larstimralf | 29.08.2013 23:52 | FRST
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-08-2013
Ran by TROLL (administrator) on 30-08-2013 00:42:27
Running from C:\Users\TROLL\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\SmartView\SmartViewService.exe
(VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\SmartView Software Updater\WCUService.exe
(AMD) C:\Windows\system32\atieclxx.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
() C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
() C:\Program Files (x86)\DeviceVM\SmartView\SmartViewAgent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Comodo Security Solutions Inc.) C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\COMODO\GeekBuddy\unit_manager.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\COMODO\GeekBuddy\unit.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\loggingserver.exe
() C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
() C:\Users\TROLL\Downloads\kzrix6qj.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [COMODO Internet Security] - C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1502424 2013-07-08] (COMODO)
HKCU\...\Run: [ASRockIES] - [x]
HKCU\...\Run: [zASRockInstantBoot] - [x]
HKCU\...\Run: [AdobeBridge] - [x]
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKCU\...\Policies\system: [EnableLUA] 0
MountPoints2: {3de544e5-f451-11e2-9196-bc5ff47ff94f} - G:\Autorun.exe
MountPoints2: {ace32106-9e2a-11e2-b454-806e6f6e6963} - F:\Autorun.exe
MountPoints2: {c3c3ab01-a1fa-11e2-9e38-f9b6fc272bc9} - I:\Autorun.exe
HKLM-x32\...\Run: [SmartviewAgent] - C:\Program Files (x86)\DeviceVM\SmartView\SmartViewAgent.exe [948504 2010-09-02] ()
HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] - C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-09-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5199984 2011-06-20] (VIA)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [vProt] - C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2314416 2013-08-29] ()
HKLM-x32\...\Run: [PWRISOVM.EXE] - C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [337432 2013-07-03] (Power Software Ltd)
HKLM-x32\...\Run: [gbrspcontrol] - C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [1851088 2013-05-30] (Comodo Security Solutions, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVer HID Receiver.lnk
ShortcutTarget: AVer HID Receiver.lnk -> C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Start GeekBuddy.lnk
ShortcutTarget: Start GeekBuddy.lnk -> C:\Program Files (x86)\Comodo\GeekBuddy\launcher.exe (Comodo Security Solutions Inc.)
Startup: C:\Users\TROLL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
URLSearchHook: (No Name) - {0F3DC9E0-C459-4a40-BCF8-747BD9322E10} - No File
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://mysearch.avg.com/search?cid={9A980E5A-DC5E-4074-BDEC-183A00F9AB9E}&mid=09a4cce22a6b47d3b22c6d16b29b10bc-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=de&ds=st011&pr=sa&d=2013-07-24 14:03:02&v=15.3.0.11&pid=safeguard&sg=0&sap=dsp&q={searchTerms}
BHO-x32: SmartView VisualBookmark - {0E5680D1-BF44-4929-94AF-FD30D784AD1D} - C:\Program Files (x86)\DeviceVM\SmartView\SmartView.dll (DeviceVM, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll (AVG Secure Search)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{F8EE2015-E076-467A-88F9-A630C895A9BE}: [NameServer]156.154.70.25,156.154.71.25
FireFox:
========
FF ProfilePath: C:\Users\TROLL\AppData\Roaming\Mozilla\Firefox\Profiles\o9lisw2s.default
FF SelectedSearchEngine: AVG Secure Search
FF Homepage: hxxp://mysearch.avg.com/?cid={9A980E5A-DC5E-4074-BDEC-183A00F9AB9E}&mid=09a4cce22a6b47d3b22c6d16b29b10bc-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=de&ds=st011&pr=sa&d=2013-07-24 14:03:02&v=15.3.0.11&pid=safeguard&sg=0&sap=hp
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.5.0\\npsitesafety.dll (AVG Technologies)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Users\TROLL\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll (Amazon.com, Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wikipedia-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\TROLL\AppData\Roaming\Mozilla\Firefox\Profiles\o9lisw2s.default\Extensions\ich@maltegoetz.de
FF Extension: extension - C:\Users\TROLL\AppData\Roaming\Mozilla\Firefox\Profiles\o9lisw2s.default\Extensions\extension@hidemyass.com.xpi
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2
FF Extension: AVG SafeGuard toolbar - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\15.5.0.2
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-09-28] (Advanced Micro Devices, Inc.)
S4 AVerRemote; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe [344064 2009-04-08] (AVerMedia)
S4 AVerScheduleService; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe [405504 2008-12-10] ()
S4 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [395136 2011-10-19] (cFos Software GmbH)
R2 CLPSLauncher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [70352 2013-07-24] (Comodo Security Solutions Inc.)
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [6199520 2013-07-08] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [158936 2013-06-18] (COMODO)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2094216 2013-05-29] ()
R2 GeekBuddyRSP; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [1851088 2013-05-30] (Comodo Security Solutions, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-04-29] ()
R2 SmartViewService; C:\Program Files (x86)\DeviceVM\SmartView\SmartViewService.exe [125216 2010-09-02] (DeviceVM, Inc.)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-06-14] (VIA Technologies, Inc.)
R2 vToolbarUpdater15.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [1643184 2013-08-29] (AVG Secure Search)
R2 WCUService; C:\Program Files (x86)\DeviceVM\SmartView Software Updater\WCUService.exe [456976 2010-09-02] (DeviceVM, Inc.)
==================== Drivers (Whitelisted) ====================
R2 AODDriver4.2; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [57472 2012-04-09] (Advanced Micro Devices)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [45856 2013-08-29] (AVG Technologies)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [23168 2013-06-18] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [708632 2013-07-08] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [48360 2013-06-18] (COMODO)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-07-24] (DT Soft Ltd)
S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2013-07-16] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-04-05] (FNet Co., Ltd.)
R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [96800 2013-06-18] (COMODO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 TRIDCap; C:\Windows\System32\DRIVERS\AVerTM62_x64.sys [759296 2009-07-15] (AVerMedia TECHNOLOGIES, Inc. )
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
U3 pgloipod; \??\C:\Users\TROLL\AppData\Local\Temp\pgloipod.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-30 00:35 - 2013-08-30 00:35 - 01579080 _____ (Farbar) C:\Users\TROLL\Downloads\FRST64.exe
2013-08-30 00:35 - 2013-08-30 00:35 - 00377856 _____ C:\Users\TROLL\Downloads\kzrix6qj.exe
2013-08-30 00:35 - 2013-08-30 00:35 - 00000000 ____D C:\FRST
2013-08-30 00:31 - 2013-08-30 00:34 - 00000472 _____ C:\Users\TROLL\Downloads\defogger_disable.log
2013-08-30 00:31 - 2013-08-30 00:31 - 00086322 _____ C:\Users\TROLL\Desktop\Extras.Txt
2013-08-30 00:31 - 2013-08-30 00:31 - 00000000 _____ C:\Users\TROLL\defogger_reenable
2013-08-30 00:30 - 2013-08-30 00:30 - 00050477 _____ C:\Users\TROLL\Downloads\Defogger.exe
2013-08-30 00:29 - 2013-08-30 00:29 - 00088086 _____ C:\Users\TROLL\Desktop\OTL.Txt
2013-08-30 00:28 - 2013-08-30 00:28 - 00086322 _____ C:\Users\TROLL\Downloads\Extras.Txt
2013-08-30 00:27 - 2013-08-30 00:27 - 00088086 _____ C:\Users\TROLL\Downloads\OTL.Txt
2013-08-30 00:26 - 2012-02-04 00:13 - 00000000 ____D C:\Users\TROLL\Desktop\HttpDosTool
2013-08-30 00:25 - 2013-08-30 00:26 - 07274816 _____ C:\Users\TROLL\Downloads\AnonymousEducation_HttpDosTool.zip
2013-08-30 00:18 - 2013-08-30 00:18 - 00602112 _____ (OldTimer Tools) C:\Users\TROLL\Downloads\OTL.exe
2013-08-30 00:14 - 2013-08-30 00:14 - 00024744 _____ C:\Users\TROLL\Desktop\CisReport_v6.2.285401.2860_20130830-001401.zip
2013-08-30 00:13 - 2013-08-30 00:13 - 00742400 _____ C:\Users\TROLL\Downloads\UNKNOW.exe
2013-08-30 00:01 - 2013-08-30 00:01 - 00986468 _____ (A Software Plus ) C:\Users\TROLL\Downloads\AutoClickerTyperSetup.exe
2013-08-30 00:01 - 2013-08-30 00:01 - 00001127 _____ C:\Users\TROLL\Desktop\Auto Clicker Typer.lnk
2013-08-30 00:01 - 2013-08-30 00:01 - 00000000 ____D C:\Program Files (x86)\Auto Clicker Typer
2013-08-29 23:53 - 2013-08-29 23:53 - 00000114 _____ C:\Users\TROLL\SciTE.session
2013-08-29 23:52 - 2013-08-29 23:52 - 07376640 _____ (AutoIt Team) C:\Users\TROLL\Downloads\autoit-v338-setup.exe
2013-08-29 23:52 - 2013-08-29 23:52 - 00000000 ____D C:\Program Files (x86)\AutoIt3
2013-08-29 21:29 - 2013-08-29 21:44 - 433885740 _____ C:\Users\TROLL\Downloads\gta4_realistic_car_pack_ogiogi93_v4.rar
2013-08-29 21:24 - 2013-08-29 21:24 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2013-08-29 21:22 - 2013-08-29 21:22 - 00000812 _____ C:\Users\Public\Desktop\Grand Theft Auto IV.lnk
2013-08-29 21:03 - 2013-08-29 21:03 - 00000701 _____ C:\Users\Public\Desktop\Rockstar Games Social Club.lnk
2013-08-29 13:07 - 2013-08-29 13:07 - 00003929 _____ C:\Users\TROLL\Desktop\LSPD - Befehle.txt
2013-08-29 13:03 - 2013-08-29 13:03 - 00034712 _____ C:\Users\TROLL\Downloads\69ea72aefee7ada6060f8ac7d2a53b8a.dlc
2013-08-29 12:23 - 2013-03-28 19:22 - 00003556 _____ C:\Users\TROLL\Downloads\How to Burn XGD3 Games.txt
2013-08-29 12:23 - 2012-11-10 07:30 - 00001787 _____ C:\Users\TROLL\Downloads\XboxPirate.eu Exclusive Upload- Read this.txt
2013-08-29 12:23 - 2012-01-14 15:44 - 00000049 _____ C:\Users\TROLL\Downloads\Visit XboxPirate.eu for Latest XBOX360 games.url
2013-08-29 03:06 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-29 03:06 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-29 03:06 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-29 03:06 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-29 03:06 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-29 03:06 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-29 03:06 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-29 03:06 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-29 03:06 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-29 03:06 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-29 03:06 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-29 03:06 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-29 03:06 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-29 03:06 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-29 00:30 - 2013-08-29 00:30 - 03469871 _____ (LIGHTNING UK!) C:\Users\TROLL\Downloads\SetupImgBurn_2.5.8.0.exe
2013-08-29 00:24 - 2013-08-29 00:24 - 00004863 _____ C:\Users\TROLL\Downloads\751-Payday2.rar
2013-08-29 00:22 - 2013-08-29 00:22 - 00012632 _____ C:\Users\TROLL\Downloads\GF-556.dlc
2013-08-29 00:15 - 2013-08-29 00:15 - 00005160 _____ C:\Users\TROLL\Downloads\556-HitmanHD.rar
2013-08-29 00:15 - 2013-08-29 00:15 - 00004685 _____ C:\Users\TROLL\Downloads\756-Saints Row 4.rar
2013-08-28 23:01 - 2013-08-28 23:02 - 00000000 ____D C:\Users\TROLL\Desktop\Samp Keybind
2013-08-28 23:01 - 2013-08-28 23:01 - 00000000 ____D C:\Users\TROLL\Downloads\LSPD Keybinder
2013-08-28 22:03 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-28 22:03 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-28 22:03 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-28 22:03 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-28 22:03 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-28 22:03 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-28 22:03 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-28 22:03 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-28 22:03 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-28 22:03 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-28 22:03 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-28 22:03 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-28 22:03 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-28 22:03 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-28 22:03 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-28 22:03 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-28 21:12 - 2013-08-29 04:01 - 00000000 ____D C:\Program Files (x86)\GRP Fairplaylauncher
2013-08-28 21:12 - 2013-08-28 21:13 - 00001151 _____ C:\Users\Public\Desktop\GRP Fairplaylauncher.lnk
2013-08-28 20:36 - 2013-08-28 20:36 - 00000000 ____D C:\Windows\System32\Tasks\COMODO
2013-08-28 20:35 - 2013-08-30 00:34 - 01250529 _____ C:\Windows\system32\Drivers\sfi.dat
2013-08-28 20:35 - 2013-08-29 07:05 - 00001985 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2013-08-28 20:35 - 2013-08-28 20:35 - 00001899 _____ C:\Users\Public\Desktop\Virtual Comodo Dragon.lnk
2013-08-28 20:35 - 2013-08-28 20:35 - 00000593 _____ C:\Users\Public\Desktop\Gemeinsamer Bereich.lnk
2013-08-28 20:34 - 2013-08-29 06:38 - 00002043 _____ C:\Users\Public\Desktop\GeekBuddy.lnk
2013-08-28 20:34 - 2013-08-28 20:35 - 00000000 ___SD C:\ProgramData\Shared Space
2013-08-28 20:34 - 2013-08-28 20:35 - 00000000 ____D C:\ProgramData\COMODO
2013-08-28 20:34 - 2013-08-28 20:34 - 00056072 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll
2013-08-28 20:34 - 2013-08-28 20:34 - 00047368 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll
2013-08-28 20:34 - 2013-08-28 20:34 - 00001116 _____ C:\Users\Public\Desktop\Comodo Dragon.lnk
2013-08-28 20:34 - 2013-08-28 20:34 - 00000000 ____D C:\Users\TROLL\AppData\Local\Comodo
2013-08-28 20:34 - 2013-08-28 20:34 - 00000000 ____D C:\Program Files\COMODO
2013-08-28 20:33 - 2013-08-28 20:34 - 00000000 ____D C:\Program Files (x86)\Comodo
2013-08-28 20:33 - 2013-08-28 20:33 - 00000000 ____D C:\ProgramData\Comodo Downloader
2013-08-28 20:18 - 2013-08-28 20:29 - 00000600 _____ C:\Users\TROLL\AppData\Local\PUTTY.RND
2013-08-28 20:16 - 2013-08-28 20:16 - 00495616 _____ (Simon Tatham) C:\Users\TROLL\Downloads\putty_0.63.exe
2013-08-28 20:14 - 2013-08-28 20:33 - 149029376 _____ (COMODO) C:\Users\TROLL\Downloads\cispremium_installer_6.2.exe
2013-08-28 20:13 - 2013-08-28 20:13 - 00089947 _____ C:\ProgramData\1377713562.bdinstall.bin
2013-08-28 20:12 - 2013-08-28 20:12 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\QuickScan
2013-08-28 20:08 - 2013-08-28 20:08 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2013-08-28 20:07 - 2013-08-28 20:07 - 05698720 _____ C:\Users\TROLL\Downloads\bitdefender_tsecurity.exe
2013-08-28 19:52 - 2013-08-28 19:58 - 00000000 ____D C:\Windows\system32\W7NBC
2013-08-28 19:52 - 2010-12-11 19:26 - 00760320 _____ (door2windows) C:\Users\TROLL\Desktop\Windows 7 Navigation Buttons Customizer.exe
2013-08-28 19:51 - 2010-11-20 15:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll.backup
2013-08-28 19:51 - 2009-07-14 03:41 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll.backup
2013-08-28 19:51 - 2009-07-14 03:41 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll.backup
2013-08-28 19:50 - 2013-08-28 19:50 - 01978232 _____ C:\Users\TROLL\Downloads\1304452718_dream_for_win7_by_giannisgx89-d3f5wzm.rar
2013-08-28 19:50 - 2011-05-03 11:31 - 00000000 ____D C:\Users\TROLL\Desktop\Dream
2013-08-28 19:48 - 2013-08-28 19:48 - 00207297 _____ C:\Users\TROLL\Downloads\Windows 7 Navigation Buttons Customizer.zip
2013-08-28 18:48 - 2013-08-28 19:36 - 00000000 ____D C:\Users\TROLL\Desktop\Pandora2 Client
2013-08-28 18:01 - 2013-08-28 18:01 - 00675988 _____ C:\Users\TROLL\Desktop\Minecraft.exe
2013-08-28 17:49 - 2013-08-29 18:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-13 01:00 - 2012-06-18 17:37 - 00000000 ____D C:\Users\TROLL\Desktop\Map Editor
2013-08-11 19:58 - 2013-08-11 19:58 - 00001053 _____ C:\Users\TROLL\Desktop\Notepad++.lnk
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\Notepad++
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Program Files (x86)\Notepad++
2013-08-11 19:56 - 2013-08-11 20:26 - 00000661 _____ C:\Users\TROLL\Desktop\Befehler.txt
2013-08-08 23:07 - 2013-08-08 23:07 - 00000746 _____ C:\Users\TROLL\Desktop\GTA San Andreas SinglePlayer.lnk
2013-08-08 23:07 - 2013-08-08 23:07 - 00000738 _____ C:\Users\TROLL\Desktop\GTA San Andreas MultiPlayer.lnk
2013-08-08 23:03 - 2013-08-08 23:03 - 00000000 ____D C:\Users\TROLL\Neuer Ordner
2013-08-08 14:24 - 2013-08-08 14:29 - 00000000 ____D C:\Users\TROLL\Desktop\Neuer Ordner (3)
2013-08-07 21:56 - 2013-08-29 03:27 - 00001408 _____ C:\Users\TROLL\Desktop\Games.lnk
2013-08-07 21:56 - 2013-08-29 03:27 - 00001408 _____ C:\Users\TROLL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk
2013-08-07 19:15 - 2013-08-12 14:33 - 00000000 ____D C:\Users\TROLL\Desktop\Server
2013-08-07 14:33 - 2013-08-29 03:02 - 00000000 ____D C:\xampp
2013-08-07 14:32 - 2013-08-06 21:28 - 00853352 _____ C:\Users\TROLL\Desktop\AOF+Admin.pwn
2013-08-07 11:50 - 2013-08-07 11:50 - 00000000 ____D C:\Users\TROLL\Desktop\minecraft
2013-08-07 11:50 - 2012-06-11 22:46 - 00000000 ____D C:\Users\TROLL\Desktop\The Godfather
2013-08-07 11:48 - 2013-08-07 11:48 - 00006172 _____ C:\AdwCleaner[R2].txt
2013-08-06 21:15 - 2013-08-07 12:35 - 00000000 ____D C:\Users\TROLL\Desktop\scriptfiles
2013-08-06 21:05 - 2013-08-06 21:14 - 00000000 ____D C:\Users\TROLL\Desktop\Neuer Ordner
2013-08-06 20:53 - 2011-11-11 16:14 - 02474898 _____ C:\Users\TROLL\Desktop\test.amx
2013-08-06 20:53 - 2011-11-11 16:14 - 02136671 _____ C:\Users\TROLL\Desktop\test.pwn
2013-08-06 20:44 - 2011-11-11 16:20 - 00000381 _____ C:\Users\TROLL\Desktop\server.cfg
==================== One Month Modified Files and Folders =======
2013-08-30 00:40 - 2013-04-16 18:39 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\Skype
2013-08-30 00:40 - 2013-04-05 22:16 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\TS3Client
2013-08-30 00:36 - 2013-08-30 00:36 - 00022540 _____ C:\Users\TROLL\Downloads\Addition.txt
2013-08-30 00:35 - 2013-08-30 00:35 - 01579080 _____ (Farbar) C:\Users\TROLL\Downloads\FRST64.exe
2013-08-30 00:35 - 2013-08-30 00:35 - 00377856 _____ C:\Users\TROLL\Downloads\kzrix6qj.exe
2013-08-30 00:35 - 2013-08-30 00:35 - 00000000 ____D C:\FRST
2013-08-30 00:34 - 2013-08-30 00:31 - 00000472 _____ C:\Users\TROLL\Downloads\defogger_disable.log
2013-08-30 00:34 - 2013-08-28 20:35 - 01250529 _____ C:\Windows\system32\Drivers\sfi.dat
2013-08-30 00:31 - 2013-08-30 00:31 - 00086322 _____ C:\Users\TROLL\Desktop\Extras.Txt
2013-08-30 00:31 - 2013-08-30 00:31 - 00000000 _____ C:\Users\TROLL\defogger_reenable
2013-08-30 00:31 - 2013-04-05 22:00 - 00000000 ____D C:\Users\TROLL
2013-08-30 00:30 - 2013-08-30 00:30 - 00050477 _____ C:\Users\TROLL\Downloads\Defogger.exe
2013-08-30 00:29 - 2013-08-30 00:29 - 00088086 _____ C:\Users\TROLL\Desktop\OTL.Txt
2013-08-30 00:28 - 2013-08-30 00:28 - 00086322 _____ C:\Users\TROLL\Downloads\Extras.Txt
2013-08-30 00:27 - 2013-08-30 00:27 - 00088086 _____ C:\Users\TROLL\Downloads\OTL.Txt
2013-08-30 00:26 - 2013-08-30 00:25 - 07274816 _____ C:\Users\TROLL\Downloads\AnonymousEducation_HttpDosTool.zip
2013-08-30 00:18 - 2013-08-30 00:18 - 00602112 _____ (OldTimer Tools) C:\Users\TROLL\Downloads\OTL.exe
2013-08-30 00:15 - 2013-04-05 22:43 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-30 00:14 - 2013-08-30 00:14 - 00024744 _____ C:\Users\TROLL\Desktop\CisReport_v6.2.285401.2860_20130830-001401.zip
2013-08-30 00:13 - 2013-08-30 00:13 - 00742400 _____ C:\Users\TROLL\Downloads\UNKNOW.exe
2013-08-30 00:01 - 2013-08-30 00:01 - 00986468 _____ (A Software Plus ) C:\Users\TROLL\Downloads\AutoClickerTyperSetup.exe
2013-08-30 00:01 - 2013-08-30 00:01 - 00001127 _____ C:\Users\TROLL\Desktop\Auto Clicker Typer.lnk
2013-08-30 00:01 - 2013-08-30 00:01 - 00000000 ____D C:\Program Files (x86)\Auto Clicker Typer
2013-08-29 23:53 - 2013-08-29 23:53 - 00000114 _____ C:\Users\TROLL\SciTE.session
2013-08-29 23:52 - 2013-08-29 23:52 - 07376640 _____ (AutoIt Team) C:\Users\TROLL\Downloads\autoit-v338-setup.exe
2013-08-29 23:52 - 2013-08-29 23:52 - 00000000 ____D C:\Program Files (x86)\AutoIt3
2013-08-29 23:52 - 2009-07-14 20:18 - 00000000 ____D C:\Windows\ShellNew
2013-08-29 23:25 - 2013-04-05 21:57 - 01970909 _____ C:\Windows\WindowsUpdate.log
2013-08-29 21:44 - 2013-08-29 21:29 - 433885740 _____ C:\Users\TROLL\Downloads\gta4_realistic_car_pack_ogiogi93_v4.rar
2013-08-29 21:24 - 2013-08-29 21:24 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2013-08-29 21:23 - 2013-07-24 14:12 - 00035026 _____ C:\Windows\DirectX.log
2013-08-29 21:22 - 2013-08-29 21:22 - 00000812 _____ C:\Users\Public\Desktop\Grand Theft Auto IV.lnk
2013-08-29 21:06 - 2013-04-05 22:20 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-08-29 21:03 - 2013-08-29 21:03 - 00000701 _____ C:\Users\Public\Desktop\Rockstar Games Social Club.lnk
2013-08-29 18:26 - 2013-08-28 17:49 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-29 18:26 - 2013-07-24 14:02 - 00045856 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2013-08-29 18:26 - 2013-07-24 14:02 - 00003725 _____ C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2013-08-29 18:26 - 2013-07-24 14:02 - 00000000 ____D C:\Program Files (x86)\AVG SafeGuard toolbar
2013-08-29 17:58 - 2013-04-07 15:32 - 00000000 ____D C:\Users\TROLL\AppData\Local\CrashDumps
2013-08-29 13:24 - 2009-07-14 19:58 - 00653928 _____ C:\Windows\system32\perfh007.dat
2013-08-29 13:24 - 2009-07-14 19:58 - 00129800 _____ C:\Windows\system32\perfc007.dat
2013-08-29 13:24 - 2009-07-14 07:13 - 01498506 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-29 13:07 - 2013-08-29 13:07 - 00003929 _____ C:\Users\TROLL\Desktop\LSPD - Befehle.txt
2013-08-29 13:03 - 2013-08-29 13:03 - 00034712 _____ C:\Users\TROLL\Downloads\69ea72aefee7ada6060f8ac7d2a53b8a.dlc
2013-08-29 10:38 - 2013-04-05 22:43 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\.minecraft
2013-08-29 07:39 - 2013-07-17 06:57 - 00004005 _____ C:\Windows\setupact.log
2013-08-29 07:05 - 2013-08-28 20:35 - 00001985 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2013-08-29 06:38 - 2013-08-28 20:34 - 00002043 _____ C:\Users\Public\Desktop\GeekBuddy.lnk
2013-08-29 04:03 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-08-29 04:01 - 2013-08-28 21:12 - 00000000 ____D C:\Program Files (x86)\GRP Fairplaylauncher
2013-08-29 03:34 - 2009-07-14 06:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-29 03:34 - 2009-07-14 06:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-29 03:27 - 2013-08-07 21:56 - 00001408 _____ C:\Users\TROLL\Desktop\Games.lnk
2013-08-29 03:27 - 2013-08-07 21:56 - 00001408 _____ C:\Users\TROLL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk
2013-08-29 03:25 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-29 03:24 - 2013-07-18 18:24 - 00003276 _____ C:\Windows\PFRO.log
2013-08-29 03:02 - 2013-08-07 14:33 - 00000000 ____D C:\xampp
2013-08-29 03:02 - 2013-07-23 19:09 - 00000000 ____D C:\Windows\system32\MRT
2013-08-29 03:00 - 2013-04-06 02:34 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-29 02:00 - 2013-04-06 19:36 - 00000000 ____D C:\Users\TROLL\AppData\Local\Adobe
2013-08-29 00:30 - 2013-08-29 00:30 - 03469871 _____ (LIGHTNING UK!) C:\Users\TROLL\Downloads\SetupImgBurn_2.5.8.0.exe
2013-08-29 00:24 - 2013-08-29 00:24 - 00004863 _____ C:\Users\TROLL\Downloads\751-Payday2.rar
2013-08-29 00:22 - 2013-08-29 00:22 - 00012632 _____ C:\Users\TROLL\Downloads\GF-556.dlc
2013-08-29 00:22 - 2013-05-24 18:59 - 00000000 ____D C:\Program Files (x86)\JDownloader
2013-08-29 00:15 - 2013-08-29 00:15 - 00005160 _____ C:\Users\TROLL\Downloads\556-HitmanHD.rar
2013-08-29 00:15 - 2013-08-29 00:15 - 00004685 _____ C:\Users\TROLL\Downloads\756-Saints Row 4.rar
2013-08-28 23:02 - 2013-08-28 23:01 - 00000000 ____D C:\Users\TROLL\Desktop\Samp Keybind
2013-08-28 23:01 - 2013-08-28 23:01 - 00000000 ____D C:\Users\TROLL\Downloads\LSPD Keybinder
2013-08-28 22:49 - 2013-04-05 22:14 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2013-08-28 21:13 - 2013-08-28 21:12 - 00001151 _____ C:\Users\Public\Desktop\GRP Fairplaylauncher.lnk
2013-08-28 20:36 - 2013-08-28 20:36 - 00000000 ____D C:\Windows\System32\Tasks\COMODO
2013-08-28 20:35 - 2013-08-28 20:35 - 00001899 _____ C:\Users\Public\Desktop\Virtual Comodo Dragon.lnk
2013-08-28 20:35 - 2013-08-28 20:35 - 00000593 _____ C:\Users\Public\Desktop\Gemeinsamer Bereich.lnk
2013-08-28 20:35 - 2013-08-28 20:34 - 00000000 ___SD C:\ProgramData\Shared Space
2013-08-28 20:35 - 2013-08-28 20:34 - 00000000 ____D C:\ProgramData\COMODO
2013-08-28 20:34 - 2013-08-28 20:34 - 00056072 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll
2013-08-28 20:34 - 2013-08-28 20:34 - 00047368 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll
2013-08-28 20:34 - 2013-08-28 20:34 - 00001116 _____ C:\Users\Public\Desktop\Comodo Dragon.lnk
2013-08-28 20:34 - 2013-08-28 20:34 - 00000000 ____D C:\Users\TROLL\AppData\Local\Comodo
2013-08-28 20:34 - 2013-08-28 20:34 - 00000000 ____D C:\Program Files\COMODO
2013-08-28 20:34 - 2013-08-28 20:33 - 00000000 ____D C:\Program Files (x86)\Comodo
2013-08-28 20:33 - 2013-08-28 20:33 - 00000000 ____D C:\ProgramData\Comodo Downloader
2013-08-28 20:33 - 2013-08-28 20:14 - 149029376 _____ (COMODO) C:\Users\TROLL\Downloads\cispremium_installer_6.2.exe
2013-08-28 20:29 - 2013-08-28 20:18 - 00000600 _____ C:\Users\TROLL\AppData\Local\PUTTY.RND
2013-08-28 20:16 - 2013-08-28 20:16 - 00495616 _____ (Simon Tatham) C:\Users\TROLL\Downloads\putty_0.63.exe
2013-08-28 20:13 - 2013-08-28 20:13 - 00089947 _____ C:\ProgramData\1377713562.bdinstall.bin
2013-08-28 20:12 - 2013-08-28 20:12 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\QuickScan
2013-08-28 20:08 - 2013-08-28 20:08 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2013-08-28 20:07 - 2013-08-28 20:07 - 05698720 _____ C:\Users\TROLL\Downloads\bitdefender_tsecurity.exe
2013-08-28 19:58 - 2013-08-28 19:52 - 00000000 ____D C:\Windows\system32\W7NBC
2013-08-28 19:55 - 2009-07-14 07:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-28 19:54 - 2013-04-05 22:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-28 19:51 - 2013-04-30 18:21 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2013-08-28 19:51 - 2009-07-14 01:55 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-08-28 19:51 - 2009-07-14 01:54 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll
2013-08-28 19:50 - 2013-08-28 19:50 - 01978232 _____ C:\Users\TROLL\Downloads\1304452718_dream_for_win7_by_giannisgx89-d3f5wzm.rar
2013-08-28 19:48 - 2013-08-28 19:48 - 00207297 _____ C:\Users\TROLL\Downloads\Windows 7 Navigation Buttons Customizer.zip
2013-08-28 19:36 - 2013-08-28 18:48 - 00000000 ____D C:\Users\TROLL\Desktop\Pandora2 Client
2013-08-28 18:01 - 2013-08-28 18:01 - 00675988 _____ C:\Users\TROLL\Desktop\Minecraft.exe
2013-08-12 14:33 - 2013-08-07 19:15 - 00000000 ____D C:\Users\TROLL\Desktop\Server
2013-08-11 20:26 - 2013-08-11 19:56 - 00000661 _____ C:\Users\TROLL\Desktop\Befehler.txt
2013-08-11 19:58 - 2013-08-11 19:58 - 00001053 _____ C:\Users\TROLL\Desktop\Notepad++.lnk
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\Notepad++
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Users\TROLL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-08-11 19:58 - 2013-08-11 19:58 - 00000000 ____D C:\Program Files (x86)\Notepad++
2013-08-09 01:15 - 2013-07-26 12:21 - 00000000 ____D C:\Users\TROLL\AppData\Local\join.me
2013-08-08 23:07 - 2013-08-08 23:07 - 00000746 _____ C:\Users\TROLL\Desktop\GTA San Andreas SinglePlayer.lnk
2013-08-08 23:07 - 2013-08-08 23:07 - 00000738 _____ C:\Users\TROLL\Desktop\GTA San Andreas MultiPlayer.lnk
2013-08-08 23:03 - 2013-08-08 23:03 - 00000000 ____D C:\Users\TROLL\Neuer Ordner
2013-08-08 14:29 - 2013-08-08 14:24 - 00000000 ____D C:\Users\TROLL\Desktop\Neuer Ordner (3)
2013-08-08 13:58 - 2013-04-05 22:01 - 00000000 ____D C:\Users\TROLL\AppData\Local\VirtualStore
2013-08-07 12:35 - 2013-08-06 21:15 - 00000000 ____D C:\Users\TROLL\Desktop\scriptfiles
2013-08-07 11:50 - 2013-08-07 11:50 - 00000000 ____D C:\Users\TROLL\Desktop\minecraft
2013-08-07 11:48 - 2013-08-07 11:48 - 00006172 _____ C:\AdwCleaner[R2].txt
2013-08-06 21:28 - 2013-08-07 14:32 - 00853352 _____ C:\Users\TROLL\Desktop\AOF+Admin.pwn
2013-08-06 21:14 - 2013-08-06 21:05 - 00000000 ____D C:\Users\TROLL\Desktop\Neuer Ordner
Files to move or delete:
====================
C:\Users\TROLL\AppData\Local\Temp\drm_dyndata_7380014.dll
C:\Users\TROLL\AppData\Local\Temp\drm_dyndata_7410004.dll
C:\Users\TROLL\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\TROLL\AppData\Local\Temp\nsp6FC5.tmp.exe
C:\Users\TROLL\AppData\Local\Temp\oi_{7E883947-1BF2-46D0-B18F-10A719AC956E}.exe
C:\Users\TROLL\AppData\Local\Temp\safeguard.exe
C:\Users\TROLL\AppData\Local\Temp\SkypeSetup.exe
C:\Users\TROLL\AppData\Local\Temp\sonarinst.exe
C:\Users\TROLL\AppData\Local\Temp\upnp.exe
C:\Users\TROLL\AppData\Local\Temp\xmlUpdater.exe
C:\Users\TROLL\AppData\Local\Temp\{DADA7B37-ECC4-4471-9F16-42D63344075B}\_Setup.dll
C:\Users\TROLL\AppData\Local\Temp\{2F1D4754-5975-4DF0-89F1-517AA7BE7546}\_Setup.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_Desktop.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_Resource_de.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_Resource_en.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_Service.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\TeamViewer_StaticRes.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\tv_w32.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\tv_w32.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\tv_x64.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\tv_x64.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\uninstall.exe
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\x64\Teamviewer_PrintProcessor.dll
C:\Users\TROLL\AppData\Local\Temp\TeamViewer\Version8\outlook\TeamViewerMeetingAddIn.dll
C:\Users\TROLL\AppData\Local\Temp\SOERedist\DSETUP.dll
C:\Users\TROLL\AppData\Local\Temp\SOERedist\dsetup32.dll
C:\Users\TROLL\AppData\Local\Temp\SOERedist\DXSETUP.exe
C:\Users\TROLL\AppData\Local\Temp\SOERedist\dxwebsetup.exe
C:\Users\TROLL\AppData\Local\Temp\mtka_tmp\Alf.dll
C:\Users\TROLL\AppData\Local\Temp\mtka_tmp\DFA.dll
C:\Users\TROLL\AppData\Local\Temp\mtka_tmp\LaunchGTAIV_activation.exe
C:\Users\TROLL\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
C:\Users\TROLL\AppData\Local\Temp\be29e7f1-71ae-4703-50cb-1d52be512f51\twapi-be29e7f1-71ae-4703-50cb-1d52be512f51.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\avg-secure-search-installer.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ProgFiles\AVG SafeGuard toolbar\lip.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ProgFiles\AVG SafeGuard toolbar\PostInstall.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ProgFiles\AVG SafeGuard toolbar\Uninstall.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ProgFiles\AVG SafeGuard toolbar\vprot.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ProgFiles\AVG SafeGuard toolbar\14.0.0.12\AVG SafeGuard toolbar_toolbar.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ConfigFiles\avguidx.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\ConfigFiles\MachineIdCreator.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\avgdttbx.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\AVGRewardsWorker.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\DriverInstaller.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\DriverInstaller_64.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\npsitesafety.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\ScriptHelper.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\SiteSafety.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\ToolbarUpdater.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a04612\CommonFiles\AVG SafeGuard toolbar\ViProtocol.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\avg-secure-search-installer.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ProgFiles\AVG SafeGuard toolbar\lip.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ProgFiles\AVG SafeGuard toolbar\PostInstall.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ProgFiles\AVG SafeGuard toolbar\Uninstall.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ProgFiles\AVG SafeGuard toolbar\vprot.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ProgFiles\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ConfigFiles\avguidx.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\ConfigFiles\MachineIdCreator.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\avgdttbx.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\AVGRewardsWorker.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\DriverInstaller.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\DriverInstaller_64.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\helper.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\log4cplusU.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\loggingserver.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\npsitesafety.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\ScriptHelper.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\SiteSafety.dll
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\ToolbarUpdater.exe
C:\Users\TROLL\AppData\Local\Temp\avg_a01792\CommonFiles\AVG SafeGuard toolbar\ViProtocol.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-08-29 03:55
==================== End Of Log ============================ --- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-08-2013
Ran by TROLL at 2013-08-30 00:44:00
Running from C:\Users\TROLL\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
µTorrent (x32 Version: 3.3.0.29625)
Acrobat.com (x32 Version: 0.0.0)
Acrobat.com (x32 Version: 1.1.377)
Adobe AIR (x32 Version: 3.7.0.1530)
Adobe Download Assistant (x32 Version: 1.2.5)
Adobe Dreamweaver CS6 (x32 Version: 12)
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.202)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Help Manager (x32 Version: 4.0.244)
Adobe Photoshop CS6 (x32 Version: 13.0)
Adobe Reader 9 (x32 Version: 9.0.0)
Adobe Widget Browser (x32 Version: 2.0 Build 348)
Adobe Widget Browser (x32 Version: 2.0.348)
Airport Simulator 2013 Demo Version 1.0 (x32 Version: 1.0)
Amazon MP3-Downloader 1.0.18 (HKCU Version: 1.0.18)
AMD Accelerated Video Transcoding (Version: 12.5.100.20928)
AMD APP SDK Runtime (Version: 10.0.1016.4)
AMD Catalyst Install Manager (Version: 8.0.891.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
AMD Fuel (Version: 2012.0928.1532.26058)
AMD Media Foundation Decoders (Version: 1.0.70928.1539)
AMD VISION Engine Control Center (x32 Version: 2012.0928.1532.26058)
Apple Application Support (x32 Version: 2.3.3)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
ASRock App Charger v1.0.5
ASRock IES v2.1.38 (x32)
ASRock InstantBoot v1.29 (x32)
Auto Clicker Typer 1.0 (x32)
AutoIt v3.3.8.0 (x32)
AVer Media Center (x32 Version: 1.7)
AVerMedia H727 PCIe TV Tuner 1.12.64.7 (x32 Version: 1.12.64.7)
AVerMedia MCE Encoder x64 3.0.1.6 (x32 Version: 3.0.1.6)
AVerMedia Media Center Plug-ins 2.0.7.0 (x32 Version: 2.0.7.0)
AVG SafeGuard toolbar (x32 Version: 15.5.0.2)
Battlefield 3™ (x32 Version: 1.6.0.0)
Battlelog Web Plugins (x32 Version: 2.1.7)
Bonjour (Version: 3.0.0.10)
Bus-Simulator 2012 (x32)
Camtasia Studio 8 (x32 Version: 8.0.4.1060)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0928.1532.26058)
Catalyst Control Center InstallProxy (x32 Version: 2012.0928.1532.26058)
Catalyst Control Center Localization All (x32 Version: 2012.0928.1532.26058)
CCC Help Chinese Standard (x32 Version: 2012.0928.1531.26058)
CCC Help Chinese Traditional (x32 Version: 2012.0928.1531.26058)
CCC Help Czech (x32 Version: 2012.0928.1531.26058)
CCC Help Danish (x32 Version: 2012.0928.1531.26058)
CCC Help Dutch (x32 Version: 2012.0928.1531.26058)
CCC Help English (x32 Version: 2012.0928.1531.26058)
CCC Help Finnish (x32 Version: 2012.0928.1531.26058)
CCC Help French (x32 Version: 2012.0928.1531.26058)
CCC Help German (x32 Version: 2012.0928.1531.26058)
CCC Help Greek (x32 Version: 2012.0928.1531.26058)
CCC Help Hungarian (x32 Version: 2012.0928.1531.26058)
CCC Help Italian (x32 Version: 2012.0928.1531.26058)
CCC Help Japanese (x32 Version: 2012.0928.1531.26058)
CCC Help Korean (x32 Version: 2012.0928.1531.26058)
CCC Help Norwegian (x32 Version: 2012.0928.1531.26058)
CCC Help Polish (x32 Version: 2012.0928.1531.26058)
CCC Help Portuguese (x32 Version: 2012.0928.1531.26058)
CCC Help Russian (x32 Version: 2012.0928.1531.26058)
CCC Help Spanish (x32 Version: 2012.0928.1531.26058)
CCC Help Swedish (x32 Version: 2012.0928.1531.26058)
CCC Help Thai (x32 Version: 2012.0928.1531.26058)
CCC Help Turkish (x32 Version: 2012.0928.1531.26058)
ccc-utility64 (Version: 2012.0928.1532.26058)
CCleaner (Version: 4.00)
Cheat Engine 6.2 (x32)
Cinema 4D version R12 (x32 Version: R12)
Comodo Dragon (x32 Version: 27.0.4.0)
COMODO Internet Security Premium (Version: 6.2.20728.2847)
Cube World version 0.0.1 (x32 Version: 0.0.1)
CyberLink YouCam 5 (x32 Version: 5.0.0720)
DAEMON Tools Lite (x32 Version: 4.47.1.0333)
Driver San Francisco (x32 Version: 1.0.0.0)
DVDFab 9.0.4.2 (27/05/2013) (x32)
ESN Sonar (x32 Version: 0.70.4)
FileZilla Client 3.6.0.2 (x32 Version: 3.6.0.2)
Fraps (remove only) (x32)
GeekBuddy (x32 Version: 4.8.66)
GIMP 2.8.6 (Version: 2.8.6)
Grand Theft Auto IV (x32 Version: 1.00.0000)
Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0003.135)
Grand Theft Auto: Episodes From Liberty City (x32 Version: 1.1.0.0)
GRP Fairplaylauncher Version 0.3 (x32 Version: 0.3)
iTunes (Version: 11.0.2.26)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
JDownloader 0.9 (x32 Version: 0.9)
join.me (HKCU Version: 1.9.2.216)
LogMeIn Hamachi (x32 Version: 2.1.0.362)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Metin2 (x32)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Games for Windows - LIVE (x32 Version: 3.1.186.0)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.1.99.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000)
Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 23.0.1)
Notepad++ (x32 Version: 6.4.4)
NVIDIA Drivers (Version: 1.3)
NVIDIA PhysX v8.10.17 (x32 Version: 8.10.17)
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593)
Opera 12.15 (x32 Version: 12.15.1748)
Origin (x32 Version: 9.1.15.109)
Pando Media Booster (x32 Version: 2.6.0.9)
PDF Settings CS6 (x32 Version: 11.0)
PlanetSide 2 (HKCU Version: 1.0.3.183)
Platform (x32 Version: 1.36)
PowerISO (x32 Version: 5.6)
PunkBuster Services (x32 Version: 0.991)
Rainmeter (x32 Version: 2.3.3 r1522)
RocketDock 1.3.5 (x32)
Rockstar Games Social Club (x32 Version: 1.00.0000)
Schiff-Simulator 2012 Version 1.0 (x32 Version: 1.0)
Schwebebahn-Simulator 2013 Demo (x32)
Sirius MT2 Version 20.13 (x32 Version: 20.13)
Skype™ 6.6 (x32 Version: 6.6.106)
Skyrim Heavens by DanteJinx (x32 Version: 0.2)
SmartView for IE (x32 Version: 1.0.4.1)
SmartView Software Updater (x32 Version: 1.0.4.1)
Sound Blaster X-Fi MB (x32 Version: 1.0)
TeamSpeak 3 Client (Version: 3.0.11.1)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
us Mod Manager (Version: 0.45.4)
VIA Plattform-Geräte-Manager (x32 Version: 1.36)
Virtual Audio Cable 4.9
WinRAR 4.20 (64-Bit) (Version: 4.20.0)
XAMPP (x32 Version: 1.8.3-0)
XFast LAN v6.61 (Version: 6.61)
XFastUSB (x32 Version: 3.02.28)
==================== Restore Points =========================
29-08-2013 19:02:54 Installiert Rockstar Games Social Club
29-08-2013 19:06:08 Installiert Grand Theft Auto IV
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => C:\Windows\System32\ndfapi.dll [2009-07-14] (Microsoft Corporation)
Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => C:\Windows\System32\ndfapi.dll [2009-07-14] (Microsoft Corporation)
Task: {0BC50969-0971-4D54-AF0A-37098CB29918} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2013-07-08] (COMODO)
Task: {0C92D41E-0F03-43FF-83A9-E9B624960B2C} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2013-07-08] (COMODO)
Task: {236E912C-D69B-4062-8F0D-5AB92C2F18FD} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => C:\Windows\System32\dfdts.dll [2009-07-14] (Microsoft Corporation)
Task: {2EB09B26-E9D3-44EE-B28A-362952C47171} - System32\Tasks\WPD\SqmUpload_S-1-5-21-2236770060-787177978-926794451-1000 => C:\Windows\System32\portabledeviceapi.dll [2010-11-20] (Microsoft Corporation)
Task: {357385EA-8B2E-48C2-8C73-DB982DFFC209} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2013-07-08] (COMODO)
Task: {3D1247D1-0D1E-41C1-9816-9D3381A58E48} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-18] (Adobe Systems Incorporated)
Task: {5033D00B-A810-42E3-93CD-B0AEC8F2FAC5} - System32\Tasks\COMODO\COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [2013-07-08] (COMODO)
Task: {84288AE2-1E3B-4DB6-B749-2B622E01D9BA} - System32\Tasks\AdobeAAMUpdater-1.0-TROLL-PC-TROLL => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\System32\srrstr.dll [2010-11-20] (Microsoft Corporation)
Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\Windows\System32\aepdu.dll [2010-11-20] (Microsoft Corporation)
Task: {C7608AA3-8857-4C17-AB16-0294934C98D7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-03-25] (Piriform Ltd)
Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => C:\Windows\System32\acproxy.dll [2009-07-14] (Microsoft Corporation)
Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => C:\Windows\System32\bfe.dll [2010-11-20] (Microsoft Corporation)
Task: {E3B10E5D-90B7-4343-A95B-C219DE0436A7} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2013-07-08] (COMODO)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==========
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/29/2013 05:56:17 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SAMP - Keybinder.exe, Version: 0.0.0.0, Zeitstempel: 0x49b58057
Name des fehlerhaften Moduls: MSVCRT.dll, Version: 7.0.7601.17744, Zeitstempel: 0x4eeaf722
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000143f9
ID des fehlerhaften Prozesses: 0x85c
Startzeit der fehlerhaften Anwendung: 0xSAMP - Keybinder.exe0
Pfad der fehlerhaften Anwendung: SAMP - Keybinder.exe1
Pfad des fehlerhaften Moduls: SAMP - Keybinder.exe2
Berichtskennung: SAMP - Keybinder.exe3
Error: (08/29/2013 10:42:24 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Photoshop.exe, Version: 13.0.0.0, Zeitstempel: 0x4f61beba
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18015, Zeitstempel: 0x50b83c8a
Ausnahmecode: 0xc06d007e
Fehleroffset: 0x0000c41f
ID des fehlerhaften Prozesses: 0x1770
Startzeit der fehlerhaften Anwendung: 0xPhotoshop.exe0
Pfad der fehlerhaften Anwendung: Photoshop.exe1
Pfad des fehlerhaften Moduls: Photoshop.exe2
Berichtskennung: Photoshop.exe3
Error: (08/29/2013 10:41:44 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Photoshop.exe, Version: 13.0.0.0, Zeitstempel: 0x4f61beba
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18015, Zeitstempel: 0x50b83c8a
Ausnahmecode: 0xc06d007e
Fehleroffset: 0x0000c41f
ID des fehlerhaften Prozesses: 0x1b4c
Startzeit der fehlerhaften Anwendung: 0xPhotoshop.exe0
Pfad der fehlerhaften Anwendung: Photoshop.exe1
Pfad des fehlerhaften Moduls: Photoshop.exe2
Berichtskennung: Photoshop.exe3
Error: (08/07/2013 08:18:51 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: samp-server.exe, Version: 0.0.0.0, Zeitstempel: 0x510e3336
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000222b2
ID des fehlerhaften Prozesses: 0x142c
Startzeit der fehlerhaften Anwendung: 0xsamp-server.exe0
Pfad der fehlerhaften Anwendung: samp-server.exe1
Pfad des fehlerhaften Moduls: samp-server.exe2
Berichtskennung: samp-server.exe3
Error: (08/07/2013 01:15:04 PM) (Source: Application Hang) (User: )
Description: Programm samp.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: aa8
Startzeit: 01ce935f54975515
Endzeit: 8
Anwendungspfad: E:\Games\GTA San Andreas\samp.exe
Berichts-ID: 989eefbb-ff52-11e2-aea8-b2808d783dcd
Error: (08/07/2013 11:12:45 AM) (Source: ESENT) (User: )
Description: taskhost (3024) WebCacheLocal: Fehler -1032 (0xfffffbf8) beim Öffnen von Protokolldatei C:\Users\TROLL\AppData\Local\Microsoft\Windows\WebCache\V01.log.
Error: (08/07/2013 11:12:44 AM) (Source: ESENT) (User: )
Description: taskhost (3024) WebCacheLocal: Versuch, Datei "C:\Users\TROLL\AppData\Local\Microsoft\Windows\WebCache\V01.log" für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien.
Error: (08/06/2013 08:48:59 PM) (Source: Application Hang) (User: )
Description: Programm samp.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 8ac
Startzeit: 01ce92d594a1916a
Endzeit: 0
Anwendungspfad: I:\Server\GTA San Andreas\samp.exe
Berichts-ID: d776f409-fec8-11e2-9ac2-cd2066f6c4c9
Error: (07/25/2013 04:07:04 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7abf9
Name des fehlerhaften Moduls: VIASysFx.dll, Version: 1.0.0.0, Zeitstempel: 0x4df1f2c5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000005a8e5
ID des fehlerhaften Prozesses: 0x112c
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Error: (07/24/2013 11:36:16 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 22.0.0.4917, Zeitstempel: 0x51c06b1b
Name des fehlerhaften Moduls: xul.dll, Version: 22.0.0.4917, Zeitstempel: 0x51c06a5b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00173668
ID des fehlerhaften Prozesses: 0x1668
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
System errors:
=============
Error: (08/29/2013 08:28:55 PM) (Source: DCOM) (User: )
Description: {F25AF245-4A81-40DC-92F9-E9021F207706}
Error: (08/29/2013 08:56:51 AM) (Source: volsnap) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
Error: (08/08/2013 06:23:40 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 08.08.2013 um 14:52:39 unerwartet heruntergefahren.
Error: (08/07/2013 09:55:32 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 07.08.2013 um 21:51:20 unerwartet heruntergefahren.
Error: (08/07/2013 11:12:07 AM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 06.08.2013 um 22:27:35 unerwartet heruntergefahren.
Error: (08/06/2013 08:21:52 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 06.08.2013 um 20:08:23 unerwartet heruntergefahren.
Error: (07/26/2013 09:32:59 PM) (Source: Microsoft-Windows-WHEA-Logger) (User: NT-AUTORITÄT)
Description: Schwerwiegender Hardwarefehler.
Komponente: AMD Northbridge
Fehlerquelle: 3
Fehlertyp: 2
Prozessor-ID: 0
Die Detailansicht dieses Eintrags beinhaltet weitere Informationen.
Error: (07/26/2013 09:32:36 PM) (Source: BugCheck) (User: )
Description: 0x00000124 (0x0000000000000000, 0xfffffa80079938f8, 0x0000000000000000, 0x0000000000000000)C:\Windows\Minidump\072613-32171-01.dmp072613-32171-01
Error: (07/26/2013 09:32:36 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 26.07.2013 um 21:30:14 unerwartet heruntergefahren.
Error: (07/26/2013 09:11:51 PM) (Source: DCOM) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
Microsoft Office Sessions:
=========================
Error: (08/29/2013 05:56:17 PM) (Source: Application Error)(User: )
Description: SAMP - Keybinder.exe0.0.0.049b58057MSVCRT.dll7.0.7601.177444eeaf722c0000005000143f985c01cea4a7e5e0da34C:\Users\TROLL\Desktop\Samp Keybind\SAMP - Keybinder.exeC:\Windows\syswow64\MSVCRT.dll89c97e58-10c3-11e3-8bc7-bc5ff47ff94f
Error: (08/29/2013 10:42:24 AM) (Source: Application Error)(User: )
Description: Photoshop.exe13.0.0.04f61bebaKERNELBASE.dll6.1.7601.1801550b83c8ac06d007e0000c41f177001cea493aecfe8ffC:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exeC:\Windows\syswow64\KERNELBASE.dlleccf9adc-1086-11e3-8bc7-bc5ff47ff94f
Error: (08/29/2013 10:41:44 AM) (Source: Application Error)(User: )
Description: Photoshop.exe13.0.0.04f61bebaKERNELBASE.dll6.1.7601.1801550b83c8ac06d007e0000c41f1b4c01cea4939379e0b8C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exeC:\Windows\syswow64\KERNELBASE.dlld4b49647-1086-11e3-8bc7-bc5ff47ff94f
Error: (08/07/2013 08:18:51 PM) (Source: Application Error)(User: )
Description: samp-server.exe0.0.0.0510e3336ntdll.dll6.1.7601.177254ec49b8fc0000005000222b2142c01ce939334051c5cH:\Server\GTA San Andreas\samp-server.exeC:\Windows\SysWOW64\ntdll.dllcf44ae42-ff8d-11e2-aea8-b2808d783dcd
Error: (08/07/2013 01:15:04 PM) (Source: Application Hang)(User: )
Description: samp.exe0.0.0.0aa801ce935f549755158E:\Games\GTA San Andreas\samp.exe989eefbb-ff52-11e2-aea8-b2808d783dcd
Error: (08/07/2013 11:12:45 AM) (Source: ESENT)(User: )
Description: taskhost3024WebCacheLocal: C:\Users\TROLL\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8)
Error: (08/07/2013 11:12:44 AM) (Source: ESENT)(User: )
Description: taskhost3024WebCacheLocal: C:\Users\TROLL\AppData\Local\Microsoft\Windows\WebCache\V01.log-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird.
Error: (08/06/2013 08:48:59 PM) (Source: Application Hang)(User: )
Description: samp.exe0.0.0.08ac01ce92d594a1916a0I:\Server\GTA San Andreas\samp.exed776f409-fec8-11e2-9ac2-cd2066f6c4c9
Error: (07/25/2013 04:07:04 PM) (Source: Application Error)(User: )
Description: AUDIODG.EXE6.1.7601.175144ce7abf9VIASysFx.dll1.0.0.04df1f2c5c0000005000000000005a8e5112c01ce8925fc5e1532C:\Windows\system32\AUDIODG.EXEC:\Windows\system32\VIASysFx.dll7b6a2243-f533-11e2-859c-bc5ff47ff94f
Error: (07/24/2013 11:36:16 PM) (Source: Application Error)(User: )
Description: firefox.exe22.0.0.491751c06b1bxul.dll22.0.0.491751c06a5bc000000500173668166801ce8865d625fb79C:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Program Files (x86)\Mozilla Firefox\xul.dll11a45160-f4a9-11e2-9196-bc5ff47ff94f
==================== Memory info ===========================
Percentage of memory in use: 27%
Total physical RAM: 8191.24 MB
Available physical RAM: 5928.76 MB
Total Pagefile: 16380.67 MB
Available Pagefile: 13841.5 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:149.04 GB) (Free:7.01 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:224.61 GB) (Free:73.17 GB) NTFS
Drive e: () (Fixed) (Total:241.14 GB) (Free:36.18 GB) NTFS
Drive f: (Mirror's Edge) (CDROM) (Total:6.03 GB) (Free:0 GB) UDF
Drive g: (GTA IV Disc 1) (CDROM) (Total:7.05 GB) (Free:0 GB) UDF
Drive i: (GTA IV Disc 2) (CDROM) (Total:6.81 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 927E927E)
Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 466 GB) (Disk ID: CA85CA85)
Partition 1: (Active) - (Size=225 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=241 GB) - (Type=OF Extended)
==================== End Of Log ============================ |