FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Danos (administrator) on ARBEITSZIMMER on 20-03-2014 10:12:20
Running from C:\Users\Danos\Desktop
Windows 8.1 Pro (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool
Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forums
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AMD) C:\WINDOWS\system32\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
(Microsoft Corporation) C:\WINDOWS\system32\dashost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AMD) C:\WINDOWS\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\skydrive.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-10-01] (Microsoft Corporation)
HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7477016 2013-04-24] (Logitech Inc.)
HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [2991856 2013-02-21] (Logitech, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-12] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4962320 2014-01-22] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-783677318-398379548-3326147236-1001\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1821888 2014-02-25] (Valve Corporation)
HKU\S-1-5-21-783677318-398379548-3326147236-1001\...\Run: [AmazonMP3DownloaderHelper] - C:\Users\Danos\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] ()
HKU\S-1-5-21-783677318-398379548-3326147236-1001\...\MountPoints2: {f0cc7192-f57c-11e2-be66-806e6f6e6963} - "D:\Diablo III Setup.exe"
Startup: C:\Users\Danos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Danos\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Danos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_48214642.lnk
Startup: C:\Users\Danos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\_uninst_59525843.lnk
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login.
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x03A0A54E023ECF01
BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Toolbar: HKCU - No Name - {42435041-332D-5637-00A7-7A786E7484D7} - No File
DPF: HKLM-x32 {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} hxxp://download.gigabyte.com.tw/object/Dldrv.ocx
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-06] (Advanced Micro Devices, Inc.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1358944 2013-09-24] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3788816 2014-01-22] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-31] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-31] (Microsoft Corporation)
S2 vToolbarUpdater18.0.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.0\ToolbarUpdater.exe [X]
==================== Drivers (Whitelisted) ====================
R0 48214642; C:\Windows\system32\DRIVERS\48214642.sys [460888 2014-02-06] (Kaspersky Lab ZAO)
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-25] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [243480 2013-11-25] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [196376 2013-11-25] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx64.sys [50976 2014-03-03] (AVG Technologies)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [252728 2013-10-21] (AVG Technologies CZ, s.r.o.)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2013-09-04] ()
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation)
R3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [66800 2013-01-17] (Logitech Inc.)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-31] (Microsoft Corporation)
R2 webinstr; C:\WINDOWS\system32\Drivers\webinstr.sys [55480 2014-01-28] (Corsica)
R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2013-08-22] (Microsoft Corporation)
S3 cpuz136; \??\C:\WINDOWS\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 GPCIDrv; \??\C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [X]
S3 GPUZ; \??\C:\WINDOWS\TEMP\GPUZ.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-20 10:11 - 2014-03-20 10:12 - 00011662 _____ () C:\Users\Danos\Desktop\FRST.txt
2014-03-20 10:08 - 2014-03-20 10:08 - 00001124 _____ () C:\WINDOWS\PFRO.log
2014-03-20 09:56 - 2014-03-20 10:12 - 00000000 ____D () C:\FRST
2014-03-20 09:54 - 2014-03-20 09:54 - 02157056 _____ (Farbar) C:\Users\Danos\Desktop\FRST64.exe
2014-03-20 09:05 - 2014-03-20 09:11 - 00000000 ____D () C:\Users\Danos\Downloads\Norton 360
2014-03-19 12:18 - 2014-01-03 00:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-03-19 12:18 - 2013-12-27 09:57 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2014-03-19 12:18 - 2013-12-27 09:23 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2014-03-19 12:18 - 2013-12-27 08:03 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2014-03-19 12:18 - 2013-12-27 07:37 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2014-03-19 12:18 - 2013-12-14 07:31 - 13949440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-03-19 12:18 - 2013-12-14 07:19 - 18576384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-03-19 12:18 - 2013-12-09 09:05 - 21199256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-03-19 12:18 - 2013-12-09 05:51 - 18643560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-03-19 12:17 - 2014-01-08 02:41 - 01530712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-03-19 12:17 - 2014-01-08 02:41 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-03-19 12:17 - 2014-01-04 16:54 - 00138240 _____ () C:\WINDOWS\system32\OEMLicense.dll
2014-03-19 12:17 - 2014-01-04 16:08 - 00103936 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-03-19 12:17 - 2014-01-04 15:08 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-03-19 12:17 - 2014-01-04 14:53 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-03-19 12:17 - 2014-01-03 00:48 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-03-19 12:17 - 2014-01-01 02:55 - 01720560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-03-19 12:17 - 2014-01-01 02:52 - 00481944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-03-19 12:17 - 2014-01-01 01:56 - 01472048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-03-19 12:17 - 2014-01-01 01:55 - 00381168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-03-19 12:17 - 2014-01-01 00:59 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-03-19 12:17 - 2014-01-01 00:57 - 01214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-03-19 12:17 - 2014-01-01 00:56 - 00960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-03-19 12:17 - 2013-12-31 00:34 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2014-03-19 12:17 - 2013-12-31 00:33 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-03-19 12:17 - 2013-12-31 00:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2014-03-19 12:17 - 2013-12-31 00:31 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-03-19 12:17 - 2013-12-31 00:31 - 00914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-03-19 12:17 - 2013-12-27 16:09 - 00419160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-03-19 12:17 - 2013-12-27 09:57 - 00842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2014-03-19 12:17 - 2013-12-27 08:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2014-03-19 12:17 - 2013-12-21 08:21 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2014-03-19 12:17 - 2013-12-17 08:21 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2014-03-19 12:17 - 2013-12-13 11:54 - 00131160 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2014-03-19 12:17 - 2013-12-13 07:36 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2014-03-19 12:17 - 2013-12-13 06:32 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2014-03-14 18:07 - 2014-03-14 18:07 - 00014831 _____ () C:\Users\Danos\Desktop\Klingel.m4a
2014-03-13 18:40 - 2014-01-31 14:47 - 02143960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-03-13 18:40 - 2014-01-29 08:44 - 01371824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2014-03-13 18:40 - 2014-01-29 08:44 - 00408480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2014-03-13 18:40 - 2014-01-29 08:44 - 00369280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2014-03-13 18:40 - 2014-01-29 07:41 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-03-13 18:40 - 2014-01-27 19:52 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2014-03-13 18:40 - 2014-01-27 19:23 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2014-03-13 18:40 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-03-13 18:40 - 2014-01-27 19:20 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2014-03-13 18:40 - 2014-01-27 18:43 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-03-13 18:40 - 2014-01-27 18:00 - 01238016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2014-03-13 18:40 - 2014-01-27 16:58 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-03-13 18:40 - 2014-01-17 22:54 - 00669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-03-13 18:39 - 2014-02-22 13:16 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2014-03-13 18:39 - 2014-02-22 12:24 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2014-03-13 18:39 - 2014-01-31 17:15 - 00311640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-03-13 18:39 - 2014-01-31 17:07 - 00233920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-03-13 18:39 - 2014-01-31 17:06 - 02133208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-03-13 18:39 - 2014-01-31 10:06 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-03-13 18:39 - 2014-01-29 10:55 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2014-03-13 18:39 - 2014-01-29 09:53 - 00458616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2014-03-13 18:39 - 2014-01-29 09:53 - 00407024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2014-03-13 18:39 - 2014-01-29 09:49 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2014-03-13 18:39 - 2014-01-29 09:47 - 02543960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-03-13 18:39 - 2014-01-29 01:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-03-13 18:39 - 2014-01-27 20:07 - 04175360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2014-03-13 18:39 - 2014-01-27 20:06 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-03-13 18:39 - 2014-01-27 20:04 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2014-03-13 18:39 - 2014-01-27 19:15 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-03-13 18:39 - 2014-01-27 18:18 - 01486848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2014-03-13 18:39 - 2014-01-27 16:50 - 06640640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-03-13 18:39 - 2014-01-27 12:45 - 00386722 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-03-13 18:39 - 2014-01-18 00:04 - 00764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-03-13 18:39 - 2013-12-21 15:51 - 06353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2014-03-13 18:39 - 2013-12-21 09:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2014-03-13 18:39 - 2013-10-31 01:29 - 00236888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-03-13 18:39 - 2013-10-31 01:29 - 00124760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-03-13 18:39 - 2013-10-31 01:28 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-03-13 18:38 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-03-13 18:38 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-03-13 18:38 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-03-13 18:38 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-03-13 18:38 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-03-13 18:38 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-03-13 18:38 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-03-13 18:38 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-03-13 18:38 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-03-13 18:38 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-03-13 18:38 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-03-13 18:38 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-03-13 18:38 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-03-13 18:38 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-03-13 18:38 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-03-13 18:38 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-03-13 18:38 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-03-13 18:38 - 2013-12-20 11:18 - 01643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2014-03-13 18:38 - 2013-12-20 11:18 - 01507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2014-03-13 12:30 - 2014-03-13 12:30 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software
2014-03-13 12:30 - 2014-03-13 12:30 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software
2014-03-13 11:36 - 2014-03-13 11:36 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files\iTunes
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files\iPod
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-13 11:31 - 2014-03-13 11:31 - 00001857 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-03-13 11:31 - 2014-03-13 11:31 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-03-13 07:21 - 2014-02-11 04:04 - 04189184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-03-13 07:21 - 2014-02-11 03:43 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-03-13 07:21 - 2014-02-11 03:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-03-12 15:54 - 2014-03-12 15:55 - 26437344 _____ (Microsoft Corporation) C:\Users\Danos\Downloads\Windows-KB890830-x64-V5.10.exe
2014-03-12 15:39 - 2014-03-12 15:39 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-03-12 15:33 - 2014-03-12 15:46 - 00000000 ____D () C:\AdwCleaner
2014-03-12 15:32 - 2014-03-12 15:32 - 01949184 _____ () C:\Users\Danos\Downloads\adwcleaner.exe
2014-03-12 15:28 - 2014-03-12 15:28 - 00014962 _____ () C:\Users\Danos\Downloads\iframe3
2014-03-12 11:26 - 2014-03-12 11:26 - 00000000 ____D () C:\Users\Danos\Documents\Antimalware Bericht
2014-03-10 19:21 - 2014-03-10 19:21 - 00000000 ____D () C:\Users\Danos\Documents\Thief
2014-03-09 20:14 - 2014-03-09 20:14 - 00000222 _____ () C:\Users\Danos\Desktop\Thief.url
2014-03-08 11:01 - 2014-03-08 11:02 - 00039453 _____ () C:\Users\Danos\Downloads\8bf7671a157f4a87bfa93b66f8686774
2014-03-04 22:54 - 2014-03-20 07:30 - 00000000 ____D () C:\Users\Danos\AppData\Local\Battle.net
2014-03-04 22:54 - 2014-03-05 19:38 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-03-04 22:54 - 2014-03-04 22:55 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Battle.net
2014-03-04 22:54 - 2014-03-04 22:54 - 00001158 _____ () C:\Users\Public\Desktop\Battle.net.lnk
2014-03-04 22:48 - 2014-03-04 22:48 - 06018744 _____ (Blizzard Entertainment) C:\Users\Danos\Downloads\Diablo-III-Setup-deDE.exe
2014-03-04 22:39 - 2014-03-04 22:44 - 00392744 _____ () C:\Users\Danos\Downloads\plugin_w.jsp
2014-03-04 22:19 - 2014-03-04 22:19 - 05748920 _____ (Blizzard Entertainment) C:\Users\Danos\Downloads\Battle.net-Beta-Setup-deDE.exe
2014-03-04 20:09 - 2014-03-04 20:09 - 12097477 _____ () C:\Users\Danos\Downloads\AfricanWildlife.themepack
2014-03-04 06:20 - 2014-03-04 06:20 - 00000000 ____D () C:\Users\Danos\AppData\Local\Blizzard Entertainment
2014-03-04 06:19 - 2014-03-04 06:19 - 00000000 ____D () C:\Users\Danos\Documents\Diablo III
2014-03-03 19:05 - 2014-03-12 15:07 - 00000000 ____D () C:\Users\Danos\Desktop\Diablo III
2014-03-03 19:05 - 2014-03-03 19:17 - 00000845 _____ () C:\Users\Public\Desktop\Diablo III.lnk
2014-03-03 19:05 - 2014-03-03 19:16 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-03-03 19:04 - 2014-03-03 19:04 - 00000000 ____D () C:\ProgramData\Battle.net
2014-02-24 21:09 - 2014-02-24 21:09 - 00000000 _____ () C:\Recovery.txt
2014-02-23 21:20 - 2014-02-23 21:20 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\AVG
2014-02-23 21:19 - 2014-02-23 21:25 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-02-23 21:19 - 2014-02-23 21:22 - 00000000 ____D () C:\ProgramData\AVG
2014-02-23 16:08 - 2014-02-23 16:08 - 00606352 _____ () C:\Users\Danos\Downloads\Passbild-36aGenerator.exe
2014-02-23 16:08 - 2014-02-23 16:08 - 00000000 ____D () C:\Users\Danos\AppData\Local\Passbild_Generator
2014-02-23 15:47 - 2014-02-23 15:47 - 00000879 _____ () C:\Users\Danos\AppData\Local\recently-used.xbel
2014-02-23 14:02 - 2014-02-23 14:02 - 00001205 _____ () C:\Users\Public\Desktop\Shop für HP Zubehör.lnk
2014-02-23 14:01 - 2014-02-23 14:01 - 00001371 _____ () C:\Users\Public\Desktop\HP Solution Center.lnk
2014-02-23 14:01 - 2014-02-23 14:01 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-02-23 13:51 - 2014-02-23 14:50 - 00250744 _____ () C:\WINDOWS\hpoins30.dat
2014-02-23 13:51 - 2012-10-15 10:47 - 00000582 ____N () C:\WINDOWS\hpomdl30.dat
2014-02-23 13:36 - 2014-02-23 13:45 - 239487608 _____ () C:\Users\Danos\Downloads\PS_AIO_04_C4500_USW_Full_Win_WW_140_408 (1).exe
2014-02-23 13:09 - 2014-03-03 19:03 - 00050976 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx64.sys
2014-02-23 13:08 - 2014-02-23 13:08 - 00000000 ____D () C:\ProgramData\AVG 0214c Campaign
2014-02-21 23:22 - 2014-02-21 23:22 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\AVG2014
2014-02-21 23:21 - 2014-03-13 12:30 - 00000997 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-02-21 23:21 - 2014-02-21 23:21 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\TuneUp Software
2014-02-21 23:20 - 2014-03-20 10:03 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-02-21 23:20 - 2014-02-21 23:21 - 00000000 ____D () C:\ProgramData\AVG2014
2014-02-21 23:20 - 2014-02-21 23:20 - 00000000 ___HD () C:\$AVG
2014-02-21 23:19 - 2014-03-20 09:02 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-21 23:19 - 2014-02-21 23:23 - 00000000 ____D () C:\Users\Danos\AppData\Local\Avg2014
2014-02-21 23:19 - 2014-02-21 23:19 - 00000000 ____D () C:\Users\Danos\AppData\Local\MFAData
2014-02-21 23:13 - 2014-02-21 23:17 - 155264904 _____ (AVG Technologies) C:\Users\Danos\Downloads\avg_free_x64_all_2014_4335a7045.exe
2014-02-21 22:55 - 2014-02-21 23:06 - 00000000 ____D () C:\Users\Danos\AppData\Local\NPE
2014-02-21 22:55 - 2014-02-21 22:55 - 03057128 ____N (Symantec Corporation) C:\Users\Danos\Downloads\NPE.exe
2014-02-21 22:46 - 2014-02-06 15:37 - 00460888 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\48214642.sys
2014-02-21 22:44 - 2014-03-10 22:46 - 00000000 ____D () C:\WINDOWS\Minidump
2014-02-21 22:43 - 2014-02-21 22:43 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-02-21 22:42 - 2014-02-06 15:37 - 00460888 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\59525843.sys
2014-02-21 22:38 - 2014-02-21 22:41 - 133796768 _____ () C:\Users\Danos\Downloads\setup_11.0.1.1245.x01_2014_02_06_15_37.exe
2014-02-20 23:26 - 2014-03-20 08:11 - 01968982 ____N () C:\WINDOWS\WindowsUpdate.log
2014-02-20 23:06 - 2014-02-20 23:06 - 00000000 ____D () C:\ProgramData\ATI
2014-02-20 23:04 - 2014-02-20 23:04 - 00066765 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201402202304163524.log
2014-02-20 23:04 - 2014-02-20 23:04 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-02-20 23:03 - 2014-02-20 23:03 - 00000000 ____D () C:\Program Files\AMD
2014-02-20 23:02 - 2014-02-20 23:04 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-02-20 23:02 - 2014-02-20 23:02 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-02-20 22:44 - 2014-02-20 22:44 - 00060148 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201402202244096227.log
2014-02-20 22:03 - 2014-02-20 22:03 - 00001216 _____ () C:\Users\Public\Desktop\3DMark.lnk
2014-02-20 22:03 - 2014-02-20 22:03 - 00000000 ____D () C:\Users\Danos\Documents\3DMark
2014-02-20 21:28 - 2014-02-20 21:53 - 1007522262 _____ () C:\Users\Danos\Downloads\3DMark-v1-2-250.zip
2014-02-20 21:18 - 2014-02-20 22:21 - 00000022 _____ () C:\WINDOWS\GPU-Z.INI
2014-02-19 23:21 - 2014-02-19 23:21 - 00000000 ____D () C:\Users\Danos\AppData\Local\Futuremark
2014-02-19 23:20 - 2014-02-20 22:02 - 00000000 ____D () C:\Program Files (x86)\Futuremark
2014-02-19 23:20 - 2014-02-19 23:20 - 02617344 _____ () C:\Users\Danos\Downloads\Futuremark_SystemInfo_v425_installer.msi
2014-02-19 23:19 - 2014-02-20 21:18 - 00000000 ____D () C:\Users\Danos\Documents\PCMark 8
2014-02-19 23:19 - 2014-02-19 23:19 - 00000000 ____D () C:\Users\Danos\AppData\Local\IsolatedStorage
2014-02-19 23:13 - 2014-02-19 23:13 - 00001143 _____ () C:\Users\Public\Desktop\PCMark 8.lnk
2014-02-19 23:10 - 2014-02-20 22:02 - 00000000 ____D () C:\Program Files\Futuremark
2014-02-19 23:10 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-02-19 23:10 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2014-02-19 23:10 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-02-19 23:10 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2014-02-19 23:10 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2014-02-19 23:10 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2014-02-19 23:10 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-02-19 23:05 - 2014-02-19 23:05 - 00000000 ____D () C:\Users\Danos\Downloads\Neuer Ordner
2014-02-19 23:00 - 2014-02-19 23:02 - 00000000 ____D () C:\Users\Danos\Downloads\PCMark8-v2-0-204-Guru3D.com]
2014-02-19 21:44 - 2014-02-19 22:57 - 3162003678 _____ () C:\Users\Danos\Downloads\PCMark8-v2-0-204-Guru3D.com].zip
2014-02-19 19:51 - 2014-02-23 13:16 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-19 19:49 - 2014-02-19 19:51 - 90578216 _____ (AVAST Software) C:\Users\Danos\Downloads\avast_free_antivirus_setup.exe
2014-02-19 19:42 - 2014-02-19 19:42 - 00122848 _____ () C:\Users\Danos\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-19 19:42 - 2014-02-19 19:42 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\PDF Architect
2014-02-19 18:36 - 2014-02-19 19:54 - 00000000 ____D () C:\Program Files (x86)\ChrisPC Win Experience Index
2014-02-19 18:36 - 2014-02-19 18:36 - 01210104 _____ (Chris P.C. srl ) C:\Users\Danos\Downloads\setup_chrispc_wei_1_20.exe
2014-02-18 18:14 - 2014-02-18 18:14 - 00089630 _____ () C:\Users\Danos\Downloads\Extras.Txt
2014-02-18 18:13 - 2014-02-18 18:13 - 00129794 _____ () C:\Users\Danos\Downloads\OTL.Txt
2014-02-18 18:08 - 2014-02-18 18:08 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Malwarebytes
2014-02-18 18:08 - 2014-02-18 18:08 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-18 18:07 - 2014-02-18 18:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Danos\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-18 18:04 - 2014-02-18 18:04 - 00602112 _____ (OldTimer Tools) C:\Users\Danos\Downloads\OTL.exe
2014-02-18 18:04 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-02-18 18:04 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2014-02-18 18:04 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-02-18 18:04 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-02-18 18:04 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2014-02-18 18:04 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys
2014-02-18 18:04 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2014-02-18 18:04 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2014-02-18 18:04 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-02-18 18:04 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2014-02-18 18:04 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-02-18 18:04 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2014-02-18 18:04 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-02-18 18:04 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-02-18 18:04 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-02-18 18:04 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-02-18 18:04 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2014-02-18 18:04 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-02-18 18:04 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-02-18 18:04 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-02-18 18:04 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-02-18 18:04 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-02-18 18:04 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-02-18 18:04 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-02-18 18:04 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2014-02-18 18:04 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2014-02-18 18:04 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-02-18 18:04 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-02-18 18:04 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-02-18 18:04 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-02-18 18:03 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-02-18 18:03 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2014-02-18 18:03 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-02-18 18:03 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
2014-02-18 18:03 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2014-02-18 18:03 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll
2014-02-18 17:55 - 2014-02-18 17:56 - 00000000 ____D () C:\Users\Danos\Documents\Facharbeit_Erzieherin_Vivienne Februar_2014
==================== One Month Modified Files and Folders =======
2014-03-20 10:12 - 2014-03-20 10:11 - 00011662 _____ () C:\Users\Danos\Desktop\FRST.txt
2014-03-20 10:12 - 2014-03-20 09:56 - 00000000 ____D () C:\FRST
2014-03-20 10:09 - 2013-10-18 13:04 - 00000000 __RDO () C:\Users\Danos\SkyDrive
2014-03-20 10:09 - 2013-08-30 10:53 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-03-20 10:09 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-03-20 10:09 - 2013-07-25 23:57 - 00000000 ___RD () C:\Users\Danos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-20 10:09 - 2013-07-25 23:57 - 00000000 ___RD () C:\Users\Danos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-20 10:08 - 2014-03-20 10:08 - 00001124 _____ () C:\WINDOWS\PFRO.log
2014-03-20 10:07 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-03-20 10:07 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-03-20 10:04 - 2013-08-30 10:51 - 00000000 ____D () C:\WINDOWS\system32\appmgmt
2014-03-20 10:03 - 2014-02-21 23:20 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-03-20 10:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-03-20 10:00 - 2013-07-28 10:27 - 00000000 ____D () C:\Users\Danos\AppData\Local\CrashDumps
2014-03-20 09:59 - 2013-08-28 13:12 - 00000000 ____D () C:\Users\Danos\Documents\Studium Gebäude- und Energietechnik
2014-03-20 09:54 - 2014-03-20 09:54 - 02157056 _____ (Farbar) C:\Users\Danos\Desktop\FRST64.exe
2014-03-20 09:52 - 2013-11-07 11:55 - 00003950 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1F1186F2-1E26-4742-9998-78E815260DC0}
2014-03-20 09:48 - 2013-08-04 20:52 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-20 09:20 - 2013-07-25 23:56 - 00000000 ____D () C:\Users\Danos\AppData\Local\VirtualStore
2014-03-20 09:11 - 2014-03-20 09:05 - 00000000 ____D () C:\Users\Danos\Downloads\Norton 360
2014-03-20 09:03 - 2013-09-04 10:07 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\vlc
2014-03-20 09:02 - 2014-02-21 23:19 - 00000000 ____D () C:\ProgramData\MFAData
2014-03-20 08:11 - 2014-02-20 23:26 - 01968982 ____N () C:\WINDOWS\WindowsUpdate.log
2014-03-20 07:38 - 2013-07-26 00:02 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-783677318-398379548-3326147236-1001
2014-03-20 07:34 - 2013-09-30 05:14 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-03-20 07:34 - 2013-09-30 04:56 - 00764340 _____ () C:\WINDOWS\system32\perfh007.dat
2014-03-20 07:34 - 2013-09-30 04:56 - 00159160 _____ () C:\WINDOWS\system32\perfc007.dat
2014-03-20 07:30 - 2014-03-04 22:54 - 00000000 ____D () C:\Users\Danos\AppData\Local\Battle.net
2014-03-18 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-03-16 12:15 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-03-14 18:07 - 2014-03-14 18:07 - 00014831 _____ () C:\Users\Danos\Desktop\Klingel.m4a
2014-03-14 14:01 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-03-14 13:21 - 2013-08-08 11:35 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Apple Computer
2014-03-13 22:51 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-13 22:51 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-13 22:51 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-13 22:51 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-03-13 18:39 - 2013-07-26 02:19 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-03-13 12:30 - 2014-03-13 12:30 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software
2014-03-13 12:30 - 2014-03-13 12:30 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software
2014-03-13 12:30 - 2014-02-21 23:21 - 00000997 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-03-13 11:55 - 2013-08-22 15:44 - 00482104 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-13 11:53 - 2013-11-07 12:01 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-13 11:36 - 2014-03-13 11:36 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files\iTunes
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files\iPod
2014-03-13 11:36 - 2014-03-13 11:36 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-13 11:31 - 2014-03-13 11:31 - 00001857 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-03-13 11:31 - 2014-03-13 11:31 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-03-12 15:55 - 2014-03-12 15:54 - 26437344 _____ (Microsoft Corporation) C:\Users\Danos\Downloads\Windows-KB890830-x64-V5.10.exe
2014-03-12 15:46 - 2014-03-12 15:33 - 00000000 ____D () C:\AdwCleaner
2014-03-12 15:39 - 2014-03-12 15:39 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-03-12 15:32 - 2014-03-12 15:32 - 01949184 _____ () C:\Users\Danos\Downloads\adwcleaner.exe
2014-03-12 15:28 - 2014-03-12 15:28 - 00014962 _____ () C:\Users\Danos\Downloads\iframe3
2014-03-12 15:07 - 2014-03-03 19:05 - 00000000 ____D () C:\Users\Danos\Desktop\Diablo III
2014-03-12 11:41 - 2013-07-28 21:47 - 00000000 ____D () C:\ProgramData\Origin
2014-03-12 11:38 - 2013-07-28 21:47 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-03-12 11:26 - 2014-03-12 11:26 - 00000000 ____D () C:\Users\Danos\Documents\Antimalware Bericht
2014-03-11 18:48 - 2013-08-04 20:52 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-03-10 22:46 - 2014-02-21 22:44 - 00000000 ____D () C:\WINDOWS\Minidump
2014-03-10 19:21 - 2014-03-10 19:21 - 00000000 ____D () C:\Users\Danos\Documents\Thief
2014-03-09 20:14 - 2014-03-09 20:14 - 00000222 _____ () C:\Users\Danos\Desktop\Thief.url
2014-03-08 11:02 - 2014-03-08 11:01 - 00039453 _____ () C:\Users\Danos\Downloads\8bf7671a157f4a87bfa93b66f8686774
2014-03-06 23:28 - 2013-10-18 12:43 - 00000000 ____D () C:\Users\Danos
2014-03-05 19:49 - 2013-07-25 23:56 - 00000000 ____D () C:\Users\Danos\AppData\Local\Packages
2014-03-05 19:38 - 2014-03-04 22:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-03-04 23:53 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-03-04 23:53 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-04 22:55 - 2014-03-04 22:54 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Battle.net
2014-03-04 22:54 - 2014-03-04 22:54 - 00001158 _____ () C:\Users\Public\Desktop\Battle.net.lnk
2014-03-04 22:48 - 2014-03-04 22:48 - 06018744 _____ (Blizzard Entertainment) C:\Users\Danos\Downloads\Diablo-III-Setup-deDE.exe
2014-03-04 22:44 - 2014-03-04 22:39 - 00392744 _____ () C:\Users\Danos\Downloads\plugin_w.jsp
2014-03-04 22:19 - 2014-03-04 22:19 - 05748920 _____ (Blizzard Entertainment) C:\Users\Danos\Downloads\Battle.net-Beta-Setup-deDE.exe
2014-03-04 20:09 - 2014-03-04 20:09 - 12097477 _____ () C:\Users\Danos\Downloads\AfricanWildlife.themepack
2014-03-04 06:20 - 2014-03-04 06:20 - 00000000 ____D () C:\Users\Danos\AppData\Local\Blizzard Entertainment
2014-03-04 06:19 - 2014-03-04 06:19 - 00000000 ____D () C:\Users\Danos\Documents\Diablo III
2014-03-03 19:17 - 2014-03-03 19:05 - 00000845 _____ () C:\Users\Public\Desktop\Diablo III.lnk
2014-03-03 19:16 - 2014-03-03 19:05 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-03-03 19:04 - 2014-03-03 19:04 - 00000000 ____D () C:\ProgramData\Battle.net
2014-03-03 19:03 - 2014-02-23 13:09 - 00050976 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx64.sys
2014-03-02 14:05 - 2013-07-28 02:26 - 90015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-03-01 07:05 - 2014-03-13 18:38 - 23133696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-03-01 05:58 - 2014-03-13 18:38 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-03-01 05:30 - 2014-03-13 18:38 - 17074688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-03-01 05:17 - 2014-03-13 18:38 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-03-01 04:54 - 2014-03-13 18:38 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-03-01 04:47 - 2014-03-13 18:38 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-03-01 04:42 - 2014-03-13 18:38 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-03-01 04:18 - 2014-03-13 18:38 - 13051904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-03-01 04:14 - 2014-03-13 18:38 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-03-01 04:10 - 2014-03-13 18:38 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-03-01 04:03 - 2014-03-13 18:38 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-03-01 03:57 - 2014-03-13 18:38 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-03-01 03:38 - 2014-03-13 18:38 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-03-01 03:32 - 2014-03-13 18:38 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-03-01 03:27 - 2014-03-13 18:38 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-03-01 03:25 - 2014-03-13 18:38 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-03-01 03:25 - 2014-03-13 18:38 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-02-27 21:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp
2014-02-24 21:09 - 2014-02-24 21:09 - 00000000 _____ () C:\Recovery.txt
2014-02-23 21:25 - 2014-02-23 21:19 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-02-23 21:25 - 2013-09-12 11:51 - 00000000 ____D () C:\Users\Danos\AppData\Local\Downloaded Installations
2014-02-23 21:25 - 2013-09-04 20:26 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\HpUpdate
2014-02-23 21:22 - 2014-02-23 21:19 - 00000000 ____D () C:\ProgramData\AVG
2014-02-23 21:20 - 2014-02-23 21:20 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\AVG
2014-02-23 20:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-02-23 20:12 - 2013-10-23 09:44 - 00000000 ____D () C:\Users\Danos\Documents\gothic3
2014-02-23 19:29 - 2013-10-18 12:40 - 00018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2014-02-23 16:08 - 2014-02-23 16:08 - 00606352 _____ () C:\Users\Danos\Downloads\Passbild-36aGenerator.exe
2014-02-23 16:08 - 2014-02-23 16:08 - 00000000 ____D () C:\Users\Danos\AppData\Local\Passbild_Generator
2014-02-23 16:05 - 2013-12-16 18:55 - 00000000 ____D () C:\Users\Danos\.gimp-2.8
2014-02-23 15:47 - 2014-02-23 15:47 - 00000879 _____ () C:\Users\Danos\AppData\Local\recently-used.xbel
2014-02-23 15:47 - 2013-12-16 18:58 - 00000000 ____D () C:\Users\Danos\AppData\Local\gtk-2.0
2014-02-23 14:50 - 2014-02-23 13:51 - 00250744 _____ () C:\WINDOWS\hpoins30.dat
2014-02-23 14:50 - 2013-08-01 10:20 - 00014146 _____ () C:\ProgramData\hpzinstall.log
2014-02-23 14:49 - 2012-07-26 06:26 - 00000202 _____ () C:\WINDOWS\win.ini
2014-02-23 14:02 - 2014-02-23 14:02 - 00001205 _____ () C:\Users\Public\Desktop\Shop für HP Zubehör.lnk
2014-02-23 14:02 - 2013-08-01 10:22 - 00000000 ____D () C:\Program Files (x86)\HP
2014-02-23 14:01 - 2014-02-23 14:01 - 00001371 _____ () C:\Users\Public\Desktop\HP Solution Center.lnk
2014-02-23 14:01 - 2014-02-23 14:01 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-02-23 14:01 - 2013-08-01 10:19 - 00000000 ____D () C:\ProgramData\HP
2014-02-23 13:45 - 2014-02-23 13:36 - 239487608 _____ () C:\Users\Danos\Downloads\PS_AIO_04_C4500_USW_Full_Win_WW_140_408 (1).exe
2014-02-23 13:28 - 2013-09-04 10:07 - 00001082 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-02-23 13:16 - 2014-02-19 19:51 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-23 13:08 - 2014-02-23 13:08 - 00000000 ____D () C:\ProgramData\AVG 0214c Campaign
2014-02-22 13:16 - 2014-03-13 18:39 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2014-02-22 12:24 - 2014-03-13 18:39 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2014-02-21 23:23 - 2014-02-21 23:19 - 00000000 ____D () C:\Users\Danos\AppData\Local\Avg2014
2014-02-21 23:22 - 2014-02-21 23:22 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\AVG2014
2014-02-21 23:21 - 2014-02-21 23:21 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\TuneUp Software
2014-02-21 23:21 - 2014-02-21 23:20 - 00000000 ____D () C:\ProgramData\AVG2014
2014-02-21 23:21 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2014-02-21 23:20 - 2014-02-21 23:20 - 00000000 ___HD () C:\$AVG
2014-02-21 23:19 - 2014-02-21 23:19 - 00000000 ____D () C:\Users\Danos\AppData\Local\MFAData
2014-02-21 23:17 - 2014-02-21 23:13 - 155264904 _____ (AVG Technologies) C:\Users\Danos\Downloads\avg_free_x64_all_2014_4335a7045.exe
2014-02-21 23:06 - 2014-02-21 22:55 - 00000000 ____D () C:\Users\Danos\AppData\Local\NPE
2014-02-21 22:55 - 2014-02-21 22:55 - 03057128 ____N (Symantec Corporation) C:\Users\Danos\Downloads\NPE.exe
2014-02-21 22:43 - 2014-02-21 22:43 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-02-21 22:41 - 2014-02-21 22:38 - 133796768 _____ () C:\Users\Danos\Downloads\setup_11.0.1.1245.x01_2014_02_06_15_37.exe
2014-02-20 23:06 - 2014-02-20 23:06 - 00000000 ____D () C:\ProgramData\ATI
2014-02-20 23:04 - 2014-02-20 23:04 - 00066765 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201402202304163524.log
2014-02-20 23:04 - 2014-02-20 23:04 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-02-20 23:04 - 2014-02-20 23:02 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-02-20 23:03 - 2014-02-20 23:03 - 00000000 ____D () C:\Program Files\AMD
2014-02-20 23:03 - 2013-07-26 00:10 - 00000000 ____D () C:\ProgramData\AMD
2014-02-20 23:02 - 2014-02-20 23:02 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-02-20 23:02 - 2013-09-04 10:57 - 00000000 ____D () C:\Program Files\ATI
2014-02-20 23:02 - 2013-08-04 09:42 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-20 22:44 - 2014-02-20 22:44 - 00060148 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201402202244096227.log
2014-02-20 22:21 - 2014-02-20 21:18 - 00000022 _____ () C:\WINDOWS\GPU-Z.INI
2014-02-20 22:03 - 2014-02-20 22:03 - 00001216 _____ () C:\Users\Public\Desktop\3DMark.lnk
2014-02-20 22:03 - 2014-02-20 22:03 - 00000000 ____D () C:\Users\Danos\Documents\3DMark
2014-02-20 22:02 - 2014-02-19 23:20 - 00000000 ____D () C:\Program Files (x86)\Futuremark
2014-02-20 22:02 - 2014-02-19 23:10 - 00000000 ____D () C:\Program Files\Futuremark
2014-02-20 21:53 - 2014-02-20 21:28 - 1007522262 _____ () C:\Users\Danos\Downloads\3DMark-v1-2-250.zip
2014-02-20 21:18 - 2014-02-19 23:19 - 00000000 ____D () C:\Users\Danos\Documents\PCMark 8
2014-02-19 23:21 - 2014-02-19 23:21 - 00000000 ____D () C:\Users\Danos\AppData\Local\Futuremark
2014-02-19 23:20 - 2014-02-19 23:20 - 02617344 _____ () C:\Users\Danos\Downloads\Futuremark_SystemInfo_v425_installer.msi
2014-02-19 23:19 - 2014-02-19 23:19 - 00000000 ____D () C:\Users\Danos\AppData\Local\IsolatedStorage
2014-02-19 23:13 - 2014-02-19 23:13 - 00001143 _____ () C:\Users\Public\Desktop\PCMark 8.lnk
2014-02-19 23:05 - 2014-02-19 23:05 - 00000000 ____D () C:\Users\Danos\Downloads\Neuer Ordner
2014-02-19 23:02 - 2014-02-19 23:00 - 00000000 ____D () C:\Users\Danos\Downloads\PCMark8-v2-0-204-Guru3D.com]
2014-02-19 22:57 - 2014-02-19 21:44 - 3162003678 _____ () C:\Users\Danos\Downloads\PCMark8-v2-0-204-Guru3D.com].zip
2014-02-19 19:54 - 2014-02-19 18:36 - 00000000 ____D () C:\Program Files (x86)\ChrisPC Win Experience Index
2014-02-19 19:51 - 2014-02-19 19:49 - 90578216 _____ (AVAST Software) C:\Users\Danos\Downloads\avast_free_antivirus_setup.exe
2014-02-19 19:42 - 2014-02-19 19:42 - 00122848 _____ () C:\Users\Danos\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-19 19:42 - 2014-02-19 19:42 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\PDF Architect
2014-02-19 19:41 - 2013-09-19 17:06 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-02-19 19:41 - 2013-07-26 00:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-19 19:40 - 2013-07-26 00:02 - 00000000 ____D () C:\Users\Danos\AppData\Local\Google
2014-02-19 19:36 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2014-02-19 19:36 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism
2014-02-19 19:15 - 2013-11-20 22:17 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-02-19 18:36 - 2014-02-19 18:36 - 01210104 _____ (Chris P.C. srl ) C:\Users\Danos\Downloads\setup_chrispc_wei_1_20.exe
2014-02-19 18:27 - 2013-10-23 11:44 - 00000000 ___RD () C:\Users\Danos\Dropbox
2014-02-19 18:27 - 2013-10-23 11:42 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Dropbox
2014-02-19 18:25 - 2013-07-29 02:00 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-02-18 18:14 - 2014-02-18 18:14 - 00089630 _____ () C:\Users\Danos\Downloads\Extras.Txt
2014-02-18 18:13 - 2014-02-18 18:13 - 00129794 _____ () C:\Users\Danos\Downloads\OTL.Txt
2014-02-18 18:08 - 2014-02-18 18:08 - 00000000 ____D () C:\Users\Danos\AppData\Roaming\Malwarebytes
2014-02-18 18:08 - 2014-02-18 18:08 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-18 18:08 - 2014-02-18 18:07 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Danos\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-18 18:04 - 2014-02-18 18:04 - 00602112 _____ (OldTimer Tools) C:\Users\Danos\Downloads\OTL.exe
2014-02-18 17:56 - 2014-02-18 17:55 - 00000000 ____D () C:\Users\Danos\Documents\Facharbeit_Erzieherin_Vivienne Februar_2014
Some content of TEMP:
====================
C:\Users\Danos\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Danos\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Danos\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Danos\AppData\Local\Temp\SDShelEx-x64.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2014-03-13 18:39] - [2014-01-31 17:15] - 0311640 ___AC (Microsoft Corporation) C85C075DE5B6D0FE116043054DE8EE02
LastRegBack: 2014-03-20 07:38
==================== End Of Log ============================ --- --- ---
FRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014
Ran by Danos at 2014-03-20 10:12:46
Running from C:\Users\Danos\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: AVG Internet Security 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
==================== Installed Programs ======================
3DMark (HKLM-x32\...\{e1e3b41b-1078-4885-a74f-393ca384b1aa}) (Version: 1.2.250.0 - Futuremark)
3DMark (Version: 1.2.250.0 - Futuremark) Hidden
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Amazon MP3-Downloader 1.0.18 (HKCU\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC)
AMD Accelerated Video Transcoding (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Ihr Firmenname) Hidden
AMD Catalyst Install Manager (HKLM\...\{308051DA-0048-7A07-FE8B-9B6EC119A9E8}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Fuel (Version: 2013.1206.1603.28764 - Ihr Firmenname) Hidden
AMD Wireless Display v3.0 (Version: 1.0.0.10 - Advanced Micro Devices, Inc.) Hidden
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ashampoo Burning Studio 2013 v.11.0.6 (HKLM-x32\...\{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1) (Version: 11.0.6 - Ashampoo GmbH & Co. KG)
Assassin's Creed (HKLM-x32\...\Steam App 15100) (Version: - Ubisoft Montreal)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4336 - AVG Technologies)
AVG 2014 (Version: 14.0.3722 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4336 - AVG Technologies) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Belkin 54Mbps Wireless Network Adapter (HKLM-x32\...\{F3759A9F-7AFA-4FB4-8DF1-53F26B979DEE}) (Version: 1.00.01 - Belkin)
Belkin F5D8053 N Wireless USB Adapter (HKLM-x32\...\InstallShield_{E6607F5B-50E7-4B54-81B7-F0600E3C8CF4}) (Version: 2.0.0.04 - Belkin)
Belkin F5D8053 N Wireless USB Adapter (x32 Version: 2.0.0.04 - Belkin) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
C4500 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
ChrisPC Win Experience Index 1.20 (HKLM-x32\...\{1116089C-14B5-1A23-8113-6124567ABCDE}_is1) (Version: - Chris P.C. srl)
Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: 1.0.0.0 - Electronic Arts)
Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.)
eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
F.E.A.R. Ultimate Shooter Edition - F.E.A.R. 2 (HKLM-x32\...\{8C06EE31-AE51-4589-B53F-1406F6BBA229}) (Version: 1.00.0000 - WB Games)
F.E.A.R. Ultimate Shooter Edition (HKLM-x32\...\{C03D7CF4-E172-421F-8209-667BAF0BEA1C}) (Version: 1.00.0000 - WB Games)
FEAR_Installer_Fix (HKLM-x32\...\{8D797CA6-C708-4541-B731-779CC9863A07}) (Version: 1.0 - WB Games Inc.)
Free M4a to MP3 Converter 8.0 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark)
Gigaset QuickSync (HKLM\...\{b49e8cfb-f094-4467-925a-97c23972cb50}) (Version: 8.3.0868.3 - Gigaset Communications GmbH)
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Gothic III (HKLM-x32\...\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}) (Version: 1.00.0000 - JoWooD Productions Software AG)
GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North)
GRID (HKLM-x32\...\Steam App 12750) (Version: - Codemasters Studios)
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart C4500 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{0EC01D72-4906-42DD-BCC0-AF89EDA7493D}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Logitech Gaming Software (Version: 8.45.88 - Logitech Inc.) Hidden
Logitech Gaming Software 8.46 (HKLM\...\Logitech Gaming Software) (Version: 8.46.27 - Logitech Inc.)
Logitech SetPoint 6.52 (HKLM\...\sp6) (Version: 6.52.74 - Logitech)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Microsoft Access MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft DCF MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Excel MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Groove MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Word MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft)
Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 20.0.1387.77 (HKLM-x32\...\Opera 20.0.1387.77) (Version: 20.0.1387.77 - Opera Software ASA)
Origin (HKLM-x32\...\Origin) (Version: 9.2.1.4399 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PCMark 8 (HKLM-x32\...\{2e7be30e-4525-4b8d-94c1-abb05bbd6d30}) (Version: 2.0.204.0 - Futuremark)
PCMark 8 (Version: 2.0.204.0 - Futuremark) Hidden
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge)
Plancal® nova 6.2 (HKLM-x32\...\{2F06A385-CE27-4A8E-9739-F7F9FE70B28C}) (Version: 6.2.0.364 - Plancal Service und Entwicklung GmbH)
PS_AIO_04_C4500_Software_Min (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
Questpaket 4 Update 2 Deinstallation (HKLM-x32\...\G3QP231012008_is1) (Version: 4.2.0.0 - Humanforce)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Show-Password (HKLM-x32\...\1e44dd87-79d3-431c-8e19-d55640b6592d) (Version: - Show-Password LTD) <==== ATTENTION
SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED)
Thief (HKLM-x32\...\Steam App 239160) (Version: - Eidos-Montréal)
Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
==================== Restore Points =========================
11-03-2014 11:19:08 Geplanter Prüfpunkt
20-03-2014 06:39:11 Windows Update
==================== Hosts content: ==========================
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E9E9EBC-604F-4B54-8D2F-385B3554D533} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {1B6B99A7-A722-446C-9206-1112FE866BD3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {306D61B2-C317-4222-A6B6-C434C0D06541} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {74E80006-4F9B-421E-BF05-725A3CAD2F28} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {7917CE36-CDD5-4767-BD1F-BDB4B34CED2E} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-03-02] (Microsoft Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9961BDD9-D970-4C96-B696-0716BF69CEF0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CE1A88C4-7CE3-4CA2-AF92-CC09285E1D72} - System32\Tasks\Microsoft\Windows\WCM\Provisioning\Purge.S-1-5-21-783677318-398379548-3326147236-1001
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {FE37C9C4-51D0-43BA-B4B7-0010BC462F27} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-11] (Adobe Systems Incorporated)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2013-12-06 16:06 - 2013-12-06 16:06 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2013-07-26 05:59 - 2013-07-26 05:59 - 00814592 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2013-07-26 05:59 - 2013-07-26 05:59 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2013-12-06 16:06 - 2013-12-06 16:06 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-12-06 16:06 - 2013-12-06 16:06 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-01-09 19:46 - 2013-12-12 23:19 - 00142848 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll
2014-01-09 19:46 - 2013-11-05 02:12 - 00890592 _____ () C:\Program Files (x86)\Steam\libavutil-52.dll
2013-08-21 13:18 - 2014-02-11 03:34 - 00751616 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2013-08-28 12:47 - 2014-02-25 22:57 - 01135296 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2013-08-07 10:31 - 2014-01-11 00:33 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll
2013-06-14 14:49 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Danos\SkyDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
Name: Photosmart C4500 series
Description: Photosmart C4500 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Photosmart C4500 series
Description: Photosmart C4500 series
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (03/20/2014 10:09:58 AM) (Source: Steam Client Service) (User: )
Description: Error: Failed to poke open firewall
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 09:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 09:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/20/2014 08:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009284. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
System errors:
=============
Error: (03/20/2014 10:09:08 AM) (Source: bowser) (User: )
Description: Der Suchdiensttreiber erhielt zu viele nicht erlaubte Datagramme vom Remotecomputer "EASYBOX" zum Namen "ARBEITSZIMMER" auf Transport "NetBT_Tcpip_{CBC16083-3C51-4D69-88E7-9C8BE6F2B08C}". Das Datagramm steht in den Daten.
Es werden keine weiteren Ereignisse erzeugt, solange die Rücksetzfrequenz nicht abgelaufen ist.
Error: (03/20/2014 10:09:02 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "vToolbarUpdater18.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/20/2014 10:00:00 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (03/20/2014 07:27:43 AM) (Source: bowser) (User: )
Description: Der Suchdiensttreiber erhielt zu viele nicht erlaubte Datagramme vom Remotecomputer "EASYBOX" zum Namen "ARBEITSZIMMER" auf Transport "NetBT_Tcpip_{CBC16083-3C51-4D69-88E7-9C8BE6F2B08C}". Das Datagramm steht in den Daten.
Es werden keine weiteren Ereignisse erzeugt, solange die Rücksetzfrequenz nicht abgelaufen ist.
Error: (03/20/2014 07:27:40 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "vToolbarUpdater18.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/20/2014 07:27:32 AM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 19.03.2014 um 13:24:59 unerwartet heruntergefahren.
Error: (03/20/2014 07:26:59 AM) (Source: Microsoft-Windows-Kernel-Boot) (User: NT-AUTORITÄT)
Description: 32212265135745738530449656
Error: (03/19/2014 10:45:13 AM) (Source: bowser) (User: )
Description: Der Suchdiensttreiber erhielt zu viele nicht erlaubte Datagramme vom Remotecomputer "EASYBOX" zum Namen "ARBEITSZIMMER" auf Transport "NetBT_Tcpip_{CBC16083-3C51-4D69-88E7-9C8BE6F2B08C}". Das Datagramm steht in den Daten.
Es werden keine weiteren Ereignisse erzeugt, solange die Rücksetzfrequenz nicht abgelaufen ist.
Error: (03/19/2014 10:45:07 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "vToolbarUpdater18.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/19/2014 10:44:59 AM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 18.03.2014 um 19:10:42 unerwartet heruntergefahren.
Microsoft Office Sessions:
=========================
Error: (03/20/2014 10:09:58 AM) (Source: Steam Client Service)(User: )
Description: Failed to poke open firewall
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 10:09:27 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 09:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 09:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 09:12:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
Error: (03/20/2014 08:42:32 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: ARBEITSZIMMER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147009284
==================== Memory info ===========================
Percentage of memory in use: 34%
Total physical RAM: 4056.75 MB
Available physical RAM: 2661.48 MB
Total Pagefile: 8152.75 MB
Available Pagefile: 6248.33 MB
Total Virtual: 131072 MB
Available Virtual: 131071.84 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.17 GB) (Free:719.06 GB) NTFS
Drive d: (D3C1.0.0) (CDROM) (Total:7.66 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 5204B5C7)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)
==================== End Of Log ============================ --- --- --- |