Ok, mache ich :-) Hier die beiden Logs, die im zip-file stecken:
Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-06-2014
Ran by Abalone at 2014-06-16 13:51:44
Running from C:\Users\Abalone\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
3089 -- Futuristic Action RPG (HKLM-x32\...\Steam App 263360) (Version: - Phr00t's Software)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe Acrobat 8 Professional - English, Français, Deutsch (HKLM-x32\...\Adobe Acrobat 8 Professional - English, Français, Deutsch) (Version: 8.0.0 - Adobe Systems)
Adobe Acrobat 8 Professional - English, Français, Deutsch (x32 Version: 8.0.0 - Adobe Systems) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 13.0.0.111 - Adobe Systems Incorporated) Hidden
Adobe Bridge 1.0 (x32 Version: 1.0.1.1 - Adobe Systems) Hidden
Adobe Common File Installer (x32 Version: 1.00.002 - Adobe System Incorporated) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.125 - Adobe Systems Incorporated)
Adobe Help Center 2.1 (x32 Version: 2.1 - Adobe Systems) Hidden
Adobe Illustrator CS2 (HKLM-x32\...\Adobe Illustrator CS2) (Version: 12.000.000 - Adobe Systems Inc.)
Adobe Illustrator CS2 (x32 Version: 12.000.000 - Adobe Systems Inc.) Hidden
Adobe InDesign CS2 (HKLM-x32\...\Adobe InDesign CS2 - {7F4C8163-F259-49A0-A018-2857A90578BC}) (Version: 004.000.000 - Adobe Systems Incorporated)
Adobe InDesign CS2 (x32 Version: 004.000.000 - Adobe Systems Incorporated) Hidden
Adobe Photoshop 6.0 (HKLM-x32\...\Adobe Photoshop 6.0) (Version: 6.0 - Adobe Systems, Inc.)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Photoshop CS2 (x32 Version: 9.0 - Adobe Systems, Inc.) Hidden
Adobe Photoshop Elements 5.0 (HKLM-x32\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Photoshop Elements 5.0 (x32 Version: 5.0 - Adobe Systems, Inc.) Hidden
Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (x32 Version: 2.000.000 - Adobe Systems, Inc.) Hidden
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
Adobe Stock Photos 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden
Adobe Stock Photos 1.0 (x32 Version: 1.0.2 - Adobe Systems) Hidden
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.)
Age of Decadence Public Beta (Release 3.2) (HKLM-x32\...\Age of Decadence Public Beta (Release 3.2)) (Version: 0.8.7.0231 - Iron Tower Studio)
Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - )
AMD Accelerated Video Transcoding (Version: 13.15.100.30830 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.0830.1944.33589 - Ihr Firmenname) Hidden
AMD Catalyst Install Manager (HKLM\...\{1E9871B6-7C44-9A3A-A1C0-F9729663C7F5}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Media Foundation Decoders (Version: 1.0.80830.1925 - Advanced Micro Devices, Inc.) Hidden
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aptana Studio 3 (HKLM-x32\...\Aptana Studio 3) (Version: 3.0.0 - Appcelerator, Inc.)
Ashampoo Movie Studio 2013 v.1.0.4 (HKLM-x32\...\{91B33C97-EB09-F0A4-36AC-3895F9F93DD1}_is1) (Version: 1.0.4 - Ashampoo GmbH & Co. KG)
ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version: - ASRock Inc.)
ASRock eXtreme Tuner v0.1.54 (HKLM-x32\...\ASRock eXtreme Tuner_is1) (Version: - )
ASRock InstantBoot v1.26 (HKLM-x32\...\ASRock InstantBoot_is1) (Version: - )
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.4.642 - Avira)
AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: 1.2.0.0 - AVM Berlin)
Baldur's Gate: Enhanced Edition (HKLM-x32\...\Steam App 228280) (Version: - Overhaul Games)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Ben There, Dan That! (HKLM-x32\...\Steam App 37420) (Version: - Zombie Cow Studios)
Blockland (HKLM-x32\...\Blockland) (Version: - )
Blockscape Phase 1 (beta) (HKLM-x32\...\Blockscape_is1) (Version: - ioneo AB)
Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version: - Starbreeze Studios AB)
calibre (HKLM-x32\...\{AB259D81-DE6B-4554-B4A8-DB13D321FBF2}) (Version: 0.9.18 - Kovid Goyal)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden
ColdCut (HKLM-x32\...\{8944ED10-DBF2-4FA9-8B5D-D7E1B046C761}_is1) (Version: ColdCut - © Jan Brummelte)
Copy (HKLM\...\{EF3F883E-1A54-44B3-ABB7-E2DEC1C56451}) (Version: 1.28.657.0 - Barracuda Networks, Inc.)
Crazy Machines (HKLM-x32\...\Steam App 18420) (Version: - Fakt Software)
Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - )
Cube World version 0.0.1 (HKLM-x32\...\{D692A0E0-1BBB-4E9C-826E-4254EE330830}_is1) (Version: 0.0.1 - Picroma)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dead Man's Draw (HKLM-x32\...\Steam App 262450) (Version: - Stardock Entertainment)
Defender's Quest: Valley of the Forgotten (HKLM-x32\...\Steam App 218410) (Version: - Level Up Labs, LLC)
Desura (HKLM-x32\...\Desura) (Version: 100.53 - Desura)
Discovery! A Seek & Find Adventure (HKLM-x32\...\Steam App 16000) (Version: - MumboJumbo)
Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks)
dm-Fotowelt (HKLM-x32\...\dm-Fotowelt) (Version: - )
Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - )
DOSBoxnoalttab (HKLM\...\{81c4a0a9-8fb0-4a2d-aec1-efce279f57a6}.sdb) (Version: - )
Dragon Age Toolset (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.01 - Electronic Arts, Inc.)
Draw a Stickman: EPIC (HKLM-x32\...\Steam App 248650) (Version: - Hitcents)
Driftmoon (HKLM-x32\...\GOGPACKDRIFTMOON_is1) (Version: 2.0.0.6 - GOG.com)
Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.)
Droplitz (HKLM-x32\...\Steam App 23120) (Version: - Blitz Games Studio, Ltd.)
DVD Profiler Version 3.8.2 (HKLM-x32\...\InvelosDVDProfiler_is1) (Version: - )
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 14.3.11574 - Landesfinanzdirektion Thüringen)
EMDB 1.99 (HKLM-x32\...\EMDB_is1) (Version: - Wicked & Wild Inc.)
Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology)
Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden
Eufloria (HKLM-x32\...\Steam App 41210) (Version: - )
Far Cry (HKLM-x32\...\GOGPACKFARCRY_is1) (Version: 2.0.0.9 - GOG.com)
Far Cry® 3 (HKLM-x32\...\Steam App 220240) (Version: - Ubisoft)
ffdshow v1.3.4530 [2014-02-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4530.0 - )
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Free FLV Converter V 7.4.0 (HKLM-x32\...\Free FLV Converter_is1) (Version: 7.4.0.0 - Koyote Soft)
Free Opener (HKLM\...\{A1F2C608-32D6-467D-B035-BBEF509042BA}_is1) (Version: 1.4 - EZ Freeware)
Free Video to JPG Converter version 5.0.17.825 (HKLM-x32\...\Free Video to JPG Converter_is1) (Version: 5.0.17.825 - DVDVideoSoft Ltd.)
FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - )
Geneforge 1 (HKLM-x32\...\Steam App 200960) (Version: - )
Geneforge 2 (HKLM-x32\...\Steam App 200980) (Version: - )
Geneforge 3 (HKLM-x32\...\Steam App 200990) (Version: - )
Geneforge 4 (HKLM-x32\...\Steam App 201000) (Version: - )
Geneforge 5 (HKLM-x32\...\Steam App 201010) (Version: - )
Ghostlab (HKLM\...\{CC72A911-6786-4B1F-9991-79015BB77799}) (Version: 1.2.5 - Vanamco AG)
GOG.com Downloader version 3.5.8 (HKLM-x32\...\{456A5815-604D-4D72-94DF-346D2B978A59}_is1) (Version: 3.5.8 - GOG.com)
Google Chrome (HKCU\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Grand Theft Auto: San Andreas (HKLM-x32\...\Steam App 12120) (Version: - Rockstar)
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
HijackThis 2.0.2 (HKLM-x32\...\HijackThis) (Version: 2.0.2 - TrendMicro)
Hotline Miami (HKLM-x32\...\Steam App 219150) (Version: - Dennaton Games)
IETester v0.5.2 (remove only) (HKLM-x32\...\IETester) (Version: 0.5.2 - Core Services)
Inkscape 0.48.3.1 (HKLM-x32\...\Inkscape) (Version: 0.48.3.1 - )
InsectIS 8.89 (HKLM-x32\...\InsectIS) (Version: - )
InsectIS-Laufzeitumgebung für Access 2003 (HKLM-x32\...\InsectIS-Laufzeitumgebung für Access) (Version: - )
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.1.209 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.28 - Irfan Skiljan)
iZ3D Driver Remove (HKLM-x32\...\{30BEF9F2-CD3F-4B13-9E5C-BFE2F9544572}_is1) (Version: 1.13(5443) - iZ3D Inc.)
Java 3D 1.5.1 (x64) (HKLM\...\{64A9C5B3-D166-4C6D-A11E-A54473151000}) (Version: 1.5.1 - Sun Microsystems, Inc.)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.550 - Oracle)
Java 7 Update 7 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417007FF}) (Version: 7.0.70 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 26 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416026FF}) (Version: 6.0.260 - Oracle)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Jet Set Radio (HKLM-x32\...\Steam App 205950) (Version: - Blit Software)
Jing (HKLM-x32\...\{22800204-9E53-45C7-B6F3-5BB0F1C1A147}) (Version: 2.8.13007.1 - TechSmith Corporation)
KAMI (HKLM-x32\...\Steam App 272040) (Version: - State of Play Games)
Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games)
K-Lite Codec Pack 7.0.0 (Standard) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - )
Last Dream (HKLM-x32\...\Steam App 266230) (Version: - White Giant RPG Studios)
Laufzeitumgebung für InsectIS (HKLM-x32\...\{16463E82-EFCF-4FEB-9DF8-DDC97090639A}) (Version: 1.0.0000 - InsectIS)
LEGO Batman: The Videogame (HKLM-x32\...\Steam App 21000) (Version: - TT Games)
LEGO Lord of the Rings (HKLM-x32\...\Steam App 214510) (Version: - )
LEGO® Der Herr der Ringe™ DEMO (HKLM-x32\...\{91DBD40C-B5C6-4F55-93D6-1B0B59093BEA}) (Version: 1.0.0.0 - Warner Bros. Interactive Entertainment)
LibreOffice 4.1.4.2 (HKLM-x32\...\{94E11973-ED58-47A0-907C-ABF6D95C5DD8}) (Version: 4.1.4.2 - The Document Foundation)
Luxor 2 HD (HKLM-x32\...\Steam App 234350) (Version: - MumboJumbo)
LUXOR: 5th Passage (HKLM-x32\...\Steam App 60340) (Version: - MumboJumbo)
LYNE (HKLM-x32\...\Steam App 266010) (Version: - Thomas Bowker)
Macaw (HKLM-x32\...\{44A348B2-CEB8-4670-B97C-6B6E73FCE6AA}) (Version: 1.0.11 - Macaw, LLC)
Magic: The Gathering — Duels of the Planeswalkers 2012 (HKLM-x32\...\Steam App 49470) (Version: - )
Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 DEU Language Pack RC (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50501 - Microsoft Corporation)
Microsoft .NET Framework 4.5 DEU Language Pack RC (Version: 4.5.50501 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office Access 2003 Runtime (HKLM-x32\...\{901C0407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Express Edition (BWDATOOLSET) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server 2005 Tools Express Edition (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Midnight Mysteries: The Edgar Allan Poe Conspiracy (HKLM-x32\...\Steam App 32140) (Version: - MumboJumbo)
Might and Magic VI Limited Edition (HKLM-x32\...\GOGPACKMM6LE_is1) (Version: 2.0.0.41 - GOG.com)
Morrowind mod manager 0.8.4 (HKLM-x32\...\Morrowind mod manager_is1) (Version: - Timeslip)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 17.0.6 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 17.0.6 (x86 de)) (Version: 17.0.6 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyMDb 3.6 (HKLM-x32\...\MyMDb_0) (Version: - )
NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version: - )
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.1.4 - )
NVIDIA Photoshop Plug-ins (HKLM-x32\...\{23F79416-CAD1-41BF-99A3-040F6C814AAA}) (Version: 8.50 - )
NVIDIA Photoshop Plug-ins 64 bit (HKLM-x32\...\{5E386C5B-CDE7-435A-B5C9-EC73A1B0553A}) (Version: 8.50 - )
NVIDIA PhysX (HKLM-x32\...\{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}) (Version: 9.11.1111 - NVIDIA Corporation)
Nvu 1.0 (HKLM-x32\...\Nvu_is1) (Version: 1.0 - Thorsten Fritz)
Oblivion mod manager 1.1.12 (HKLM-x32\...\Oblivion mod manager_is1) (Version: - Timeslip)
Obulis (HKLM-x32\...\Steam App 11330) (Version: - IonFX)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice.org 3.4 (HKLM-x32\...\{4C552FD3-2CCD-4E00-AC64-0681DBB3F8B5}) (Version: 3.4.9590 - OpenOffice.org)
Opera Stable 22.0.1471.50 (HKLM-x32\...\Opera 22.0.1471.50) (Version: 22.0.1471.50 - Opera Software ASA)
Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)
Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC)
PC Camer@N (HKLM-x32\...\InstallShield_{68AD7668-834F-49BC-94AB-28F94A5D93D5}) (Version: 0.1.3.8 - Teconet)
PC Camer@N (x32 Version: 0.1.3.8 - Teconet) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pixlr-o-matic (HKLM-x32\...\Pixlromatic) (Version: 2.1 - UNKNOWN)
Pixlr-o-matic (x32 Version: 2.1 - UNKNOWN) Hidden
Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Puzzle Quest (HKLM-x32\...\Steam App 12500) (Version: - D3)
Python 3.4.1 (HKLM-x32\...\{df32bb9e-3ed8-36b5-a649-e8c845c5f3a2}) (Version: 3.4.1150 - Python Software Foundation)
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
RailsInstaller 2.1.0 (HKCU\...\{613C3EA5-1248-4E35-B61A-6D0B31BBC0DB}_is1) (Version: 2.1.0 - RailsInstaller Team)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6167 - Realtek Semiconductor Corp.)
Recettear: An Item Shop's Tale (HKLM-x32\...\Steam App 70400) (Version: - EasyGameStation)
RegiStax 6 (HKCU\...\RegiStax 6) (Version: - )
RegiStax 6.1.0.8 update (HKCU\...\RegiStax 6.1.0.8 update) (Version: - )
Risen (HKLM-x32\...\Steam App 40300) (Version: - Piranha – Bytes )
Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - Piranha Bytes)
Rune Classic (HKLM-x32\...\Steam App 210950) (Version: - Human Head Studios)
Sacred Gold (HKLM-x32\...\Steam App 12320) (Version: - Ascaron Entertainment ltd.)
Sawmill 8.6.2 (HKLM-x32\...\Sawmill 8) (Version: 8.6.2 - Flowerfire, Inc.)
SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Shelter (HKLM-x32\...\Steam App 244710) (Version: - Might and Delight)
Sigil 0.6.2 (HKLM-x32\...\Sigil_is1) (Version: - John Schember)
SILKYPIX Developer Studio 3.1 SE (HKLM-x32\...\InstallShield_{0A04086B-0B71-43C3-95EF-FDFC4C18D161}) (Version: 3 - Ichikawa Soft Laboratory)
SILKYPIX Developer Studio 3.1 SE (x32 Version: 3 - Ichikawa Soft Laboratory) Hidden
Ski Challenge 14 (HKCU\...\sc14-GAMETWIST_MAIN) (Version: - )
SkyFonts™ (HKLM\...\{FF120142-9831-434A-8545-64868F254878}) (Version: 4.4.0.0 - Monotype Inc.)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
SpaceChem (HKLM-x32\...\Steam App 92800) (Version: - Zachtronics)
Splice (HKLM-x32\...\Steam App 209790) (Version: - Cipher Prime Studios)
StaudSoft's Synthetic World 64 Bit Version 0.1 (HKLM\...\{B23CE042-8F06-4614-8067-3AFA95E72279}_is1) (Version: 0.1 - StaudSoft)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Superbrothers: Sword & Sworcery EP (HKLM-x32\...\Steam App 204060) (Version: - Capybara)
Sweet Home 3D version 3.6 (HKLM-x32\...\Sweet Home 3D_is1) (Version: - eTeks)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - )
The Dream Machine (HKLM-x32\...\Steam App 94300) (Version: - Cockroach Ink.)
The Elder Scrolls III: Morrowind (HKLM-x32\...\Steam App 22320) (Version: - Bethesda Game Studios®)
The Elder Scrolls IV: Oblivion (HKLM-x32\...\Steam App 22330) (Version: - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
The Ship Single Player (HKLM-x32\...\Steam App 2420) (Version: - Outerlight Ltd.)
The Ship Tutorial (HKLM-x32\...\Steam App 2430) (Version: - Outerlight)
The Swapper (HKLM-x32\...\Steam App 231160) (Version: - Olli Harjola, Otto Hantula, Tom Jubert, Carlo Castellano)
The Walking Dead (HKLM-x32\...\Steam App 207610) (Version: - )
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED)
Ticket to Ride (HKLM-x32\...\Steam App 108200) (Version: - )
Tiled - Tiled Map Editor (HKLM-x32\...\Tiled) (Version: - )
Time Gentlemen, Please! (HKLM-x32\...\Steam App 37400) (Version: - Size Five Games)
Tiny and Big - Grandpa's Leftovers (HKLM-x32\...\GOGPACKTINYANDBIG_is1) (Version: 2.0.0.8 - GOG.com)
Titan Quest (HKLM-x32\...\Steam App 4540) (Version: - IronLore)
Titan Quest: Immortal Throne (HKLM-x32\...\Steam App 4550) (Version: - IronLore)
Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics)
Tomb Raider 1+2+3 (HKLM-x32\...\GOGPACKTOMBRAIDER123_is1) (Version: 2.0.0.7 - GOG.com)
Tony Hawk's Pro Skater HD (HKLM-x32\...\Steam App 207210) (Version: - Robomodo)
Triple Town (HKLM-x32\...\Steam App 209950) (Version: - Spry Fox LLC)
Type:Rider (HKLM-x32\...\Steam App 258890) (Version: - Ex Nihilo)
Ulead VideoStudio 7 SE DVD (HKLM-x32\...\{757AD3D4-036B-42FA-B0A4-96BD6F4605A0}) (Version: 7.0 - Ulead Systems, Inc.)
Ulead VideoStudio SE DVD (HKLM-x32\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Unepic (HKLM-x32\...\Unepic) (Version: - )
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Universe Sandbox (HKLM-x32\...\Steam App 72200) (Version: - Giant Army)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
Vampire: The Masquerade - Bloodlines (HKLM-x32\...\Steam App 2600) (Version: - Troika Games)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VIA Plattform-Geräte-Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.)
VLC media player 2.0.2 (HKLM-x32\...\VLC media player) (Version: 2.0.2 - VideoLAN)
Waking Mars (HKLM-x32\...\GOGPACKWAKINGMARS_is1) (Version: 2.0.0.3 - GOG.com)
Weird Worlds: Return to Infinite Space (HKLM-x32\...\Steam App 226120) (Version: - Digital Eel)
Winamp_2.95_minimal (HKLM-x32\...\SFXTool_HSL5EG5QXH55FPOL3NSYLATLGU1EP89UV2V5MWEFQXFVOQI2) (Version: - )
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR 5.10 beta 4 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH)
Wizardry 8 (HKLM-x32\...\Steam App 245450) (Version: - )
WorldPainter 0.9.2 (HKLM\...\4144-4862-0472-7103) (Version: 0.9.2 - pepsoft.org)
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 0.3.0.4 - Wrye & Wrye Bash Development Team)
Wrye Mash (HKLM-x32\...\Wrye Mash) (Version: - Wrye)
X2: The Threat (HKLM-x32\...\Steam App 2800) (Version: - Egosoft)
XMedia Recode Version 3.1.2.5 (HKLM-x32\...\{DDA3C325-47B2-4730-9672-BF3771C08799}_is1) (Version: 3.1.2.5 - XMedia Recode)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)
==================== Restore Points =========================
30-05-2014 07:03:42 Windows Update
03-06-2014 06:31:22 Windows Update
03-06-2014 06:42:17 Installed SkyFonts™
10-06-2014 06:25:33 Windows Update
10-06-2014 12:41:48 DirectX wurde installiert
12-06-2014 21:32:08 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0F94CFD6-5560-46E9-AAE4-6FE93D2FA960} - System32\Tasks\Opera scheduled Autoupdate 1399880484 => C:\Program Files (x86)\Opera\launcher.exe [2014-05-27] (Opera Software)
Task: {20B7E4BE-DEBB-4F12-BDDF-AAFAC0958BAA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-12] (Adobe Systems Incorporated)
Task: {5203CE37-1198-4136-80E8-41F672803001} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3072619532-3118682878-2417991977-1000Core => C:\Users\Abalone\AppData\Local\Google\Update\GoogleUpdate.exe [2012-06-30] (Google Inc.)
Task: {BE052A01-C8DF-4E71-BD6F-A31638BBAD5F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3072619532-3118682878-2417991977-1000UA => C:\Users\Abalone\AppData\Local\Google\Update\GoogleUpdate.exe [2012-06-30] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3072619532-3118682878-2417991977-1000Core.job => C:\Users\Abalone\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3072619532-3118682878-2417991977-1000UA.job => C:\Users\Abalone\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2006-09-14 08:56 - 2006-09-14 08:56 - 00102400 _____ () C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2013-01-01 00:01 - 2013-01-01 00:01 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2013-04-06 14:54 - 2014-06-11 21:12 - 08212480 _____ () C:\Users\Abalone\AppData\Roaming\Copy\overlay\Brt.dll
2013-03-06 12:48 - 2014-06-11 21:12 - 02092544 _____ () C:\Users\Abalone\AppData\Roaming\Copy\Gui.dll
2013-03-06 13:09 - 2014-06-11 21:12 - 08212480 _____ () C:\Users\Abalone\AppData\Roaming\Copy\Brt.dll
2013-12-11 21:20 - 2014-06-11 21:12 - 09200128 _____ () C:\Users\Abalone\AppData\Roaming\Copy\AgentSync.dll
2013-03-06 12:52 - 2014-06-11 21:12 - 05322240 _____ () C:\Users\Abalone\AppData\Roaming\Copy\CloudSync.dll
2013-06-07 21:33 - 2011-12-06 19:58 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2013-06-07 21:33 - 2011-12-06 19:58 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2014-05-01 09:30 - 2014-05-31 03:27 - 01116672 _____ () D:\Spiele\Steam\libavcodec-55.dll
2014-03-05 01:06 - 2014-05-31 03:27 - 00438784 _____ () D:\Spiele\Steam\libavutil-53.dll
2014-05-01 09:30 - 2014-05-31 03:27 - 00399360 _____ () D:\Spiele\Steam\libavformat-55.dll
2013-12-14 01:51 - 2014-05-31 03:27 - 00331264 _____ () D:\Spiele\Steam\libavresample-1.dll
2013-03-12 18:10 - 2014-06-05 06:24 - 00756736 _____ () D:\Spiele\Steam\SDL2.dll
2014-05-01 09:30 - 2014-06-10 01:41 - 02141376 _____ () D:\Spiele\Steam\video.dll
2014-05-01 09:30 - 2014-04-29 02:37 - 00519168 _____ () D:\Spiele\Steam\libswscale-2.dll
2012-07-01 00:22 - 2014-06-10 01:41 - 01116864 _____ () D:\Spiele\Steam\bin\chromehtml.DLL
2012-07-01 00:22 - 2014-05-02 01:35 - 20628160 _____ () D:\Spiele\Steam\bin\libcef.dll
2012-07-01 00:22 - 2013-06-15 01:49 - 01100800 _____ () D:\Spiele\Steam\bin\avcodec-53.dll
2012-07-01 00:22 - 2013-06-15 01:49 - 00124416 _____ () D:\Spiele\Steam\bin\avutil-51.dll
2012-07-01 00:22 - 2013-06-15 01:49 - 00192000 _____ () D:\Spiele\Steam\bin\avformat-53.dll
2014-06-16 08:44 - 2014-06-16 08:44 - 00043008 _____ () c:\users\abalone\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnnkxyd.dll
2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Abalone\AppData\Roaming\Dropbox\bin\libcef.dll
2014-05-09 22:39 - 2014-05-09 22:39 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== EXE Association (whitelisted) =============
==================== MSCONFIG/TASK MANAGER disabled items =========
==================== Faulty Device Manager Devices =============
Name: PCI-Kommunikationscontroller (einfach)
Description: PCI-Kommunikationscontroller (einfach)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/16/2014 08:44:59 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/15/2014 10:38:35 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/14/2014 10:12:04 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/13/2014 09:23:54 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm IETester.exe, Version 0.5.2.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1414
Startzeit: 01cf86d69ea2fa2b
Endzeit: 10
Anwendungspfad: C:\Program Files (x86)\Core Services\IETester\IETester.exe
Berichts-ID: ab0b1179-f2cb-11e3-80a3-50465da085f7
Error: (06/13/2014 08:31:16 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/12/2014 08:33:52 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/11/2014 08:38:30 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/10/2014 08:03:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Monotype.SkyFonts.Service.exe, Version: 1.0.5263.36015, Zeitstempel: 0x538892fd
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409, Zeitstempel: 0x5315a05a
Ausnahmecode: 0xe0434352
Fehleroffset: 0x000000000000940d
ID des fehlerhaften Prozesses: 0xa34
Startzeit der fehlerhaften Anwendung: 0xMonotype.SkyFonts.Service.exe0
Pfad der fehlerhaften Anwendung: Monotype.SkyFonts.Service.exe1
Pfad des fehlerhaften Moduls: Monotype.SkyFonts.Service.exe2
Berichtskennung: Monotype.SkyFonts.Service.exe3
Error: (06/10/2014 08:02:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Monotype.SkyFonts.Service.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.InvalidOperationException
Stapel:
bei System.ServiceProcess.ServiceController.Start(System.String[])
bei Monotype.SkyFonts.Service.SkyFontsService.eval_c()
bei Monotype.SkyFonts.Service.SkyFontsService.Main(System.String[])
Error: (06/10/2014 08:01:15 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (06/16/2014 08:44:14 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
hwinterface
Error: (06/16/2014 08:43:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "SkyFontsService" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (06/16/2014 08:43:49 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SkyFontsService erreicht.
Error: (06/16/2014 08:43:03 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\hwinterface.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (06/15/2014 02:41:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "hwinterface" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (06/15/2014 02:41:09 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\hwinterface.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (06/15/2014 02:41:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "hwinterface" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (06/15/2014 02:41:09 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\hwinterface.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (06/15/2014 01:14:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "hwinterface" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (06/15/2014 01:14:19 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\hwinterface.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Microsoft Office Sessions:
=========================
Error: (06/16/2014 08:44:59 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/15/2014 10:38:35 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/14/2014 10:12:04 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/13/2014 09:23:54 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: IETester.exe0.5.2.0141401cf86d69ea2fa2b10C:\Program Files (x86)\Core Services\IETester\IETester.exeab0b1179-f2cb-11e3-80a3-50465da085f7
Error: (06/13/2014 08:31:16 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/12/2014 08:33:52 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/11/2014 08:38:30 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/10/2014 08:03:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Monotype.SkyFonts.Service.exe1.0.5263.36015538892fdKERNELBASE.dll6.1.7601.184095315a05ae0434352000000000000940da3401cf84716f05b22bC:\Program Files\Monotype\SkyFonts\Monotype.SkyFonts.Service.exeC:\Windows\system32\KERNELBASE.dlle102cd35-f064-11e3-8e7a-50465da085f7
Error: (06/10/2014 08:02:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Monotype.SkyFonts.Service.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.InvalidOperationException
Stapel:
bei System.ServiceProcess.ServiceController.Start(System.String[])
bei Monotype.SkyFonts.Service.SkyFontsService.eval_c()
bei Monotype.SkyFonts.Service.SkyFontsService.Main(System.String[])
Error: (06/10/2014 08:01:15 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
==================== Memory info ===========================
Percentage of memory in use: 19%
Total physical RAM: 16317.47 MB
Available physical RAM: 13159.69 MB
Total Pagefile: 32633.13 MB
Available Pagefile: 29403.06 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:195.31 GB) (Free:81.74 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:736.2 GB) (Free:114.86 GB) NTFS
Drive e: (PCWELT_2_2014) (CDROM) (Total:2.04 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 6E012E8D)
Partition 1: (Active) - (Size=195 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=736 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Gmer.txt Code:
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-06-16 14:06:00
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-3 ST1000DM005_HD103SJ rev.1AJ10001 931,51GB
Running: Gmer-19357.exe; Driver: C:\Users\Abalone\AppData\Local\Temp\kwliypow.sys
---- User code sections - GMER 2.1 ----
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 322 0000000072091a22 2 bytes [09, 72]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 496 0000000072091ad0 2 bytes [09, 72]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 552 0000000072091b08 2 bytes [09, 72]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 730 0000000072091bba 2 bytes [09, 72]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 762 0000000072091bda 2 bytes [09, 72]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000762a1465 2 bytes [2A, 76]
.text C:\Windows\SysWOW64\PnkBstrA.exe[1984] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000762a14bb 2 bytes [2A, 76]
.text ... * 2
.text C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe[1444] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 00000000762a1465 2 bytes [2A, 76]
.text C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe[1444] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000762a14bb 2 bytes [2A, 76]
.text ... * 2
---- Threads - GMER 2.1 ----
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1828] 0000000077182e65
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1840] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1844] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1848] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1852] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1856] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1860] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1864] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1868] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1872] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1876] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1884] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1888] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1892] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1896] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1900] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1904] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1912] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1920] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1924] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1928] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1932] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1956] 0000000077183e85
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1968] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:1976] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:2044] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:648] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:348] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:2152] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:2164] 0000000072c429e1
Thread C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [1792:3068] 0000000077183e85
---- Processes - GMER 2.1 ----
Library C:\Users\Abalone\AppData\Roaming\Copy\overlay\CopyShExt.dll (*** suspicious ***) @ C:\Windows\Explorer.EXE [2056] (Copy Shell Extensions/Barracuda Networks, Inc.)(2013-04-06 12:54:04) 000007fef7620000
Library C:\Users\Abalone\AppData\Roaming\Copy\overlay\Brt.dll (*** suspicious ***) @ C:\Windows\Explorer.EXE [2056](2013-04-06 12:54:04) 000007fef5990000
---- EOF - GMER 2.1 ---- (Im "Erste-Hilfe"-Text steht drin, man solle nicht auf seinen eigenen Thread antworten, da er sonst als "in Bearbeitung" erscheint und evtl. ignoriert wird - daher hatte ich auf eine Aufsplittung verzichtet.)
Ciao
Abalone |