 2005-11-07] (Razer (Asia-Pacific) Pte Ltd)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 MSICDSetup; \??\E:\CDriver64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-17 20:50 - 2013-12-17 20:50 - 01928214 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2013-12-17 20:50 - 2013-12-17 20:50 - 00019425 _____ C:\Users\PC\Downloads\FRST.txt
2013-12-17 20:47 - 2013-12-17 20:47 - 00011998 _____ C:\Users\PC\Desktop\AdwCleaner[S0].txt
2013-12-17 20:42 - 2013-12-17 20:43 - 00000000 ____D C:\AdwCleaner
2013-12-17 20:42 - 2013-12-17 20:42 - 01226750 _____ C:\Users\PC\Downloads\adwcleaner.exe
2013-12-17 20:41 - 2013-12-17 20:41 - 00114917 _____ C:\Users\PC\Desktop\ComboFix.txt
2013-12-17 20:40 - 2013-12-17 20:40 - 00114917 _____ C:\ComboFix.txt
2013-12-17 20:29 - 2013-12-17 20:30 - 05155004 ____R (Swearware) C:\Users\PC\Desktop\ComboFix.exe
2013-12-16 23:15 - 2013-08-02 14:10 - 263978477 _____ C:\Users\PC\Desktop\Revenge.S02E11.DVDRip.X264-DEMAND.mkv
2013-12-16 23:03 - 2013-12-16 23:04 - 52166494 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part3.rar
2013-12-16 23:03 - 2013-12-16 23:04 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part2.rar
2013-12-16 23:03 - 2013-12-16 23:04 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part1.rar
2013-12-16 20:57 - 2013-12-17 20:36 - 00000000 ____D C:\Users\PC\AppData\Local\MoboGenie
2013-12-16 09:41 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-12-16 09:41 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-12-16 09:41 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-12-16 09:41 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-12-16 09:41 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-12-16 09:41 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-12-16 09:41 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-12-16 09:41 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-12-16 09:40 - 2013-12-17 20:40 - 00000000 ____D C:\Qoobox
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Windows\SysWOW64\%LOCALAPPDATA%
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Users\Default\AppData\Local\DriverTuner
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Users\Default User\AppData\Local\DriverTuner
2013-12-16 09:19 - 2013-12-17 20:37 - 00000000 ____D C:\Windows\erdnt
2013-12-15 16:20 - 2013-12-15 16:20 - 00000000 ____D C:\FRST
2013-12-15 16:17 - 2013-12-17 00:09 - 00000550 _____ C:\Users\PC\daemonprocess.txt
2013-12-15 16:17 - 2013-12-15 16:17 - 00000000 ____D C:\Users\wangzhisong\AppData\Local\Mobogenie
2013-12-15 16:17 - 2013-12-15 16:17 - 00000000 ____D C:\Users\wangzhisong
2013-12-15 15:15 - 2013-12-16 09:24 - 95025368 ____T C:\ProgramData\lfbbn7vo.fee
2013-12-15 15:15 - 2013-12-16 09:24 - 00000000 _____ C:\ProgramData\lfbbn7vo.odd
2013-12-15 11:06 - 2013-08-02 14:10 - 262733195 _____ C:\Users\PC\Desktop\Revenge.S02E10.DVDRip.X264-DEMAND.mkv
2013-12-15 11:05 - 2013-12-15 11:06 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part2.rar
2013-12-15 11:05 - 2013-12-15 11:05 - 50921214 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part3.rar
2013-12-15 11:05 - 2013-12-15 11:05 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part1.rar
2013-12-15 01:49 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-15 01:49 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-15 01:49 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-15 01:49 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-15 01:49 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-15 01:49 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-15 01:49 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-15 01:49 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-15 01:49 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-15 01:49 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-15 01:49 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-15 01:49 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-15 01:49 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-15 01:48 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-15 01:48 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-15 01:48 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-15 01:48 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-15 01:48 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-15 01:48 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-15 01:48 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-15 01:48 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-15 01:48 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-15 01:48 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-15 01:48 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-15 01:48 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-15 01:48 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-15 01:48 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-15 01:48 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-15 01:48 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-15 01:48 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-15 01:48 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-14 14:53 - 2013-08-02 14:10 - 306323362 _____ C:\Users\PC\Desktop\Revenge.S02E09.DVDRip.X264-DEMAND.mkv
2013-12-14 14:40 - 2013-12-14 14:41 - 94511390 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part3.rar
2013-12-14 14:40 - 2013-12-14 14:41 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part2.rar
2013-12-14 14:40 - 2013-12-14 14:40 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part1.rar
2013-12-14 14:39 - 2013-12-13 06:23 - 00000000 ____D C:\Users\PC\Desktop\BBT.711
2013-12-14 14:34 - 2013-12-14 14:35 - 163705916 _____ C:\Users\PC\Downloads\BBT.711.rar
2013-12-14 03:02 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-12-14 03:01 - 2013-12-14 03:01 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-14 03:01 - 2013-12-14 03:01 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-14 03:00 - 2013-12-14 03:02 - 00012105 _____ C:\Windows\IE11_main.log
2013-12-14 03:00 - 2013-12-14 03:00 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-12-14 03:00 - 2013-12-14 03:00 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-14 03:00 - 2013-12-14 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-14 03:00 - 2013-12-14 03:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-14 03:00 - 2013-12-14 03:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-14 03:00 - 2013-12-14 03:00 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-14 03:00 - 2013-12-14 03:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-14 03:00 - 2013-12-14 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-12-13 15:29 - 2013-12-13 15:30 - 51593246 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part3.rar
2013-12-13 15:29 - 2013-12-13 15:30 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part2.rar
2013-12-13 15:29 - 2013-12-13 15:30 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part1.rar
2013-12-13 14:42 - 2013-12-13 14:43 - 81710990 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part3.rar
2013-12-13 14:42 - 2013-12-13 14:43 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part2.rar
2013-12-13 14:42 - 2013-12-13 14:43 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part1.rar
2013-12-13 13:51 - 2013-12-13 13:53 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part2.rar
2013-12-13 13:51 - 2013-12-13 13:53 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part1.rar
2013-12-13 13:51 - 2013-12-13 13:52 - 87624718 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part3.rar
2013-12-12 22:23 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-12 22:23 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-12 22:23 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-12 22:23 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-12 22:23 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-12 22:23 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-12 22:23 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-12 22:23 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-12 22:23 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-12 22:23 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-12 22:23 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-12 22:23 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-12 22:23 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-12 22:23 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-12 22:23 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-10 21:39 - 2013-12-10 21:40 - 98391374 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part3.rar
2013-12-10 21:39 - 2013-12-10 21:40 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part2.rar
2013-12-10 21:39 - 2013-12-10 21:39 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part1.rar
2013-12-08 23:53 - 2013-12-08 23:55 - 101297598 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part3.rar
2013-12-08 23:53 - 2013-12-08 23:54 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part2.rar
2013-12-08 23:53 - 2013-12-08 23:54 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part1.rar
2013-12-08 17:10 - 2013-12-08 17:11 - 65834814 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part3.rar
2013-12-08 17:10 - 2013-12-08 17:11 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part2.rar
2013-12-08 17:10 - 2013-12-08 17:11 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part1.rar
2013-12-08 16:23 - 2013-12-08 16:24 - 64780094 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part3.rar
2013-12-08 16:23 - 2013-12-08 16:24 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part2.rar
2013-12-08 16:23 - 2013-12-08 16:24 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part1.rar
2013-12-08 15:36 - 2013-12-08 15:36 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part1.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 23528008 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part4.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part3.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part2.rar
2013-12-08 14:47 - 2013-12-08 14:48 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part3.rar
2013-12-08 14:47 - 2013-12-08 14:48 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part2.rar
2013-12-08 14:47 - 2013-12-08 14:48 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part1.rar
2013-12-08 14:47 - 2013-12-08 14:47 - 62187292 _____ C:\Users\PC\Downloads\drc13.106.xvd.part4.rar
2013-12-06 21:32 - 2013-12-06 21:32 - 00000000 ____D C:\Users\PC\AppData\Local\Ubisoft
2013-12-06 21:07 - 2013-12-06 21:07 - 00000000 ____D C:\Users\PC\Documents\Keys
2013-12-06 14:42 - 2013-12-06 14:44 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S01E21.DVDRip.XviD-DEMAND.part3.rar
2013-12-06 14:06 - 2013-12-06 14:06 - 12764794 _____ C:\Users\PC\Downloads\Methoden der Elektrotechnik(2).pptx
2013-12-03 15:12 - 2013-12-03 15:13 - 182279484 _____ C:\Users\PC\Downloads\HMM.912.rar
2013-12-01 15:24 - 2013-12-01 15:27 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part1.rar
2013-12-01 15:24 - 2013-12-01 15:26 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part3.rar
2013-12-01 15:24 - 2013-12-01 15:26 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part2.rar
2013-12-01 15:24 - 2013-12-01 15:25 - 72272548 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part4.rar
2013-12-01 15:24 - 2013-12-01 15:24 - 00000000 ____D C:\ProgramData\Firefly Studios
2013-12-01 15:22 - 2013-12-01 15:22 - 00001327 _____ C:\Users\Public\Desktop\Stronghold Kingdoms.lnk
2013-12-01 15:21 - 2013-12-01 15:21 - 20678312 _____ (Firefly Studios ) C:\Users\PC\Downloads\StrongholdKingdoms-Setup.exe
2013-11-30 14:28 - 2013-11-30 14:29 - 106954752 _____ C:\Users\PC\Downloads\drc13.105.264.part2.rar
2013-11-30 14:28 - 2013-11-30 14:29 - 106954752 _____ C:\Users\PC\Downloads\drc13.105.264.part1.rar
2013-11-30 14:28 - 2013-11-30 14:28 - 54536468 _____ C:\Users\PC\Downloads\drc13.105.264.part3.rar
2013-11-25 20:34 - 2013-11-25 20:36 - 105906176 _____ C:\Users\PC\Downloads\afg-homeland-xv-309.part1.rar
2013-11-17 18:15 - 2013-11-17 18:15 - 02434286 _____ C:\Users\PC\Downloads\Phasenanschnittsteuerung(1).xlsx
==================== One Month Modified Files and Folders =======
2013-12-17 20:50 - 2013-12-17 20:50 - 01928214 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2013-12-17 20:50 - 2013-12-17 20:50 - 00019425 _____ C:\Users\PC\Downloads\FRST.txt
2013-12-17 20:50 - 2010-11-21 07:50 - 00754448 _____ C:\Windows\system32\perfh007.dat
2013-12-17 20:50 - 2010-11-21 07:50 - 00172420 _____ C:\Windows\system32\perfc007.dat
2013-12-17 20:50 - 2009-07-14 06:13 - 01763624 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-17 20:47 - 2013-12-17 20:47 - 00011998 _____ C:\Users\PC\Desktop\AdwCleaner[S0].txt
2013-12-17 20:47 - 2012-04-05 10:18 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-17 20:44 - 2011-10-11 09:41 - 00000000 ____D C:\ProgramData\NVIDIA
2013-12-17 20:44 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-17 20:44 - 2009-07-14 05:51 - 00151709 _____ C:\Windows\setupact.log
2013-12-17 20:43 - 2013-12-17 20:42 - 00000000 ____D C:\AdwCleaner
2013-12-17 20:43 - 2011-11-10 17:23 - 01268260 _____ C:\Windows\WindowsUpdate.log
2013-12-17 20:43 - 2009-07-14 05:45 - 00032352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-17 20:43 - 2009-07-14 05:45 - 00032352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-17 20:42 - 2013-12-17 20:42 - 01226750 _____ C:\Users\PC\Downloads\adwcleaner.exe
2013-12-17 20:42 - 2012-04-03 15:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-17 20:41 - 2013-12-17 20:41 - 00114917 _____ C:\Users\PC\Desktop\ComboFix.txt
2013-12-17 20:40 - 2013-12-17 20:40 - 00114917 _____ C:\ComboFix.txt
2013-12-17 20:40 - 2013-12-16 09:40 - 00000000 ____D C:\Qoobox
2013-12-17 20:39 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-12-17 20:38 - 2010-11-21 04:47 - 00096754 _____ C:\Windows\PFRO.log
2013-12-17 20:37 - 2013-12-16 09:19 - 00000000 ____D C:\Windows\erdnt
2013-12-17 20:37 - 2011-11-10 17:25 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-17 20:36 - 2013-12-16 20:57 - 00000000 ____D C:\Users\PC\AppData\Local\MoboGenie
2013-12-17 20:30 - 2013-12-17 20:29 - 05155004 ____R (Swearware) C:\Users\PC\Desktop\ComboFix.exe
2013-12-17 00:09 - 2013-12-15 16:17 - 00000550 _____ C:\Users\PC\daemonprocess.txt
2013-12-16 23:13 - 2012-04-05 10:18 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-16 23:04 - 2013-12-16 23:03 - 52166494 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part3.rar
2013-12-16 23:04 - 2013-12-16 23:03 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part2.rar
2013-12-16 23:04 - 2013-12-16 23:03 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E11.DVD.X264-DEMAND.part1.rar
2013-12-16 09:49 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Windows\SysWOW64\%LOCALAPPDATA%
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Users\Default\AppData\Local\DriverTuner
2013-12-16 09:40 - 2013-12-16 09:40 - 00000000 ____D C:\Users\Default User\AppData\Local\DriverTuner
2013-12-16 09:39 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-12-16 09:24 - 2013-12-15 15:15 - 95025368 ____T C:\ProgramData\lfbbn7vo.fee
2013-12-16 09:24 - 2013-12-15 15:15 - 00000000 _____ C:\ProgramData\lfbbn7vo.odd
2013-12-16 09:18 - 2012-10-27 12:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-15 16:20 - 2013-12-15 16:20 - 00000000 ____D C:\FRST
2013-12-15 16:17 - 2013-12-15 16:17 - 00000000 ____D C:\Users\wangzhisong\AppData\Local\Mobogenie
2013-12-15 16:17 - 2013-12-15 16:17 - 00000000 ____D C:\Users\wangzhisong
2013-12-15 16:17 - 2011-11-10 17:24 - 00000000 ____D C:\Users\PC
2013-12-15 11:06 - 2013-12-15 11:05 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part2.rar
2013-12-15 11:05 - 2013-12-15 11:05 - 50921214 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part3.rar
2013-12-15 11:05 - 2013-12-15 11:05 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E10.DVD.X264-DEMAND.part1.rar
2013-12-14 15:58 - 2013-08-14 23:49 - 00000000 ____D C:\Windows\system32\MRT
2013-12-14 15:57 - 2011-04-27 12:44 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-14 14:41 - 2013-12-14 14:40 - 94511390 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part3.rar
2013-12-14 14:41 - 2013-12-14 14:40 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part2.rar
2013-12-14 14:40 - 2013-12-14 14:40 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E09.DVD.X264-DEMAND.part1.rar
2013-12-14 14:35 - 2013-12-14 14:34 - 163705916 _____ C:\Users\PC\Downloads\BBT.711.rar
2013-12-14 12:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-12-14 11:49 - 2011-11-10 17:25 - 00001434 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-14 04:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-12-14 03:02 - 2013-12-14 03:00 - 00012105 _____ C:\Windows\IE11_main.log
2013-12-14 03:01 - 2013-12-14 03:01 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-14 03:01 - 2013-12-14 03:01 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-12-14 03:00 - 2013-12-14 03:00 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-14 03:00 - 2013-12-14 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-14 03:00 - 2013-12-14 03:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-14 03:00 - 2013-12-14 03:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-14 03:00 - 2013-12-14 03:00 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-14 03:00 - 2013-12-14 03:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-14 03:00 - 2013-12-14 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-12-14 03:00 - 2013-12-14 03:00 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-12-14 03:00 - 2013-12-14 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-12-13 15:30 - 2013-12-13 15:29 - 51593246 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part3.rar
2013-12-13 15:30 - 2013-12-13 15:29 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part2.rar
2013-12-13 15:30 - 2013-12-13 15:29 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E08.DVD.X264-DEMAND.part1.rar
2013-12-13 14:43 - 2013-12-13 14:42 - 81710990 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part3.rar
2013-12-13 14:43 - 2013-12-13 14:42 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part2.rar
2013-12-13 14:43 - 2013-12-13 14:42 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E07.DVD.X264-DEMAND.part1.rar
2013-12-13 13:53 - 2013-12-13 13:51 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part2.rar
2013-12-13 13:53 - 2013-12-13 13:51 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part1.rar
2013-12-13 13:52 - 2013-12-13 13:51 - 87624718 _____ C:\Users\PC\Downloads\Revenge.S02E06.DVD.X264-DEMAND.part3.rar
2013-12-13 10:33 - 2009-07-14 05:45 - 00330856 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-13 06:23 - 2013-12-14 14:39 - 00000000 ____D C:\Users\PC\Desktop\BBT.711
2013-12-10 21:40 - 2013-12-10 21:39 - 98391374 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part3.rar
2013-12-10 21:40 - 2013-12-10 21:39 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part2.rar
2013-12-10 21:39 - 2013-12-10 21:39 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E05.DVD.X264-DEMAND.part1.rar
2013-12-10 20:42 - 2012-04-03 15:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-10 20:42 - 2012-04-03 15:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-10 20:42 - 2011-11-11 01:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-08 23:55 - 2013-12-08 23:53 - 101297598 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part3.rar
2013-12-08 23:54 - 2013-12-08 23:53 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part2.rar
2013-12-08 23:54 - 2013-12-08 23:53 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E04.DVD.X264-DEMAND.part1.rar
2013-12-08 17:11 - 2013-12-08 17:10 - 65834814 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part3.rar
2013-12-08 17:11 - 2013-12-08 17:10 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part2.rar
2013-12-08 17:11 - 2013-12-08 17:10 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E03.DVD.X264-DEMAND.part1.rar
2013-12-08 16:24 - 2013-12-08 16:23 - 64780094 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part3.rar
2013-12-08 16:24 - 2013-12-08 16:23 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part2.rar
2013-12-08 16:24 - 2013-12-08 16:23 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E02.DVD.X264-DEMAND.part1.rar
2013-12-08 15:36 - 2013-12-08 15:36 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part1.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 23528008 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part4.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part3.rar
2013-12-08 15:35 - 2013-12-08 15:35 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S02E01.DVD.X264-DEMAND.part2.rar
2013-12-08 14:48 - 2013-12-08 14:47 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part3.rar
2013-12-08 14:48 - 2013-12-08 14:47 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part2.rar
2013-12-08 14:48 - 2013-12-08 14:47 - 106954752 _____ C:\Users\PC\Downloads\drc13.106.xvd.part1.rar
2013-12-08 14:47 - 2013-12-08 14:47 - 62187292 _____ C:\Users\PC\Downloads\drc13.106.xvd.part4.rar
2013-12-07 22:18 - 2013-11-14 09:44 - 00001984 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-12-06 21:32 - 2013-12-06 21:32 - 00000000 ____D C:\Users\PC\AppData\Local\Ubisoft
2013-12-06 21:12 - 2012-05-13 15:58 - 00000000 ____D C:\Users\PC\Documents\Literatur
2013-12-06 21:11 - 2012-05-13 08:55 - 00000000 ____D C:\Users\PC\Documents\Wohnung
2013-12-06 21:11 - 2012-03-26 13:23 - 00000000 ____D C:\Users\PC\Documents\Studium
2013-12-06 21:07 - 2013-12-06 21:07 - 00000000 ____D C:\Users\PC\Documents\Keys
2013-12-06 21:06 - 2013-10-04 23:09 - 00000000 ____D C:\Users\PC\Documents\Methoden
2013-12-06 14:44 - 2013-12-06 14:42 - 105906176 _____ C:\Users\PC\Downloads\Revenge.S01E21.DVDRip.XviD-DEMAND.part3.rar
2013-12-06 14:06 - 2013-12-06 14:06 - 12764794 _____ C:\Users\PC\Downloads\Methoden der Elektrotechnik(2).pptx
2013-12-05 20:39 - 2013-08-11 13:38 - 00107416 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-03 15:13 - 2013-12-03 15:12 - 182279484 _____ C:\Users\PC\Downloads\HMM.912.rar
2013-12-01 15:27 - 2013-12-01 15:24 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part1.rar
2013-12-01 15:26 - 2013-12-01 15:24 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part3.rar
2013-12-01 15:26 - 2013-12-01 15:24 - 105906176 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part2.rar
2013-12-01 15:25 - 2013-12-01 15:24 - 72272548 _____ C:\Users\PC\Downloads\srangoonrd-101-x64.part4.rar
2013-12-01 15:24 - 2013-12-01 15:24 - 00000000 ____D C:\ProgramData\Firefly Studios
2013-12-01 15:22 - 2013-12-01 15:22 - 00001327 _____ C:\Users\Public\Desktop\Stronghold Kingdoms.lnk
2013-12-01 15:22 - 2013-08-14 22:25 - 00000000 ____D C:\Program Files (x86)\Firefly Studios
2013-12-01 15:22 - 2011-04-27 13:40 - 00244396 _____ C:\Windows\DirectX.log
2013-12-01 15:21 - 2013-12-01 15:21 - 20678312 _____ (Firefly Studios ) C:\Users\PC\Downloads\StrongholdKingdoms-Setup.exe
2013-11-30 14:29 - 2013-11-30 14:28 - 106954752 _____ C:\Users\PC\Downloads\drc13.105.264.part2.rar
2013-11-30 14:29 - 2013-11-30 14:28 - 106954752 _____ C:\Users\PC\Downloads\drc13.105.264.part1.rar
2013-11-30 14:28 - 2013-11-30 14:28 - 54536468 _____ C:\Users\PC\Downloads\drc13.105.264.part3.rar
2013-11-27 21:36 - 2013-08-11 13:38 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-11-27 21:36 - 2013-08-11 13:38 - 00083160 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-11-27 21:36 - 2013-08-11 13:38 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-11-26 12:54 - 2013-12-15 01:48 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-26 11:19 - 2013-12-15 01:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-26 11:18 - 2013-12-15 01:49 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-26 11:11 - 2013-12-15 01:48 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-26 10:48 - 2013-12-15 01:49 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-26 10:46 - 2013-12-15 01:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-26 10:41 - 2013-12-15 01:48 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-26 10:29 - 2013-12-15 01:49 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-26 10:27 - 2013-12-15 01:49 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-26 10:23 - 2013-12-15 01:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-26 10:21 - 2013-12-15 01:49 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-26 10:18 - 2013-12-15 01:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-26 10:18 - 2013-12-15 01:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-26 10:16 - 2013-12-15 01:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-26 09:57 - 2013-12-15 01:49 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-26 09:38 - 2013-12-15 01:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-26 09:38 - 2013-12-15 01:48 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-26 09:35 - 2013-12-15 01:48 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-26 09:32 - 2013-12-15 01:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-26 09:28 - 2013-12-15 01:48 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-26 09:16 - 2013-12-15 01:48 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-26 09:02 - 2013-12-15 01:48 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-26 08:48 - 2013-12-15 01:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-26 08:32 - 2013-12-15 01:48 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-26 08:26 - 2013-12-15 01:48 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-26 08:07 - 2013-12-15 01:48 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-26 07:40 - 2013-12-15 01:48 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-26 07:34 - 2013-12-15 01:48 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-26 07:34 - 2013-12-15 01:48 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-26 07:33 - 2013-12-15 01:48 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-26 07:27 - 2013-12-15 01:48 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-25 20:36 - 2013-11-25 20:34 - 105906176 _____ C:\Users\PC\Downloads\afg-homeland-xv-309.part1.rar
2013-11-23 17:08 - 2012-04-05 10:18 - 00004098 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-11-23 17:08 - 2012-04-05 10:18 - 00003846 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-11-19 03:33 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2013-11-17 23:33 - 2013-11-16 14:30 - 03338425 _____ C:\Users\PC\Desktop\Wechselstrom.pptx
2013-11-17 18:15 - 2013-11-17 18:15 - 02434286 _____ C:\Users\PC\Downloads\Phasenanschnittsteuerung(1).xlsx
Files to move or delete:
====================
C:\ProgramData\BvlrY76.bat
C:\ProgramData\BvlrY76.js
C:\ProgramData\BvlrY76.reg
Some content of TEMP:
====================
C:\Users\PC\AppData\Local\Temp\avgnt.exe
C:\Users\PC\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-10 19:49
==================== End Of Log ============================ Addition: Code:
dditional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2013 02
Ran by PC at 2013-12-17 20:51:07
Running from C:\Users\PC\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Act of War - Direct Action (x32 Version: 1.00.000)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170)
Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.8.638)
Alien Swarm (x32)
America's Army: Proving Grounds Beta (x32)
Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.10.1.0)
Avira Free Antivirus (x32 Version: 14.0.1.759)
Avira SearchFree Toolbar (x32 Version: 12.6.0.1900)
Battlefield 3™ (x32 Version: 1.0.0.0)
Battlelog Web Plugins (x32 Version: 2.1.2)
Bluetooth Win7 Suite (64) (Version: 7.2.0.40)
Borderlands (x32 Version: 1.0.295)
Borderlands 2 (x32)
Borland Together Architect (x32 Version: 1.0.0.0)
Call of Duty: Black Ops II - Multiplayer (x32)
Call of Duty: Black Ops II - Zombies (x32)
Call of Duty: Black Ops II (x32)
Call of Duty: Ghosts - Multiplayer (x32)
Call of Duty: Ghosts (x32)
Chivalry: Medieval Warfare (x32)
Citavi (x32 Version: 3.4.0.2)
Citrix Presentation Server Client - Nur Web (x32 Version: 10.100.55836)
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2)
Coroutine for Java (x32)
Counter-Strike (x32)
Crystal Reports Basic for Visual Studio 2008 (x32 Version: 10.5.0.0)
Crystal Reports Basic German Language Pack for Visual Studio 2008 (x32 Version: 10.5.0.0)
Crystal Reports Basic Runtime for Visual Studio 2008 (x64) (Version: 10.5.0.0)
Crystal Reports Basic Runtime German Language Pack for Visual Studio 2008 (x64) (Version: 10.5.0.0)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Pro (x32 Version: 5.0.0316.0317)
Diablo III (x32)
Diablo III Beta (x32 Version: 0.2.0.7162)
Dota 2 (x32)
DriverTuner 3.1.0.1 (x32 Version: 3.1.0.1)
Dwarfs F2P (x32)
Empire Earth Ultimate Edition (x32 Version: 1.0)
ESN Sonar (x32 Version: 0.70.4)
Fallen Earth (x32)
FileOpen Client (x64) (Version: 3.0.90.926)
FileOpen Client version B926 (Version: B926)
Foxtab (x32) <==== ATTENTION
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
GIT Environment version MinGW 20120426 and Eclipse Indigo SR2 (Version: MinGW 20120426 and Eclipse Indigo SR2)
gnuplot 4.6.3 (x32 Version: 4.6.3)
Google Chrome (x32 Version: 31.0.1650.63)
Google Earth (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.22.3)
Hardcopy (C:\Program Files (x86)\Hardcopy) (x32 Version: 2012.03.31)
Heroes & Generals (x32 Version: 1.0.4.6)
HL-2240 (x32 Version: 1.0.5.0)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Rapid Storage Technology (x32 Version: 10.6.0.1002)
IsoBuster 3.0 (x32 Version: 3.0)
Jagged Alliance Online - Steam Edition (x32)
Java 7 Update 25 (x32 Version: 7.0.250)
Java 7 Update 7 (64-bit) (Version: 7.0.70)
Java Auto Updater (x32 Version: 2.1.9.5)
Java(TM) 6 Update 34 (x32 Version: 6.0.340)
JDownloader 0.9 (x32 Version: 0.9)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
League of Legends (x32 Version: 1.3)
Left 4 Dead (x32)
Left 4 Dead 2 (x32)
Malwarebytes Anti-Malware Version 1.70.0.1100 (x32 Version: 1.70.0.1100)
March of War (x32)
MathType 6 (x32 Version: 6.9)
MATLAB R2011a (Version: 7.12)
McAfee Security Scan Plus (Version: 3.8.130.10)
Mesh Runtime (x32 Version: 15.4.5722.2)
Messenger Companion (x32 Version: 15.4.3502.0922)
Microsoft .NET Compact Framework 2.0 SP2 (x32 Version: 2.0.7045)
Microsoft .NET Compact Framework 3.5 (x32 Version: 3.5.7283)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Device Emulator (64 Bit) Version 3.0 - DEU (Version: 9.0.21022)
Microsoft Document Explorer 2008 (x32 Version: 9.0.21022)
Microsoft Document Explorer 2008 (x32)
Microsoft Document Explorer 2008 Language Pack - DEU (x32 Version: 9.0.21022)
Microsoft Document Explorer 2008 Language Pack - DEU (x32)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000)
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Project MUI (German) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Project Professional 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.4763.1000)
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Visio 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Visio MUI (German) 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Visual Web Developer 2007 (x32 Version: 12.0.4518.1066)
Microsoft Office Visual Web Developer MUI (German) 2007 (x32 Version: 12.0.4518.1066)
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Project Professional 2010 (x32 Version: 14.0.4763.1000)
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs (x32 Version: 12.0.4518.1014)
Microsoft Silverlight (x32 Version: 4.0.50401.0)
Microsoft SQL Server 2005 (x32)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (x32 Version: 9.2.3042.00)
Microsoft SQL Server Compact 3.5 Design Tools DEU (x32 Version: 3.5.5386.0)
Microsoft SQL Server Compact 3.5 DEU (x32 Version: 3.5.5386.0)
Microsoft SQL Server Compact 3.5 for Devices DEU (x32 Version: 3.5.5386.0)
Microsoft SQL Server Database Publishing Wizard 1.2 (x32 Version: 1.2.0.0)
Microsoft SQL Server Native Client (Version: 9.00.3042.00)
Microsoft SQL Server VSS Writer (Version: 9.00.3042.00)
Microsoft Visio Professional 2010 (x32 Version: 14.0.4763.1000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0)
Microsoft Visual Studio 2005 Tools for Office Runtime Language Pack (x32 Version: 8.0.50727.42)
Microsoft Visual Studio 2005 Tools for Office Runtime Language Pack (x32)
Microsoft Visual Studio 2008 Professional Edition - DEU (x32 Version: 9.0.21022)
Microsoft Visual Studio 2008 Professional Edition - DEU (x32)
Microsoft Visual Studio 2008 Remote Debugger - DEU
Microsoft Visual Studio 2008 Remote Debugger - DEU (Version: 9.0.21022)
Microsoft Visual Studio Web Authoring Component (x32 Version: 12.0.4518.1066)
Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools (Version: 3.5.21022)
Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries (Version: 6.1.5288.17011)
Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense (Version: 6.1.5288.17011)
Microsoft Windows SDK for Visual Studio 2008 Tools (Version: 6.1.5288.17011)
Microsoft Windows SDK for Visual Studio 2008 Win32 Tools (Version: 6.1.5288.17011)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0)
Might & Magic: Duel of Champions (x32)
MiKTeX 2.9 (x32 Version: 2.9)
mini Ringkern-Rechner 1.2 (x32 Version: 1.2)
Mobogenie (x32)
Mozilla Firefox 16.0.2 (x86 de) (x32 Version: 16.0.2)
Mozilla Maintenance Service (x32 Version: 16.0.2)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
Neverwinter (x32)
No More Room in Hell (x32)
NVIDIA 3D Vision Controller Driver (x32 Version: 280.19)
NVIDIA 3D Vision Controller-Treiber 296.10 (Version: 296.10)
NVIDIA 3D Vision Treiber 311.06 (Version: 311.06)
NVIDIA Grafiktreiber 311.06 (Version: 311.06)
NVIDIA HD-Audiotreiber 1.3.12.0 (Version: 1.3.12.0)
NVIDIA Install Application (Version: 2.1002.108.688)
NVIDIA PhysX (x32 Version: 9.12.1031)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106)
NVIDIA Systemsteuerung 311.06 (Version: 311.06)
NVIDIA Update 1.11.3 (Version: 1.11.3)
NVIDIA Update Components (Version: 1.11.3)
OpenAL (x32)
Origin (x32 Version: 8.5.0.4550)
Pando Media Booster (x32 Version: 2.6.0.9)
Path of Exile (x32)
PAYDAY: The Heist (x32)
PDF24 Creator 5.2.0 (x32)
PDFCreator (x32 Version: 1.3.2)
Pinball FX2 (x32)
PLECS Blockset 3.2.7 (64 bit) (Version: 3.2.7)
PLECS Standalone 3.1.8 (64 bit) (Version: 3.1.8)
PLECS Standalone 3.2.7 (32 bit) (x32 Version: 3.2.7)
PLECS Standalone 3.2.7 (64 bit) (Version: 3.2.7)
PLECS Standalone 3.3.2 (64 bit) (Version: 3.3.2)
Portunus 4.1 (x32 Version: 4.1)
Post-it® Software Notes Lite (x32)
PunkBuster Services (x32 Version: 0.991)
PVSOL Expert 4.0 (x32 Version: 4.0.7)
QuickField 5.10 Student (x32 Version: 5.10.1)
Razer Diamondback (x32 Version: 5.01)
Realm of the Mad God (x32)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6410)
Saboteur™ (x32 Version: 1.0.0.0)
Sacred 2 Gold (x32)
Secure Download Manager (x32 Version: 3.0.3)
Skype™ 6.3 (x32 Version: 6.3.107)
sPlan 7.0 (Demo) (x32)
Spotify (HKCU Version: 0.9.0.133.gd18ed589)
Star Conflict (x32)
StarCraft II (x32 Version: 1.5.3.23260)
Steam (x32 Version: 1.0.0.0)
Stronghold HD (x32 Version: 1.30.0001)
Stronghold Kingdoms (x32 Version: 1.17)
Stronghold Kingdoms (x32)
Super Crate Box (x32)
swMSM (x32 Version: 12.0.0.1)
Tactical Intervention (x32)
Team Fortress 2 (x32)
TeamSpeak 3 Client (Version: 3.0.13.1)
TeXstudio 2.6.2 (x32 Version: 2.6.2)
Tools für Microsoft SQL Server 2005 Express Edition (x32 Version: 9.2.3042.00)
Torchlight II (x32)
Two Worlds II (x32 Version: 1.3.0.0)
Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (x32 Version: 9.00.3042.00)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
VC Runtimes MSI (x32 Version: 9.0.21022)
Visual Studio .NET Prerequisites - English (Version: 9.0.21022)
Visual Studio 2005 Tools for Office Second Edition Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.21022)
Visual Studio Tools for the Office system 3.0 Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime Language Pack - DEU (x32 Version: 9.0.21022)
Visual Studio-Tools für Office System 3.0 Runtime Language Pack - DEU (x32)
VLC media player 1.1.11 (x32 Version: 1.1.11)
Warframe (x32)
Wargame: European Escalation (x32)
WIDCOMM Bluetooth Software (x32 Version: 1.4.2.10)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3538.0513)
Windows Live Family Safety (Version: 15.4.3538.0513)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3538.0513)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Mobile 5.0 SDK R2 for Pocket PC (x32 Version: 5.00.1700.5.14343.06)
Windows Mobile 5.0 SDK R2 for Smartphone (x32 Version: 5.00.1700.5.14343.06)
WinField (x32)
WinRAR 4.10 (64-Bit) (Version: 4.10.0)
Wizardry Online (x32)
World of Tanks (x32)
World of Warplanes (x32)
WWB (x32)
==================== Restore Points =========================
10-12-2013 18:56:15 Geplanter Prüfpunkt
12-12-2013 21:22:38 Windows Update
12-12-2013 23:43:47 Windows Update
14-12-2013 02:00:11 Windows Update
14-12-2013 14:57:21 Windows Update
15-12-2013 00:48:52 Windows Update
17-12-2013 19:33:11 ComboFix created restore point
==================== Hosts content: ==========================
2009-07-14 03:34 - 2013-12-17 20:37 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {1B8BE910-A87C-48BB-B97E-7AB96C6FB9B0} - System32\Tasks\{5313E9B8-C39B-4273-B190-9A3A8CD96594} => D:\Act of War - Direct Action\ACTOFWAR.EXE [2005-03-15] ()
Task: {38B91F76-B742-4824-9998-CE0BA7E63CBE} - System32\Tasks\{AD205BEE-A0FD-418E-8385-CDE59131979F} => D:\Act of War - Direct Action\ACTOFWAR.EXE [2005-03-15] ()
Task: {4D97B6FD-CF07-408E-8CAC-1AA64FB14F49} - System32\Tasks\hcdll2_ex_Win32 => C:\Program Files (x86)\Hardcopy\hcdll2_ex_Win32.exe [2012-01-19] ()
Task: {646B2E98-7E26-4723-AB63-CC7D4B66976A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-04-05] (Google Inc.)
Task: {652855E6-E371-42AC-9062-5D4F9A20DBFC} - System32\Tasks\hcdll2_ex_x64 => C:\Program Files (x86)\Hardcopy\hcdll2_ex_x64.exe [2012-01-19] ()
Task: {6D5F0B5F-197B-479B-92AF-86C57ECB03F6} - System32\Tasks\DriverTuner Startup => C:\Program Files (x86)\DriverTuner\DriverTuner.exe [2013-07-11] (LionSea)
Task: {7F7196D1-EF28-4E87-97FA-7842C4321E0E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {9BB66498-4DED-4DC7-8FAB-223D02391E3C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-04-05] (Google Inc.)
Task: {C731E251-7FC3-4702-A0B9-89C353FE64E1} - System32\Tasks\{1C528708-A1BA-4681-9E2D-2CC42314AB2E} => D:\Act of War - Direct Action\ACTOFWAR.EXE [2005-03-15] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2012-05-05 12:50 - 2012-03-09 08:45 - 00118784 _____ () C:\Program Files (x86)\Hardcopy\HcDLL2_36_x64.dll
2013-08-11 13:38 - 2013-08-11 13:35 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2012-05-05 12:50 - 2012-01-07 09:54 - 00047616 _____ () C:\Program Files (x86)\Hardcopy\hardcopy_04.dll
2012-05-05 12:50 - 2012-03-09 08:46 - 00110080 _____ () C:\Program Files (x86)\Hardcopy\HcDLL2_36_Win32.dll
2013-03-12 17:10 - 2013-11-06 22:48 - 00691200 _____ () D:\Steam\SDL2.dll
2012-02-20 15:47 - 2013-12-11 20:40 - 01135016 _____ () D:\Steam\bin\chromehtml.DLL
2012-02-20 15:47 - 2013-11-06 22:48 - 20625832 _____ () D:\Steam\bin\libcef.dll
2012-03-15 23:21 - 2013-06-15 00:49 - 01100800 _____ () D:\Steam\bin\avcodec-53.dll
2012-03-15 23:21 - 2013-06-15 00:49 - 00124416 _____ () D:\Steam\bin\avutil-51.dll
2012-03-15 23:21 - 2013-06-15 00:49 - 00192000 _____ () D:\Steam\bin\avformat-53.dll
2011-12-19 17:44 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2012-05-05 12:50 - 2012-03-21 13:10 - 02941440 _____ () C:\Program Files (x86)\Hardcopy\HcDllS.dll
2012-10-27 12:15 - 2012-10-27 12:15 - 02295264 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-12-10 20:42 - 2013-12-10 20:42 - 16242056 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/17/2013 08:46:04 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/17/2013 08:40:29 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/17/2013 08:17:39 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/16/2013 08:44:30 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/16/2013 09:48:59 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/16/2013 09:40:41 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/16/2013 09:40:21 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00030fdf
ID des fehlerhaften Prozesses: 0x1074
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/16/2013 09:40:21 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00030fdf
ID des fehlerhaften Prozesses: 0x858
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/16/2013 09:40:21 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00030fdf
ID des fehlerhaften Prozesses: 0x1044
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/16/2013 09:40:21 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00030fdf
ID des fehlerhaften Prozesses: 0xf18
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
System errors:
=============
Error: (12/17/2013 08:47:51 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (12/17/2013 08:47:51 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht.
Error: (12/17/2013 08:46:27 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (12/17/2013 08:46:27 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (12/17/2013 08:44:26 PM) (Source: Service Control Manager) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
BTKRNL
Error: (12/17/2013 08:44:11 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Bluetooth Port Client Driver" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (12/17/2013 08:44:11 PM) (Source: Application Popup) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Windows\SysWow64\drivers\btslbcsp.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (12/17/2013 08:44:11 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Bluetooth Serial Driver" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (12/17/2013 08:44:11 PM) (Source: Application Popup) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Windows\SysWow64\drivers\btserial.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (12/17/2013 08:40:51 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Microsoft Office Sessions:
=========================
Error: (10/31/2013 10:43:34 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 36 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:40:01 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:39:52 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 5 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:39:43 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 5 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:39:34 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 12 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:39:18 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 8 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/27/2013 10:37:48 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 5 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/18/2013 07:52:12 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 19 seconds with 0 seconds of active time. This session ended with a crash.
Error: (08/05/2013 10:14:16 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 8 seconds with 0 seconds of active time. This session ended with a crash.
Error: (07/31/2013 09:22:11 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1066. This session lasted 8 seconds with 0 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2013-12-17 20:36:55.291
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-12-17 20:36:55.245
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-12-17 20:36:55.198
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-12-17 20:36:55.167
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-12-16 09:45:50.543
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-12-16 09:45:50.496
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-05-19 14:46:21.672
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-05-19 11:46:17.016
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-05-19 00:47:39.922
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-05-18 14:37:58.019
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 25%
Total physical RAM: 8168.86 MB
Available physical RAM: 6060.5 MB
Total Pagefile: 16335.91 MB
Available Pagefile: 13935.3 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (Windows 7) (Fixed) (Total:111.79 GB) (Free:11.17 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:596 GB) NTFS
Drive e: (DISK_4) (CDROM) (Total:7.33 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: EB955BFE)
Partition 1: (Active) - (Size=112 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 3CCC32CE)
Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |