Danke, hier die beiden:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 16-02-2014
Ran by Mü (administrator) on MÜ-PC on 17-02-2014 16:56:13
Running from C:\Users\Mü\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(Binary Fortress Software) C:\Program Files\DisplayFusion\DisplayFusionService.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\21.1.0.18\N360.exe
(CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
() C:\Program Files\Uptime24.net - Client\UptimeClient.exe
(Binary Fortress Software) C:\Program Files\DisplayFusion\DisplayFusion.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\21.1.0.18\N360.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Dropbox, Inc.) C:\Users\Mü\AppData\Roaming\Dropbox\bin\Dropbox.exe
==================== Registry (Whitelisted) ==================
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-01-02] (Microsoft Corporation)
HKU\S-1-5-21-2164677552-2925916077-4043099331-1001\...\Run: [CyberGhost] - C:\Program Files\CyberGhost 5\CyberGhost.exe [358000 2014-01-16] (CyberGhost S.R.L.)
HKU\S-1-5-21-2164677552-2925916077-4043099331-1001\...\Run: [Uptime24.net-Client] - C:\Program Files\Uptime24.net - Client\UptimeClient.exe [61440 2013-03-19] ()
HKU\S-1-5-21-2164677552-2925916077-4043099331-1001\...\Run: [DisplayFusion] - C:\Program Files\DisplayFusion\DisplayFusion.exe [7203712 2013-02-11] (Binary Fortress Software)
HKU\S-1-5-21-2164677552-2925916077-4043099331-1001\...\Run: [AdobeSystemsUpdater] - C:\ProgramData\Adobe-Flash-Net\ulotmhvct.exe [21585168 2014-02-12] (Spotify Ltd)
HKU\S-1-5-21-2164677552-2925916077-4043099331-1001\...\Policies\Explorer: [DisallowRun] 1
Startup: C:\Users\Mü\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> (No File)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x24DE15992506CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/androidnews/
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{4FB9F868-0760-43D8-9F09-4E0E79B1EBF2}: [NameServer]79.141.167.14,79.141.160.23
Tcpip\..\Interfaces\{E479CD7E-B75B-478C-89B4-D2758BDC5C8D}: [NameServer]79.141.167.14,79.141.160.23
FireFox:
========
FF ProfilePath: C:\Users\Mü\AppData\Roaming\Mozilla\Firefox\Profiles\a7v0v1mm.default
FF Homepage: hxxp://google.de|hxxp://nzb.to/wbb2/register.php
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 - C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Amazon-Icon - C:\Users\Mü\AppData\Roaming\Mozilla\Firefox\Profiles\a7v0v1mm.default\Extensions\amazon-icon@giga.de [2014-01-06]
FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\IPSFF [2013-12-31]
FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn\ []
========================== Services (Whitelisted) =================
R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64112 2014-01-16] (CyberGhost S.R.L)
R2 DisplayFusionService; C:\Program Files\DisplayFusion\DisplayFusionService.exe [1243024 2013-02-11] (Binary Fortress Software)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 N360; C:\Program Files\Norton 360\Engine\21.1.0.18\N360.exe [264360 2013-10-08] (Symantec Corporation)
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2014.SP1\RpcAgentSrv.exe [72344 2008-01-29] (SiSoftware)
==================== Drivers (Whitelisted) ====================
R0 amd_sata; C:\Windows\System32\DRIVERS\amd_sata.sys [65664 2011-03-04] (Advanced Micro Devices)
R0 amd_xata; C:\Windows\System32\DRIVERS\amd_xata.sys [32896 2011-03-04] (Advanced Micro Devices)
R3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1938272 2010-11-05] (Atheros Communications, Inc.)
R1 BHDrvx86; C:\Program Files\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20140121.001\BHDrvx86.sys [1098968 2013-12-18] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-01-01] (Disc Soft Ltd)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [376920 2013-12-30] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-12-30] (Symantec Corporation)
R1 IDSVix86; C:\Program Files\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20140214.001\IDSvix86.sys [394456 2014-01-23] (Symantec Corporation)
R3 L1E; C:\Windows\System32\DRIVERS\L1E60x86.sys [54824 2010-03-29] (Atheros Communications, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 NAVENG; C:\Program Files\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20140217.001\NAVENG.SYS [93272 2013-12-30] (Symantec Corporation)
R3 NAVEX15; C:\Program Files\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20140217.001\NAVEX15.SYS [1612376 2013-12-30] (Symantec Corporation)
R3 nuvotoncir; C:\Windows\System32\DRIVERS\nuvotoncir.sys [44544 2009-08-31] (Nuvoton Technology Corporation)
S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2014.SP1\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1769984 2007-10-01] ()
R1 SRTSP; C:\Windows\system32\drivers\N360\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360\1501000.012\SRTSPX.SYS [32344 2013-09-10] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360\1501000.012\SYMDS.SYS [367704 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT.SYS [142936 2013-12-31] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360\1501000.012\Ironx86.SYS [206936 2013-09-27] (Symantec Corporation)
R1 SymNetS; C:\Windows\system32\drivers\N360\1501000.012\SYMNETS.SYS [446552 2013-09-26] (Symantec Corporation)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [35288 2013-08-22] (The OpenVPN Project)
S3 ALSysIO; \??\C:\Users\MF414~1\AppData\Local\Temp\ALSysIO.sys [X]
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] ()
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-17 16:55 - 2014-02-17 16:55 - 00012514 _____ () C:\Users\Mü\Desktop\Addition.txt
2014-02-17 16:54 - 2014-02-17 16:56 - 00011518 _____ () C:\Users\Mü\Desktop\FRST.txt
2014-02-17 16:54 - 2014-02-17 16:56 - 00000000 ____D () C:\FRST
2014-02-17 16:53 - 2014-02-17 16:53 - 01141248 _____ (Farbar) C:\Users\Mü\Desktop\FRST.exe
2014-02-17 14:59 - 2014-02-17 14:59 - 00000338 _____ () C:\Windows\PFRO.log
2014-02-17 14:15 - 2014-02-17 16:49 - 00000280 _____ () C:\Windows\setupact.log
2014-02-17 14:15 - 2014-02-17 14:15 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-17 13:56 - 2014-02-17 13:56 - 00840584 _____ (Adobe Systems Incorporated) C:\Users\Mü\Downloads\uninstall_flash_player.exe
2014-02-17 12:52 - 2014-02-17 12:53 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-02-17 12:52 - 2014-02-17 12:52 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-02-17 12:52 - 2014-02-17 12:52 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\TuneUp Software
2014-02-17 12:43 - 2014-02-17 12:44 - 10534760 _____ (Kuzyakov Artur ) C:\Users\Mü\Downloads\DRPSu13-Lite.exe
2014-02-17 12:39 - 2014-02-17 15:36 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\DRPSu
2014-02-17 12:34 - 2014-02-17 12:37 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Opera
2014-02-17 12:34 - 2014-02-17 12:37 - 00000000 ____D () C:\Users\Mü\AppData\Local\Opera
2014-02-17 12:25 - 2014-02-17 14:12 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\uTorrent
2014-02-17 12:23 - 2011-03-02 12:43 - 00175616 _____ () C:\Windows\system32\unrar.dll
2014-02-17 12:22 - 2014-02-17 12:22 - 00000000 ____D () C:\Program Files\MSECache
2014-02-17 12:22 - 2008-07-03 15:58 - 00094208 _____ (sonix) C:\Windows\PLFSetL.exe
2014-02-17 12:22 - 2007-10-01 14:59 - 01769984 _____ () C:\Windows\system32\Drivers\snp2uvc.sys
2014-02-17 12:22 - 2007-05-09 15:16 - 00028160 _____ () C:\Windows\system32\Drivers\sncduvc.sys
2014-02-17 12:21 - 2011-03-04 12:46 - 00065664 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys
2014-02-17 12:21 - 2011-03-04 12:46 - 00032896 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys
2014-02-17 12:21 - 2010-11-05 17:47 - 01938272 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athw.sys
2014-02-17 12:21 - 2009-02-13 16:39 - 00000245 _____ () C:\Windows\PidList.ini
2014-02-17 12:20 - 2011-10-12 21:10 - 00466944 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2014-02-17 12:20 - 2011-10-12 20:39 - 00052736 _____ (AMD) C:\Windows\system32\coinst.dll
2014-02-17 12:20 - 2010-03-29 17:15 - 00054824 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E60x86.sys
2014-02-17 12:19 - 2011-10-12 21:55 - 08598528 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2014-02-17 12:19 - 2011-10-12 21:15 - 00198664 _____ () C:\Windows\system32\atiapfxx.blb
2014-02-17 12:19 - 2011-10-12 21:14 - 00736768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx32.dll
2014-02-17 12:19 - 2011-10-12 21:14 - 00159744 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2014-02-17 12:19 - 2011-10-12 21:08 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll
2014-02-17 12:19 - 2011-10-12 21:08 - 00159744 _____ (AMD) C:\Windows\system32\atitmmxx.dll
2014-02-17 12:19 - 2011-10-12 21:07 - 00278528 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll
2014-02-17 12:19 - 2011-10-12 21:07 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll
2014-02-17 12:19 - 2011-10-12 21:07 - 00020992 _____ (AMD) C:\Windows\system32\atimuixx.dll
2014-02-17 12:19 - 2011-10-12 21:04 - 18630656 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atioglxx.dll
2014-02-17 12:19 - 2011-10-12 20:46 - 00046080 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt.dll
2014-02-17 12:19 - 2011-10-12 20:46 - 00044032 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl.dll
2014-02-17 12:19 - 2011-10-12 20:44 - 01828864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumdmv.dll
2014-02-17 12:19 - 2011-10-12 20:42 - 08391680 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd.dll
2014-02-17 12:19 - 2011-10-12 20:32 - 01849344 _____ () C:\Windows\system32\atiumdva.cap
2014-02-17 12:19 - 2011-10-12 20:31 - 00014336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2014-02-17 12:19 - 2011-10-12 20:30 - 00257024 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2014-02-17 12:19 - 2011-10-12 20:30 - 00032768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atigktxx.dll
2014-02-17 12:19 - 2011-10-12 20:29 - 00031744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxpag.dll
2014-02-17 12:19 - 2011-10-12 20:29 - 00029184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9pag.dll
2014-02-17 12:19 - 2011-10-12 20:28 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2014-02-17 12:19 - 2011-10-12 20:16 - 00053760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc32.dll
2014-02-17 12:19 - 2011-10-12 20:16 - 00053760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll
2014-02-17 12:19 - 2011-09-22 08:56 - 00035707 _____ () C:\Windows\atiogl.xml
2014-02-17 12:19 - 2011-08-17 20:48 - 00237701 _____ () C:\Windows\system32\atiicdxx.dat
2014-02-17 12:19 - 2011-03-17 18:51 - 00003929 _____ () C:\Windows\system32\atipblag.dat
2014-02-17 12:19 - 2010-08-27 19:32 - 00294912 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2014-02-17 12:19 - 2009-06-22 16:34 - 00045056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2014-02-17 12:18 - 2011-09-02 03:03 - 00094720 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW73.sys
2014-02-17 12:17 - 2014-02-17 12:17 - 00000000 ____D () C:\Windows\system32\sda
2014-02-17 12:17 - 2010-10-29 16:11 - 09888360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStoricon.dll
2014-02-17 12:17 - 2010-10-29 16:11 - 00313960 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll
2014-02-17 12:17 - 2010-10-29 16:11 - 00197224 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys
2014-02-17 12:16 - 2014-02-17 12:16 - 00000000 ____D () C:\Windows\system32\RTCOM
2014-02-17 12:16 - 2014-02-17 12:16 - 00000000 ____D () C:\Program Files\Realtek
2014-02-17 12:16 - 2011-10-18 19:53 - 03546664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHDA.sys
2014-02-17 12:16 - 2011-10-18 18:10 - 00083048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoInst.dll
2014-02-17 12:16 - 2011-10-18 15:57 - 00058264 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\TepeqAPO.dll
2014-02-17 12:16 - 2011-10-18 13:47 - 01329768 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApoApi.dll
2014-02-17 12:16 - 2011-10-18 11:05 - 02276968 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkPgExt.dll
2014-02-17 12:16 - 2011-10-17 17:30 - 04238440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO.dll
2014-02-17 12:16 - 2011-09-02 14:21 - 00214368 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK.dll
2014-02-17 12:16 - 2011-09-02 14:21 - 00074080 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM.dll
2014-02-17 12:16 - 2011-09-02 14:21 - 00068960 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO.dll
2014-02-17 12:16 - 2011-08-23 17:00 - 00357712 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT.dll
2014-02-17 12:16 - 2011-08-06 01:39 - 00413696 _____ (DTS) C:\Windows\system32\DTSU2PLFX32.dll
2014-02-17 12:16 - 2011-08-06 01:39 - 00390656 _____ (DTS) C:\Windows\system32\DTSU2PGFX32.dll
2014-02-17 12:16 - 2011-08-06 01:39 - 00327168 _____ (DTS) C:\Windows\system32\DTSU2PREC32.dll
2014-02-17 12:16 - 2011-07-28 00:54 - 01836376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2014-02-17 12:16 - 2011-07-28 00:54 - 01725784 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2014-02-17 12:16 - 2011-06-27 14:53 - 03327320 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll
2014-02-17 12:16 - 2011-06-14 11:13 - 00178624 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo2.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 01509480 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 01292904 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 01220200 _____ (DTS) C:\Windows\system32\DTSBoostDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00654952 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00631400 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00601704 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00458344 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00389736 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00375400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPONS.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPO.dll
2014-02-17 12:16 - 2011-05-31 09:42 - 00218216 _____ (DTS) C:\Windows\system32\DTSLFXAPO.dll
2014-02-17 12:16 - 2011-05-05 15:24 - 01740352 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO.dll
2014-02-17 12:16 - 2011-05-02 14:27 - 03296600 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP32A.dll
2014-02-17 12:16 - 2011-05-02 14:27 - 00345944 _____ (Dolby Laboratories) C:\Windows\system32\R4EED32A.dll
2014-02-17 12:16 - 2011-05-02 14:27 - 00103256 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL32A.dll
2014-02-17 12:16 - 2011-05-02 14:27 - 00088408 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA32A.dll
2014-02-17 12:16 - 2011-05-02 14:27 - 00061272 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG32A.dll
2014-02-17 12:16 - 2011-03-17 12:16 - 01379760 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-02-17 12:16 - 2011-03-07 17:03 - 00134584 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00359768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP32A.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT32.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA32.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00170840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED32A.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL32A.dll
2014-02-17 12:16 - 2010-11-08 07:31 - 00064856 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG32A.dll
2014-02-17 12:16 - 2010-10-03 13:45 - 00259928 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-02-17 12:16 - 2010-09-27 09:34 - 00232792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-02-17 12:16 - 2010-07-22 16:37 - 00175200 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTACap.dll
2014-02-17 12:16 - 2010-05-06 17:35 - 00252760 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-02-17 12:16 - 2009-12-04 15:43 - 00132368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO.dll
2014-02-17 12:16 - 2009-11-24 09:55 - 00345328 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSXT.dll
2014-02-17 12:16 - 2009-11-24 09:55 - 00185584 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSHD.dll
2014-02-17 12:16 - 2009-11-24 09:55 - 00173296 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP360.dll
2014-02-17 12:16 - 2009-11-24 09:55 - 00140528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW.dll
2014-02-17 12:16 - 2009-11-18 18:42 - 01783056 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesLib.dll
2014-02-17 12:16 - 2009-11-17 18:13 - 00096160 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTARen.dll
2014-02-17 12:15 - 2011-10-18 16:41 - 00150996 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-02-17 12:15 - 2011-10-14 13:43 - 01873920 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes.dat
2014-02-17 12:15 - 2011-06-30 16:14 - 01497704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSndMgr.cpl
2014-02-17 10:16 - 2014-02-17 10:16 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-02-17 10:16 - 2014-02-17 10:16 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-17 10:15 - 2014-02-17 10:15 - 03645064 _____ (Piriform Ltd) C:\Users\Mü\Downloads\ccsetup410_slim.exe
2014-02-15 20:25 - 2014-02-15 20:26 - 00000000 ____D () C:\Users\Mü\AppData\Local\QuickPar
2014-02-15 20:23 - 2014-02-15 20:23 - 00503439 _____ (Peter B Clements) C:\Users\Mü\Downloads\QuickPar-0.9.1.0-DEU.exe
2014-02-15 20:23 - 2014-02-15 20:23 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QuickPar
2014-02-15 20:23 - 2014-02-15 20:23 - 00000000 ____D () C:\Program Files\QuickPar
2014-02-15 11:49 - 2014-02-17 09:33 - 14041088 _____ () C:\Users\Mü\AppData\Roaming\Sandra.mdb
2014-02-15 11:48 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-02-15 11:48 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-02-15 11:48 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-02-15 11:48 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-02-15 11:48 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-02-15 11:48 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-02-15 11:48 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-02-15 11:48 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-02-15 11:48 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-02-15 11:48 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-02-15 11:48 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-02-15 11:48 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-02-15 11:47 - 2014-02-15 11:48 - 00000000 ____D () C:\Windows\system32\directx
2014-02-15 11:47 - 2014-02-15 11:47 - 00001331 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP1.lnk
2014-02-15 11:46 - 2014-02-15 11:46 - 00000000 ____D () C:\Program Files\SiSoftware
2014-02-15 10:44 - 2009-10-14 11:57 - 00012437 _____ () C:\Users\Mü\Downloads\manual.html
2014-02-15 10:44 - 2008-10-11 15:03 - 00024576 _____ () C:\Users\Mü\Desktop\memtest.exe
2014-02-15 10:43 - 2014-02-15 10:44 - 68875496 _____ (SiSoftware ) C:\Users\Mü\Downloads\sandra-2014.02.20.18.exe
2014-02-15 10:43 - 2014-02-15 10:43 - 00013507 _____ () C:\Users\Mü\Downloads\MemTest4.zip
2014-02-15 10:30 - 2014-02-15 10:30 - 00000000 ____D () C:\Program Files\ATI
2014-02-15 10:26 - 2014-02-17 10:56 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-15 09:34 - 2014-02-15 09:58 - 00000000 ____D () C:\Program Files\PhotoshopPortable
2014-02-14 15:36 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-14 15:36 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-14 15:36 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-14 15:36 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-14 15:36 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-14 15:36 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-14 15:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-14 15:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-14 15:36 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-14 15:36 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-14 15:36 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-14 15:36 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-14 15:36 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-14 15:36 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-13 16:07 - 2014-02-13 18:13 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\DisplayFusion
2014-02-13 16:07 - 2014-02-13 16:07 - 00000000 __SHD () C:\Users\Mü\AppData\Roaming\Common
2014-02-13 16:02 - 2014-02-17 15:57 - 00000000 ____D () C:\Program Files\DisplayFusion
2014-02-13 15:54 - 2014-02-13 15:54 - 00000000 __SHD () C:\ProgramData\Adobe-Flash-Net
2014-02-13 15:47 - 2014-02-13 15:47 - 00000000 ____D () C:\ProgramData\Binary Fortress Software
2014-02-13 15:44 - 2014-02-13 16:07 - 00000000 ____D () C:\Users\Mü\Documents\DisplayFusion Backups
2014-02-08 12:04 - 2014-02-08 12:04 - 00000000 ___HD () C:\ProgramData\CanonIJScan
2014-02-07 14:52 - 2014-02-07 14:52 - 00000000 ____D () C:\ProgramData\vsosdk
2014-02-07 11:56 - 2014-02-13 16:58 - 00000000 ____D () C:\Users\Mü\Documents\ConvertXtoDVD
2014-02-07 11:32 - 2014-02-17 10:21 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Vso
2014-02-07 11:32 - 2014-02-17 10:21 - 00000000 ____D () C:\ProgramData\VSO
2014-02-07 11:32 - 2014-02-07 11:32 - 00087608 _____ () C:\Users\Mü\AppData\Roaming\inst.exe
2014-02-07 11:32 - 2014-02-07 11:32 - 00047360 _____ (VSO Software) C:\Users\Mü\AppData\Roaming\pcouffin.sys
2014-02-07 11:32 - 2014-02-07 11:32 - 00007887 _____ () C:\Users\Mü\AppData\Roaming\pcouffin.cat
2014-02-07 11:32 - 2014-02-07 11:32 - 00001190 _____ () C:\Users\Mü\Desktop\ConvertXToDVD 5.lnk
2014-02-07 11:32 - 2014-02-07 11:32 - 00000055 _____ () C:\Users\Mü\AppData\Roaming\pcouffin.log
2014-02-07 11:32 - 2014-02-07 11:32 - 00000000 ____D () C:\Program Files\VSO
2014-01-30 15:16 - 2014-02-17 15:57 - 00000000 ____D () C:\Program Files\Uptime24.net - Client
2014-01-27 15:23 - 2014-02-17 12:44 - 00000000 ____D () C:\Users\Mü\AppData\Local\Canon Easy-PhotoPrint EX
2014-01-23 18:52 - 2014-01-23 18:52 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Mü\Desktop\GPU-Z.0.7.5.exe
2014-01-23 18:46 - 2014-02-13 15:54 - 00000000 __RHO () C:\Users\Mü\Desktop\core temp.exe
==================== One Month Modified Files and Folders =======
2014-02-17 16:56 - 2014-02-17 16:54 - 00011518 _____ () C:\Users\Mü\Desktop\FRST.txt
2014-02-17 16:56 - 2014-02-17 16:54 - 00000000 ____D () C:\FRST
2014-02-17 16:55 - 2014-02-17 16:55 - 00012514 _____ () C:\Users\Mü\Desktop\Addition.txt
2014-02-17 16:55 - 2013-12-31 13:21 - 01698699 _____ () C:\Windows\WindowsUpdate.log
2014-02-17 16:55 - 2009-07-14 05:34 - 00013216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-17 16:55 - 2009-07-14 05:34 - 00013216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-17 16:54 - 2014-01-03 11:29 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Dropbox
2014-02-17 16:53 - 2014-02-17 16:53 - 01141248 _____ (Farbar) C:\Users\Mü\Desktop\FRST.exe
2014-02-17 16:52 - 2014-01-03 11:33 - 00000000 ___RD () C:\Users\Mü\Dropbox
2014-02-17 16:50 - 2013-12-31 13:17 - 00000000 ____D () C:\Windows\Panther
2014-02-17 16:49 - 2014-02-17 14:15 - 00000280 _____ () C:\Windows\setupact.log
2014-02-17 16:49 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-17 16:47 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-02-17 16:21 - 2014-01-02 16:38 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-17 15:57 - 2014-02-13 16:02 - 00000000 ____D () C:\Program Files\DisplayFusion
2014-02-17 15:57 - 2014-01-30 15:16 - 00000000 ____D () C:\Program Files\Uptime24.net - Client
2014-02-17 15:57 - 2014-01-17 15:32 - 00000000 ____D () C:\Program Files\CyberGhost 5
2014-02-17 15:57 - 2013-12-31 13:42 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2014-02-17 15:37 - 2013-12-31 13:28 - 00000000 ____D () C:\Users\Mü
2014-02-17 15:36 - 2014-02-17 12:39 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\DRPSu
2014-02-17 14:59 - 2014-02-17 14:59 - 00000338 _____ () C:\Windows\PFRO.log
2014-02-17 14:56 - 2013-12-31 14:14 - 00000000 ____D () C:\Users\Mü\AppData\Local\genienext
2014-02-17 14:15 - 2014-02-17 14:15 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-17 14:13 - 2013-12-31 14:43 - 00000000 ____D () C:\AdwCleaner
2014-02-17 14:12 - 2014-02-17 12:25 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\uTorrent
2014-02-17 14:12 - 2014-01-01 13:49 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\DAEMON Tools Lite
2014-02-17 14:09 - 2014-01-02 12:21 - 00000000 ____D () C:\Users\Mü\AppData\Local\CrashDumps
2014-02-17 13:56 - 2014-02-17 13:56 - 00840584 _____ (Adobe Systems Incorporated) C:\Users\Mü\Downloads\uninstall_flash_player.exe
2014-02-17 13:39 - 2014-01-01 13:08 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\vlc
2014-02-17 13:34 - 2013-12-31 13:31 - 01629372 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-17 12:53 - 2014-02-17 12:52 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-02-17 12:52 - 2014-02-17 12:52 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-02-17 12:52 - 2014-02-17 12:52 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\TuneUp Software
2014-02-17 12:44 - 2014-02-17 12:43 - 10534760 _____ (Kuzyakov Artur ) C:\Users\Mü\Downloads\DRPSu13-Lite.exe
2014-02-17 12:44 - 2014-01-27 15:23 - 00000000 ____D () C:\Users\Mü\AppData\Local\Canon Easy-PhotoPrint EX
2014-02-17 12:44 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-02-17 12:37 - 2014-02-17 12:34 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Opera
2014-02-17 12:37 - 2014-02-17 12:34 - 00000000 ____D () C:\Users\Mü\AppData\Local\Opera
2014-02-17 12:36 - 2014-01-01 14:04 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-02-17 12:36 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-02-17 12:22 - 2014-02-17 12:22 - 00000000 ____D () C:\Program Files\MSECache
2014-02-17 12:17 - 2014-02-17 12:17 - 00000000 ____D () C:\Windows\system32\sda
2014-02-17 12:16 - 2014-02-17 12:16 - 00000000 ____D () C:\Windows\system32\RTCOM
2014-02-17 12:16 - 2014-02-17 12:16 - 00000000 ____D () C:\Program Files\Realtek
2014-02-17 12:07 - 2014-01-01 14:30 - 00000000 ____D () C:\Users\Mü\AppData\Local\Adobe
2014-02-17 11:52 - 2014-01-02 16:38 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-02-17 11:52 - 2014-01-02 16:38 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-02-17 10:56 - 2014-02-15 10:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-17 10:56 - 2013-12-31 15:22 - 00000000 ____D () C:\Program Files\Alt.Binz
2014-02-17 10:21 - 2014-02-07 11:32 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Vso
2014-02-17 10:21 - 2014-02-07 11:32 - 00000000 ____D () C:\ProgramData\VSO
2014-02-17 10:16 - 2014-02-17 10:16 - 00000969 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-02-17 10:16 - 2014-02-17 10:16 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-17 10:15 - 2014-02-17 10:15 - 03645064 _____ (Piriform Ltd) C:\Users\Mü\Downloads\ccsetup410_slim.exe
2014-02-17 09:33 - 2014-02-15 11:49 - 14041088 _____ () C:\Users\Mü\AppData\Roaming\Sandra.mdb
2014-02-15 20:31 - 2014-01-02 11:34 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\FileZilla
2014-02-15 20:26 - 2014-02-15 20:25 - 00000000 ____D () C:\Users\Mü\AppData\Local\QuickPar
2014-02-15 20:23 - 2014-02-15 20:23 - 00503439 _____ (Peter B Clements) C:\Users\Mü\Downloads\QuickPar-0.9.1.0-DEU.exe
2014-02-15 20:23 - 2014-02-15 20:23 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QuickPar
2014-02-15 20:23 - 2014-02-15 20:23 - 00000000 ____D () C:\Program Files\QuickPar
2014-02-15 12:00 - 2009-07-14 05:33 - 00434048 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-15 11:59 - 2013-12-31 13:43 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-02-15 11:48 - 2014-02-15 11:47 - 00000000 ____D () C:\Windows\system32\directx
2014-02-15 11:47 - 2014-02-15 11:47 - 00001331 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP1.lnk
2014-02-15 11:46 - 2014-02-15 11:46 - 00000000 ____D () C:\Program Files\SiSoftware
2014-02-15 10:44 - 2014-02-15 10:43 - 68875496 _____ (SiSoftware ) C:\Users\Mü\Downloads\sandra-2014.02.20.18.exe
2014-02-15 10:43 - 2014-02-15 10:43 - 00013507 _____ () C:\Users\Mü\Downloads\MemTest4.zip
2014-02-15 10:30 - 2014-02-15 10:30 - 00000000 ____D () C:\Program Files\ATI
2014-02-15 10:24 - 2013-12-31 13:40 - 00111520 _____ () C:\Users\Mü\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-15 10:09 - 2014-01-01 13:46 - 00000000 ____D () C:\Program Files\Unlocker
2014-02-15 09:58 - 2014-02-15 09:34 - 00000000 ____D () C:\Program Files\PhotoshopPortable
2014-02-15 09:43 - 2014-01-01 17:54 - 00000000 ____D () C:\Program Files\Common Files\Adobe.BackupByPhotoshopPortable
2014-02-14 18:34 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-02-14 16:37 - 2014-01-02 15:54 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-14 16:34 - 2014-01-02 15:54 - 85946576 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-13 18:13 - 2014-02-13 16:07 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\DisplayFusion
2014-02-13 16:58 - 2014-02-07 11:56 - 00000000 ____D () C:\Users\Mü\Documents\ConvertXtoDVD
2014-02-13 16:07 - 2014-02-13 16:07 - 00000000 __SHD () C:\Users\Mü\AppData\Roaming\Common
2014-02-13 16:07 - 2014-02-13 15:44 - 00000000 ____D () C:\Users\Mü\Documents\DisplayFusion Backups
2014-02-13 15:54 - 2014-02-13 15:54 - 00000000 __SHD () C:\ProgramData\Adobe-Flash-Net
2014-02-13 15:54 - 2014-01-23 18:46 - 00000000 __RHO () C:\Users\Mü\Desktop\core temp.exe
2014-02-13 15:47 - 2014-02-13 15:47 - 00000000 ____D () C:\ProgramData\Binary Fortress Software
2014-02-12 15:47 - 2014-01-08 17:24 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Skype
2014-02-12 10:49 - 2014-01-06 15:18 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Adress Little
2014-02-10 12:05 - 2013-12-31 15:58 - 00000000 ____D () C:\Program Files\Adwcleaner
2014-02-08 12:04 - 2014-02-08 12:04 - 00000000 ___HD () C:\ProgramData\CanonIJScan
2014-02-08 12:04 - 2014-01-02 12:22 - 00000000 ____D () C:\Users\Mü\AppData\Roaming\Canon
2014-02-08 10:30 - 2014-01-01 17:50 - 00000000 ____D () C:\Program Files\Junkware Removal Tool
2014-02-07 14:52 - 2014-02-07 14:52 - 00000000 ____D () C:\ProgramData\vsosdk
2014-02-07 11:32 - 2014-02-07 11:32 - 00087608 _____ () C:\Users\Mü\AppData\Roaming\inst.exe
2014-02-07 11:32 - 2014-02-07 11:32 - 00047360 _____ (VSO Software) C:\Users\Mü\AppData\Roaming\pcouffin.sys
2014-02-07 11:32 - 2014-02-07 11:32 - 00007887 _____ () C:\Users\Mü\AppData\Roaming\pcouffin.cat
2014-02-07 11:32 - 2014-02-07 11:32 - 00001190 _____ () C:\Users\Mü\Desktop\ConvertXToDVD 5.lnk
2014-02-07 11:32 - 2014-02-07 11:32 - 00000055 _____ () C:\Users\Mü\AppData\Roaming\pcouffin.log
2014-02-07 11:32 - 2014-02-07 11:32 - 00000000 ____D () C:\Program Files\VSO
2014-02-04 13:16 - 2014-01-02 17:03 - 00000000 ____D () C:\Users\Mü\Documents\Settlers7
2014-02-01 18:49 - 2014-01-17 15:33 - 00000000 ____D () C:\Users\Mü\AppData\Local\CyberGhost
2014-01-23 18:52 - 2014-01-23 18:52 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Mü\Desktop\GPU-Z.0.7.5.exe
2014-01-20 10:53 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
Some content of TEMP:
====================
C:\Users\Mü\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-29 19:52
==================== End Of Log ============================ --- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 16-02-2014
Ran by Mü at 2014-02-17 16:56:43
Running from C:\Users\Mü\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Norton 360 Premier Edition (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton 360 Premier Edition (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton 360 Premier Edition (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
==================== Installed Programs ======================
Adobe Flash Player 12 Plugin (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (Version: 11.0.06 - Adobe Systems Incorporated)
Alt.Binz 0.39.4 (Version: 0.39.4 - Rdl)
AMD Catalyst Install Manager (Version: 8.0.877.0 - Advanced Micro Devices, Inc.)
Canon Easy-PhotoPrint EX (Version: - )
Canon Easy-WebPrint EX (Version: 1.4.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (Version: - )
Canon IJ Network Tool (Version: 3.1.1 - Canon Inc.)
Canon MG5300 series Benutzerregistrierung (Version: - )
Canon MG5300 series MP Drivers (Version: - Canon Inc.)
Canon MG5300 series On-screen Manual (Version: - )
Canon MP Navigator EX 5.0 (Version: - )
Canon My Printer (Version: - )
Canon Solution Menu EX (Version: - )
Captcha Brotherhood (Version: 1.2.0 - Brotherhood Software)
CCleaner (Version: 4.10 - Piriform)
CyberGhost 5 (Version: - CyberGhost S.R.L.)
DAEMON Tools Lite (Version: 4.48.1.0347 - Disc Soft Ltd)
Die Siedler 7 (Version: 1.12.1396 - Ubisoft)
DisplayFusion 5.0 (Version: 5.0.0.0 - Binary Fortress Software)
Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.)
Free Studio version 2014 (Version: 6.2.4.1230 - DVDVideoSoft Ltd.)
JDownloader 0.9 (Version: 0.9 - AppWork GmbH)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Access MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft DCF MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Excel MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Groove MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Word MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Mozilla Firefox 27.0.1 (x86 de) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (Version: 27.0.1 - Mozilla)
Norton 360 (Version: 21.1.0.18 - Symantec Corporation)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
QuickPar 0.9 (Version: 0.9 - Peter B. Clements)
Realtek High Definition Audio Driver (Version: 6.0.1.6482 - Realtek Semiconductor Corp.)
SiSoftware Sandra Lite 2014.SP1 (Version: 20.18.2014.2 - SiSoftware)
Skype™ 6.11 (Version: 6.11.102 - Skype Technologies S.A.)
TAP-Windows 9.9.2 (Version: 9.9.2 - )
Ubisoft Game Launcher (Version: 1.0.0.0 - UBISOFT)
Unlocker 1.9.2 (Version: 1.9.2 - Cedrick Collomb)
Update for Microsoft Office 2013 (KB2726961) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2752100) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760311) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760621) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760624) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2726947) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2013 (KB2760358) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2751994) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2738044) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2752073) 32-Bit Edition (Version: - Microsoft)
Uptime Client Version 2.2 (Version: 2.2 - Uptime24.net)
VLC media player 2.1.2 (Version: 2.1.2 - VideoLAN)
VSO ConvertXToDVD (Version: 5.1.0.14 - VSO Software)
WinRAR 4.20 (32-Bit) (Version: 4.20.0 - win.rar GmbH)
==================== Restore Points =========================
15-02-2014 10:45:32 SiSoftware Sandra Lite
15-02-2014 10:48:22 DirectX wurde installiert
17-02-2014 11:15:11 DriverPack Solution 12.3
17-02-2014 11:18:30 Gerätetreiber-Paketinstallation: Advanced Micro Devices Audio-, Video- und Gamecontroller
17-02-2014 11:34:51 Removed 7-Zip 9.20
17-02-2014 11:36:08 Удалено: Пакет обеспечения совместимости для выпуска 2007 системы Microsoft Office
17-02-2014 11:39:58 Removed Foxit Reader
17-02-2014 11:54:24 TuneUp Utilities 2014 wird entfernt
17-02-2014 11:55:07 TuneUp Utilities 2014 (de-DE) wird entfernt
17-02-2014 15:45:24 Windows Modules Installer
17-02-2014 15:46:01 Windows Modules Installer
==================== Hosts content: ==========================
2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {03451AFD-2780-44AC-A472-B6E0DCC2AC37} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-17] (Adobe Systems Incorporated)
Task: {069B5B13-0EC0-46DD-8C18-8D53D83818CB} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files\Norton 360\Engine\21.1.0.18\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {16363A11-5A17-4DD9-937B-F6994DB4450B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {36C02D88-60B4-47C8-9AFE-A872510368DD} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton 360\Engine\21.1.0.18\WSCStub.exe [2013-10-08] (Symantec Corporation)
Task: {3AA360F4-F37B-41A2-9F3B-141CA059EF09} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {4170DD53-185D-4F64-8063-FB50F6C3978A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)
Task: {481DAF4D-2BB6-49C9-8C7D-2B6AF92439CB} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files\Norton 360\Engine\21.1.0.18\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {BA6CBFE6-10E8-4CC5-B6A6-39AB273656CA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2014-01-30 15:16 - 2013-03-19 20:01 - 00061440 _____ () C:\Program Files\Uptime24.net - Client\UptimeClient.exe
2014-02-15 10:26 - 2014-02-15 10:27 - 03578992 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\Mü\AppData\Roaming\Dropbox\bin\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
MSCONFIG\startupreg: CanonSolutionMenuEx => C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: DrvUpdater => C:\Users\Mü\AppData\Roaming\DRPSu\DrvUpdater.exe
MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
MSCONFIG\startupreg: PLFSetL => C:\Windows\PLFSetL.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Error: (02/17/2014 04:34:37 PM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (02/17/2014 03:01:05 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 47%
Total physical RAM: 3294.36 MB
Available physical RAM: 1743.27 MB
Total Pagefile: 6587.01 MB
Available Pagefile: 4835.58 MB
Total Virtual: 2047.88 MB
Available Virtual: 1905.63 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:447.93 GB) (Free:398.95 GB) NTFS
Drive d: () (Fixed) (Total:465.76 GB) (Free:210.16 GB) NTFS
Drive g: () (Removable) (Total:3.72 GB) (Free:3.71 GB) FAT32
Drive i: (ext. FP 500GB grau) (Fixed) (Total:465.76 GB) (Free:392.65 GB) NTFS
Drive j: (ext. FP 1000GB schwarz) (Fixed) (Total:931.51 GB) (Free:27.91 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: E20EC200)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=448 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=12)
========================================================
Disk: 1 (Size: 466 GB) (Disk ID: F65A8C13)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (Size: 4 GB) (Disk ID: 6F20736B)
No partition Table on disk 2.
Disk 2 is a removable device.
========================================================
Disk: 3 (Size: 932 GB) (Disk ID: E8900690)
Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS)
========================================================
Disk: 4 (MBR Code: Windows XP) (Size: 466 GB) (Disk ID: 5B2CC482)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |