FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2014 01
Ran by aS-Sa (administrator) on AS-SA-PC on 02-01-2014 17:46:20
Running from G:\Downloads
Windows 7 Home Premium (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) G:\ATI\ATI.ACE\Fuel\Fuel.Service.exe
( ) C:\Windows\System32\lxcrcoms.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Advanced Micro Devices Inc.) G:\ATI\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) G:\ATI\ATI.ACE\Core-Static\CCC.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Oracle Corporation) G:\Jdownload1\JDownloader\jre\bin\javaw.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-18] (Realtek Semiconductor)
HKLM-x32\...\Run: [StartCCC] - G:\ATI\ATI.ACE\Core-Static\CLIStart.exe [676608 2013-08-30] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] - rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript [1127496 2013-04-04] (Malwarebytes Corporation)
MountPoints2: {55822548-4e1f-11e3-ae19-bc5ff4e71a77} - I:\setup.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=f6724160000000000000bc5ff4e71a77
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6434033B6CE1CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0B0CyD0F0FyE0EyBtC0AyByByEtCyCtDtN0D0Tzu0SyCzytAtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=367918572&ir=
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0B0CyD0F0FyE0EyBtC0AyByByEtCyCtDtN0D0Tzu0SyCzytAtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=367918572&ir=
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {91A468CC-2B72-4DC2-8DDF-5404585D4E14} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=f6724160000000000000bc5ff4e71a77&r=700
SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0B0CyD0F0FyE0EyBtC0AyByByEtCyCtDtN0D0Tzu0SyCzytAtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=367918572&ir=
SearchScopes: HKCU - {91A468CC-2B72-4DC2-8DDF-5404585D4E14} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=f6724160000000000000bc5ff4e71a77&r=700
BHO: YoutubeAdblocker - {5A7742C0-D539-27EC-1D6F-36E769D3F059} - C:\Program Files (x86)\YoutubeAdblocker\J.x64.dll ()
BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
Toolbar: HKCU - No Name - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\aS-Sa\AppData\Roaming\Mozilla\Firefox\Profiles\hva8o79b.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @videolan.org/vlc,version=2.1.1 - G:\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll No File
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
Chrome:
=======
CHR HomePage: hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=f6724160000000000000bc5ff4e71a77
CHR RestoreOnStartup: ""
CHR Extension: (Google Drive) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (AdBlock) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0
CHR Extension: (BookmarkTube) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhiamkcfombjomhkbhogcoajjiailbjm\0.9
CHR Extension: (Google Wallet) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0
CHR Extension: (Gmail) - C:\Users\aS-Sa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\aS-Sa\AppData\Local\mysearchdial-speeddial.crx
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; G:\ATI\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-08-30] (Advanced Micro Devices, Inc.)
R2 lxcr_device; C:\Windows\system32\lxcrcoms.exe [566192 2006-12-11] ( )
R2 lxcr_device; C:\Windows\SysWow64\lxcrcoms.exe [537520 2006-12-11] ( )
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 DAUpdaterSvc; G:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [x]
==================== Drivers (Whitelisted) ====================
R2 AODDriver4.2; G:\ATI\ATI.ACE\Fuel\amd64\AODDriver2.sys [57472 2012-04-09] (Advanced Micro Devices)
S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2013-11-14] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [16648 2013-11-14] (FNet Co., Ltd.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-02 17:46 - 2014-01-02 17:46 - 00000000 ____D C:\FRST
2014-01-02 14:28 - 2014-01-02 14:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Macromedia
2014-01-02 14:26 - 2014-01-02 17:13 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-02 14:26 - 2014-01-02 15:13 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-02 14:17 - 2014-01-02 14:17 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-02 14:17 - 2014-01-02 14:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Mozilla
2014-01-02 14:17 - 2014-01-02 14:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-25 13:15 - 2013-12-26 20:41 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\dvdcss
2013-12-25 09:57 - 2013-12-25 15:15 - 00000000 ____D C:\Users\aS-Sa\Documents\LOLReplay
2013-12-25 09:57 - 2013-12-25 09:57 - 00001901 _____ C:\Users\Public\Desktop\LOL Recorder.lnk
2013-12-25 09:57 - 2013-12-25 09:57 - 00000000 ____D C:\Program Files (x86)\LOLReplay
2013-12-24 13:21 - 2013-12-24 13:21 - 00000000 ____D C:\Users\Public\Documents\Avanquest Software
2013-12-24 13:21 - 2013-12-24 13:21 - 00000000 ____D C:\ProgramData\Avanquest
2013-12-24 13:19 - 2013-12-24 13:20 - 01588294 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-12-24 12:17 - 2013-12-24 12:17 - 00000935 _____ C:\Users\aS-Sa\Desktop\Open Broadcaster Software.lnk
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\OBS
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Program Files\OBS
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Program Files (x86)\OBS
2013-12-23 16:16 - 2013-12-23 16:16 - 00000613 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
2013-12-23 16:16 - 2013-12-23 16:16 - 00000000 ____D C:\Users\aS-Sa\Documents\Nexus Mod Manager
2013-12-23 16:16 - 2013-12-23 16:16 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Black_Tree_Gaming
2013-12-22 16:50 - 2013-12-22 16:50 - 00000000 ____D C:\Users\aS-Sa\Documents\My Cheat Tables
2013-12-22 15:24 - 2014-01-02 01:06 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Skyrim
2013-12-22 15:24 - 2013-12-22 15:24 - 00000605 _____ C:\Users\aS-Sa\Desktop\The Elder Scrolls V Skyrim - Legendary Edition (Launcher).lnk
2013-12-22 15:24 - 2013-12-22 15:24 - 00000000 ____D C:\Users\aS-Sa\Documents\My Games
2013-12-19 19:09 - 2013-12-19 19:09 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-19 19:09 - 2013-12-19 19:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-19 19:09 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-12-18 21:47 - 2013-12-18 21:47 - 00000000 ____D C:\Users\aS-Sa\Documents\Electronic Arts
2013-12-18 21:46 - 2013-12-18 21:46 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE
2013-12-18 20:16 - 2013-12-18 20:16 - 00003106 _____ C:\Windows\System32\Tasks\{05901C3B-1842-42C1-8149-1AE5BA35FB72}
2013-12-18 20:08 - 2013-12-18 20:08 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\2K Games
2013-12-18 19:22 - 2013-12-18 19:22 - 00000000 ____D C:\Users\aS-Sa\Neuer Ordner
2013-12-16 19:58 - 2013-12-16 19:58 - 00000000 ____D C:\ProgramData\APN
2013-12-16 19:36 - 2013-12-16 19:36 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Mozilla
2013-12-16 19:36 - 2013-12-16 19:36 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-15 12:27 - 2013-12-30 21:47 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\TS3Client
2013-12-15 12:26 - 2013-12-15 12:27 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Overwolf
2013-12-15 12:26 - 2013-12-15 12:26 - 00001162 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2013-12-15 12:26 - 2013-12-15 12:26 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2013-12-14 22:06 - 2013-12-14 22:06 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Malwarebytes
2013-12-14 22:06 - 2013-12-14 22:06 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-14 19:43 - 2013-12-14 19:43 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Logitech® Webcam-Software
2013-12-14 19:35 - 2013-12-14 19:35 - 00010110 _____ C:\Windows\system32\lvcoinst.log
2013-12-14 19:35 - 2013-12-14 19:35 - 00003726 _____ C:\Windows\LDPINST.LOG
2013-12-14 19:35 - 2013-12-14 19:35 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software .lnk
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Leadertech
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\ProgramData\LogiShrd
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Program Files\Common Files\logishrd
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Program Files (x86)\Logitech
2013-12-14 05:07 - 2014-01-02 13:22 - 00008102 _____ C:\Windows\setupact.log
2013-12-14 05:07 - 2013-12-16 20:53 - 00110588 _____ C:\Windows\PFRO.log
2013-12-14 05:07 - 2013-12-14 05:07 - 00000000 _____ C:\Windows\setuperr.log
2013-12-13 20:06 - 2013-12-16 19:14 - 00000000 ____D C:\Program Files (x86)\YoutubeAdblocker
2013-12-13 20:06 - 2013-12-15 09:54 - 00000000 ____D C:\ProgramData\sUrf and keEp
2013-12-13 20:06 - 2013-12-15 09:54 - 00000000 ____D C:\Program Files (x86)\Sk_Enabler
2013-12-13 20:06 - 2013-12-14 20:36 - 00000000 ____D C:\ProgramData\6c7779bb9cbfc559
2013-12-13 20:06 - 2013-12-13 20:07 - 00000000 ____D C:\ProgramData\InstallMate
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Packages
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\YoutubeAdblocker
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\QuickSet
2013-12-06 20:28 - 2014-01-02 14:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-06 20:28 - 2013-12-06 20:28 - 00001436 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-12-06 20:28 - 2013-12-06 20:28 - 00001239 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\TuneUp Software
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\DVDVideoSoft
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Notepad++
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Program Files (x86)\Notepad++
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\SplitMediaLabs
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\SplitMediaLabs
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\ProgramData\SplitMediaLabs
2013-12-03 19:08 - 2014-01-02 17:23 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-03 19:08 - 2014-01-02 11:37 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-03 19:08 - 2013-12-19 17:26 - 00002247 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-03 19:08 - 2013-12-05 06:18 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-03 19:08 - 2013-12-05 06:18 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-03 19:06 - 2013-12-03 19:06 - 00190873 _____ C:\Users\aS-Sa\Desktop\bookmarks_03.12.13.html
==================== One Month Modified Files and Folders =======
2014-01-02 17:46 - 2014-01-02 17:46 - 00000000 ____D C:\FRST
2014-01-02 17:39 - 2013-11-14 21:07 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Skype
2014-01-02 17:28 - 2009-07-14 05:45 - 00013584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-02 17:28 - 2009-07-14 05:45 - 00013584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-02 17:23 - 2013-12-03 19:08 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-02 17:13 - 2014-01-02 14:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-02 15:13 - 2014-01-02 14:26 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-02 15:13 - 2013-11-14 20:04 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-02 15:13 - 2013-11-14 20:04 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-02 14:28 - 2014-01-02 14:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Macromedia
2014-01-02 14:26 - 2013-11-20 17:22 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Adobe
2014-01-02 14:17 - 2014-01-02 14:17 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-02 14:17 - 2014-01-02 14:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Mozilla
2014-01-02 14:17 - 2014-01-02 14:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2014-01-02 14:17 - 2013-12-06 20:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-02 13:22 - 2013-12-14 05:07 - 00008102 _____ C:\Windows\setupact.log
2014-01-02 11:43 - 2009-07-14 18:58 - 00696132 _____ C:\Windows\system32\perfh007.dat
2014-01-02 11:43 - 2009-07-14 18:58 - 00147428 _____ C:\Windows\system32\perfc007.dat
2014-01-02 11:43 - 2009-07-14 06:13 - 01611160 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-02 11:40 - 2013-11-14 19:56 - 00633476 _____ C:\Windows\WindowsUpdate.log
2014-01-02 11:37 - 2013-12-03 19:08 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-02 11:37 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-02 01:06 - 2013-12-22 15:24 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Skyrim
2013-12-31 05:37 - 2013-11-14 19:26 - 00000000 ___RD C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-30 21:47 - 2013-12-15 12:27 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\TS3Client
2013-12-28 20:08 - 2013-11-15 21:56 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\vlc
2013-12-26 20:41 - 2013-12-25 13:15 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\dvdcss
2013-12-25 15:15 - 2013-12-25 09:57 - 00000000 ____D C:\Users\aS-Sa\Documents\LOLReplay
2013-12-25 09:57 - 2013-12-25 09:57 - 00001901 _____ C:\Users\Public\Desktop\LOL Recorder.lnk
2013-12-25 09:57 - 2013-12-25 09:57 - 00000000 ____D C:\Program Files (x86)\LOLReplay
2013-12-24 13:21 - 2013-12-24 13:21 - 00000000 ____D C:\Users\Public\Documents\Avanquest Software
2013-12-24 13:21 - 2013-12-24 13:21 - 00000000 ____D C:\ProgramData\Avanquest
2013-12-24 13:21 - 2013-11-14 20:01 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-12-24 13:20 - 2013-12-24 13:19 - 01588294 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-12-24 12:23 - 2013-11-14 21:10 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-12-24 12:17 - 2013-12-24 12:17 - 00000935 _____ C:\Users\aS-Sa\Desktop\Open Broadcaster Software.lnk
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\OBS
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Program Files\OBS
2013-12-24 12:17 - 2013-12-24 12:17 - 00000000 ____D C:\Program Files (x86)\OBS
2013-12-23 16:16 - 2013-12-23 16:16 - 00000613 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
2013-12-23 16:16 - 2013-12-23 16:16 - 00000000 ____D C:\Users\aS-Sa\Documents\Nexus Mod Manager
2013-12-23 16:16 - 2013-12-23 16:16 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Black_Tree_Gaming
2013-12-22 16:50 - 2013-12-22 16:50 - 00000000 ____D C:\Users\aS-Sa\Documents\My Cheat Tables
2013-12-22 15:24 - 2013-12-22 15:24 - 00000605 _____ C:\Users\aS-Sa\Desktop\The Elder Scrolls V Skyrim - Legendary Edition (Launcher).lnk
2013-12-22 15:24 - 2013-12-22 15:24 - 00000000 ____D C:\Users\aS-Sa\Documents\My Games
2013-12-22 11:18 - 2013-11-28 14:09 - 00000000 ____D C:\Users\aS-Sa\Desktop\Sarah
2013-12-20 06:02 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-12-19 19:09 - 2013-12-19 19:09 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-19 19:09 - 2013-12-19 19:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-19 18:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2013-12-19 17:26 - 2013-12-03 19:08 - 00002247 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-18 21:47 - 2013-12-18 21:47 - 00000000 ____D C:\Users\aS-Sa\Documents\Electronic Arts
2013-12-18 21:46 - 2013-12-18 21:46 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE
2013-12-18 20:16 - 2013-12-18 20:16 - 00003106 _____ C:\Windows\System32\Tasks\{05901C3B-1842-42C1-8149-1AE5BA35FB72}
2013-12-18 20:08 - 2013-12-18 20:08 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\2K Games
2013-12-18 19:22 - 2013-12-18 19:22 - 00000000 ____D C:\Users\aS-Sa\Neuer Ordner
2013-12-18 19:22 - 2013-11-14 19:26 - 00000000 ____D C:\Users\aS-Sa
2013-12-16 21:41 - 2009-07-14 00:56 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2013-12-16 21:41 - 2009-07-14 00:52 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2013-12-16 21:41 - 2009-07-14 00:38 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2013-12-16 21:41 - 2009-07-14 00:36 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2013-12-16 21:41 - 2009-07-14 00:24 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2013-12-16 20:53 - 2013-12-14 05:07 - 00110588 _____ C:\Windows\PFRO.log
2013-12-16 19:58 - 2013-12-16 19:58 - 00000000 ____D C:\ProgramData\APN
2013-12-16 19:36 - 2013-12-16 19:36 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Mozilla
2013-12-16 19:36 - 2013-12-16 19:36 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-16 19:14 - 2013-12-13 20:06 - 00000000 ____D C:\Program Files (x86)\YoutubeAdblocker
2013-12-16 19:14 - 2013-11-14 21:15 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Systweak
2013-12-15 13:14 - 2013-11-14 21:06 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-12-15 13:14 - 2013-11-14 21:06 - 00000000 ____D C:\ProgramData\Skype
2013-12-15 12:27 - 2013-12-15 12:26 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Overwolf
2013-12-15 12:26 - 2013-12-15 12:26 - 00001162 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2013-12-15 12:26 - 2013-12-15 12:26 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2013-12-15 09:54 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\sUrf and keEp
2013-12-15 09:54 - 2013-12-13 20:06 - 00000000 ____D C:\Program Files (x86)\Sk_Enabler
2013-12-14 22:06 - 2013-12-14 22:06 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Malwarebytes
2013-12-14 22:06 - 2013-12-14 22:06 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-14 21:29 - 2013-11-26 17:49 - 00000000 ____D C:\Program Files (x86)\Nero
2013-12-14 21:28 - 2013-11-26 17:48 - 00000000 ____D C:\ProgramData\Nero
2013-12-14 20:36 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\6c7779bb9cbfc559
2013-12-14 19:43 - 2013-12-14 19:43 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Logitech® Webcam-Software
2013-12-14 19:35 - 2013-12-14 19:35 - 00010110 _____ C:\Windows\system32\lvcoinst.log
2013-12-14 19:35 - 2013-12-14 19:35 - 00003726 _____ C:\Windows\LDPINST.LOG
2013-12-14 19:35 - 2013-12-14 19:35 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software .lnk
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Leadertech
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\ProgramData\LogiShrd
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Program Files\Common Files\logishrd
2013-12-14 19:35 - 2013-12-14 19:35 - 00000000 ____D C:\Program Files (x86)\Logitech
2013-12-14 05:07 - 2013-12-14 05:07 - 00000000 _____ C:\Windows\setuperr.log
2013-12-13 20:07 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\InstallMate
2013-12-13 20:07 - 2013-11-14 20:27 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Media Player Classic
2013-12-13 20:07 - 2013-11-14 19:21 - 00000000 ____D C:\Windows\Panther
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Packages
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\YoutubeAdblocker
2013-12-13 20:06 - 2013-12-13 20:06 - 00000000 ____D C:\ProgramData\QuickSet
2013-12-10 16:33 - 2013-11-14 19:26 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\VirtualStore
2013-12-06 20:28 - 2013-12-06 20:28 - 00001436 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-12-06 20:28 - 2013-12-06 20:28 - 00001239 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\TuneUp Software
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\DVDVideoSoft
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-12-06 20:28 - 2013-12-06 20:28 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-12-05 06:18 - 2013-12-03 19:08 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-05 06:18 - 2013-12-03 19:08 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Notepad++
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-12-04 19:33 - 2013-12-04 19:33 - 00000000 ____D C:\Program Files (x86)\Notepad++
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\Users\aS-Sa\AppData\Roaming\SplitMediaLabs
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\SplitMediaLabs
2013-12-04 18:12 - 2013-12-04 18:12 - 00000000 ____D C:\ProgramData\SplitMediaLabs
2013-12-03 19:08 - 2013-11-14 20:12 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-03 19:08 - 2013-11-14 20:11 - 00000000 ____D C:\Users\aS-Sa\AppData\Local\Deployment
2013-12-03 19:07 - 2013-11-14 19:26 - 00001439 _____ C:\Users\aS-Sa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-03 19:06 - 2013-12-03 19:06 - 00190873 _____ C:\Users\aS-Sa\Desktop\bookmarks_03.12.13.html
Some content of TEMP:
====================
C:\Users\aS-Sa\AppData\Local\Temp\86310uninstall.exe
C:\Users\aS-Sa\AppData\Local\Temp\avgnt.exe
C:\Users\aS-Sa\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\aS-Sa\AppData\Local\Temp\Offercast_AVIRAV7_.exe
C:\Users\aS-Sa\AppData\Local\Temp\Sqlite3.dll
C:\Users\aS-Sa\AppData\Local\Temp\Uninstall.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-31 00:35
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-01-2014 01
Ran by aS-Sa at 2014-01-02 17:46:41
Running from G:\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05 - Adobe Systems Incorporated)
AMD Accelerated Video Transcoding (Version: 13.10.100.30830 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.0830.147.1272 - Ihr Firmenname) Hidden
AMD Catalyst Install Manager (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Fuel (Version: 2013.0830.147.1272 - Ihr Firmenname) Hidden
AMD Media Foundation Decoders (Version: 1.0.80830.0144 - Advanced Micro Devices, Inc.) Hidden
AMD Steady Video Plug-In (Version: 2.06.0000 - AMD) Hidden
AMD Wireless Display v3.0 (Version: 1.0.0.12 - Advanced Micro Devices, Inc.) Hidden
Ausschneiden 1.0 (x32 Version: 1.02.26070 - Avanquest Software)
Batman: Arkham Origins (x32 Version: - Warner Bros. Interactive Entertainment)
Broadcom Gigabit NetLink Controller (Version: 14.6.1.3 - Broadcom Corporation)
Bully - Scholarship Edition (x32 Version: - )
CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0830.147.1272 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.0830.147.1272 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.0830.147.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.0830.0146.1272 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.0830.147.1272 - Advanced Micro Devices, Inc.) Hidden
CCleaner (Version: 4.07 - Piriform)
Die*Sims™*3 (x32 Version: 1.0.631 - Electronic Arts)
DivX-Setup (x32 Version: 2.6.1.87 - DivX, LLC)
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology)
Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden
Fraps (remove only) (x32 Version: - )
Free YouTube Download version 3.2.17.1125 (x32 Version: 3.2.17.1125 - DVDVideoSoft Ltd.)
Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH)
JDownloader 2 (Version: 2.0 - AppWork GmbH)
League of Legends (x32 Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Lexmark 2400 Series (Version: - Lexmark International, Inc.)
Logitech Webcam-Software (x32 Version: 2.51 - Logitech Inc.)
LOLReplay (x32 Version: 0.8.5.2 - www.leaguereplays.com)
LWS Facebook (x32 Version: 13.50.854.0 - Logitech) Hidden
LWS Gallery (x32 Version: 13.51.827.0 - Logitech) Hidden
LWS Help_main (x32 Version: 13.51.828.0 - Logitech) Hidden
LWS Launcher (x32 Version: 13.51.828.0 - Logitech) Hidden
LWS Motion Detection (x32 Version: 13.51.815.0 - Logitech) Hidden
LWS Pictures And Video (x32 Version: 13.51.815.0 - Logitech) Hidden
LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden
LWS Webcam Software (x32 Version: 13.51.815.0 - Logitech) Hidden
LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden
LWS YouTube Plugin (x32 Version: 13.31.1038.0 - Logitech) Hidden
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
marvell 91xx driver (x32 Version: 1.0.0.1036 - Marvell)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
Nexus Mod Manager (Version: 0.46.0 - Black Tree Gaming)
Notepad++ (x32 Version: 6.5.1 - Notepad++ Team)
NVIDIA PhysX (x32 Version: 9.09.0203 - NVIDIA Corporation)
Open Broadcaster Software (x32 Version: - )
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6378 - Realtek Semiconductor Corp.)
Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.)
StarCraft II (x32 Version: - Blizzard Entertainment)
StarCraft II Heart of the Swarm (c) Blizzard version 1 (x32 Version: 1 - )
STORM (x32 Version: 1.3.0.0 - Cooler Master)
TeamSpeak 3 Client (x32 Version: 3.0.13 - TeamSpeak Systems GmbH)
The Elder Scrolls V Skyrim - Legendary Edition (Game of the Year) Deutsche Version 1.9.32.0.8 (x32 Version: 1.9.32.0.8 - .x.X.RIDDICK.X.x.)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VirtualCloneDrive (x32 Version: 5.4.7.0 - Elaborate Bytes)
VLC media player 2.1.1 (Version: 2.1.1 - VideoLAN)
WinRAR 5.01 beta 1 (64-bit) (Version: 5.01.1 - win.rar GmbH)
XFastUSB (x32 Version: 3.02.31 - ASRock Inc.)
==================== Restore Points =========================
18-12-2013 20:45:15 Installiert The Sims 3
24-12-2013 11:23:06 Removed XSplit
01-01-2014 12:06:15 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {318AF161-91FC-436B-8C40-1202D4950C7E} - System32\Tasks\CCleanerSkipUAC => G:\CCleaner\CCleaner.exe [2013-10-22] (Piriform Ltd)
Task: {3248B499-C603-4B26-92D0-C354B361026E} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION
Task: {A38C5FA9-19BE-4A76-9CB7-259E5017ACFE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-02] (Adobe Systems Incorporated)
Task: {A3E29E43-0342-4BAE-AB15-87CE4D6D1C7D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-03] (Google Inc.)
Task: {D550AED0-ED1B-4ED4-B438-E46F0CBDC735} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-03] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <==== ATTENTION
==================== Loaded Modules (whitelisted) =============
2012-06-18 16:24 - 2012-06-18 16:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll
2013-08-30 01:49 - 2013-08-30 01:49 - 00103424 _____ () G:\ATI\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2013-08-29 01:25 - 2013-08-29 01:25 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2013-12-05 06:25 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 06:25 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 06:25 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 06:25 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 06:25 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (01/02/2014 05:43:41 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 04:43:40 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 03:43:40 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 02:43:40 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 01:43:40 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 00:43:40 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler beim Lizenzaktivierungsplaner (sppuinotify.dll). Fehlercode:
0x80070005
Error: (01/02/2014 11:37:20 AM) (Source: Winlogon) (User: )
Description: Fehler bei der Windows-Lizenzaktivierung. Fehler 0x80070005.
Error: (01/02/2014 11:31:27 AM) (Source: Winlogon) (User: )
Description: Fehler bei der Windows-Lizenzaktivierung. Fehler 0x80070005.
Error: (01/01/2014 05:15:38 PM) (Source: Winlogon) (User: )
Description: Fehler bei der Windows-Lizenzaktivierung. Fehler 0x80070005.
Error: (01/01/2014 04:58:11 PM) (Source: Winlogon) (User: )
Description: Fehler bei der Windows-Lizenzaktivierung. Fehler 0x80070005.
System errors:
=============
Error: (01/02/2014 03:01:11 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Fehlerberichterstattungsdienst erreicht.
Error: (01/02/2014 00:43:40 PM) (Source: DCOM) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}
Error: (01/01/2014 05:28:36 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Fehlerberichterstattungsdienst erreicht.
Error: (01/01/2014 05:15:37 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 01.01.2014 um 17:13:22 unerwartet heruntergefahren.
Error: (01/01/2014 04:57:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst AMD FUEL Service konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (01/01/2014 04:57:06 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst Gruppenrichtlinienclient konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (12/31/2013 06:43:48 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1070
Error: (12/31/2013 06:43:47 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Server" wurde nicht richtig gestartet.
Error: (12/31/2013 06:43:39 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst AMD FUEL Service konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (12/31/2013 06:43:06 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst Gruppenrichtlinienclient konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 16%
Total physical RAM: 16354.86 MB
Available physical RAM: 13680.05 MB
Total Pagefile: 32707.86 MB
Available Pagefile: 29882.71 MB
Total Virtual: 8192 MB
Available Virtual: 8191.78 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:119.14 GB) (Free:69.11 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (Alte Festplatte) (Fixed) (Total:931.5 GB) (Free:718.15 GB) NTFS
Drive f: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive g: (Neue Festplatte) (Fixed) (Total:931.41 GB) (Free:871.38 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: 8322DFEA)
Partition 1: (Active) - (Size=119 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: D7FBA931)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 3A4B3A4A)
Partition 1: (Active) - (Size=932 GB) - (Type=07 NTFS)
==================== End Of Log ======== |