Retrosille | 16.03.2015 08:10 | Code:
2015-03-06 17:53 - 2014-10-29 03:18 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\RunLegacyCPLElevated.exe
2015-03-06 17:53 - 2014-10-29 03:12 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\efsui.exe
2015-03-06 17:53 - 2014-10-29 03:05 - 02628608 _____ (Microsoft Corporation) C:\windows\SysWOW64\NlsLexicons0009.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00638976 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbonRes.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\DeviceUxRes.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00011264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanhlp.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00004608 _____ (Microsoft Corporation) C:\windows\SysWOW64\ws2help.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-03-06 17:53 - 2014-10-29 03:04 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\rnr20.dll
2015-03-06 17:53 - 2014-10-29 03:03 - 00077312 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2015-03-06 17:53 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\ktmw32.dll
2015-03-06 17:53 - 2014-10-29 03:03 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSHTCPIP.DLL
2015-03-06 17:53 - 2014-10-29 03:03 - 00005632 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmi.dll
2015-03-06 17:53 - 2014-10-29 03:00 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\OobeFldr.dll
2015-03-06 17:53 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\windows\SysWOW64\shimeng.dll
2015-03-06 17:53 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2015-03-06 17:53 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2015-03-06 17:53 - 2014-10-29 03:00 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\normaliz.dll
2015-03-06 17:53 - 2014-10-29 03:00 - 00003072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iprop.dll
2015-03-06 17:53 - 2014-10-29 02:59 - 00009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\help.exe
2015-03-06 17:53 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\windows\SysWOW64\cmdkey.exe
2015-03-06 17:53 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\dcomcnfg.exe
2015-03-06 17:53 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\DDOIProxy.dll
2015-03-06 17:53 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\windows\SysWOW64\RpcNs4.dll
2015-03-06 17:53 - 2014-10-29 02:56 - 00013824 _____ (Microsoft Corporation) C:\windows\SysWOW64\pstorec.dll
2015-03-06 17:53 - 2014-10-29 02:39 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\DeviceProperties.exe
2015-03-06 17:53 - 2014-10-29 02:32 - 00035840 _____ (Microsoft Corporation) C:\windows\SysWOW64\bthudtask.exe
2015-03-06 17:53 - 2014-10-29 02:29 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\dabapi.dll
2015-03-06 17:53 - 2014-10-29 02:29 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\C_ISCII.DLL
2015-03-06 17:53 - 2014-10-29 02:28 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\mountvol.exe
2015-03-06 17:53 - 2014-10-29 02:28 - 00010240 _____ (Microsoft Corporation) C:\windows\system32\TcpipSetup.dll
2015-03-06 17:53 - 2014-10-29 02:27 - 00050688 _____ (Microsoft Corporation) C:\windows\system32\lodctr.exe
2015-03-06 17:53 - 2014-10-29 02:27 - 00041984 _____ (Microsoft Corporation) C:\windows\system32\unlodctr.exe
2015-03-06 17:53 - 2014-10-29 02:27 - 00027136 _____ (Microsoft Corporation) C:\windows\system32\fltMC.exe
2015-03-06 17:53 - 2014-10-29 02:27 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\TRACERT.EXE
2015-03-06 17:53 - 2014-10-29 02:27 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\HOSTNAME.EXE
2015-03-06 17:53 - 2014-10-29 02:26 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\VaultCmd.exe
2015-03-06 17:53 - 2014-10-29 02:26 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\MRINFO.EXE
2015-03-06 17:53 - 2014-10-29 02:23 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\AppxStreamingDataSourcePS.dll
2015-03-06 17:53 - 2014-10-29 02:21 - 00023040 _____ (Microsoft Corporation) C:\windows\system32\ROUTE.EXE
2015-03-06 17:53 - 2014-10-29 02:21 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\dllhst3g.exe
2015-03-06 17:53 - 2014-10-29 02:06 - 00011264 _____ (Microsoft Corporation) C:\windows\SysWOW64\C_ISCII.DLL
2015-03-06 17:53 - 2014-10-29 02:06 - 00008704 _____ (Microsoft Corporation) C:\windows\SysWOW64\dabapi.dll
2015-03-06 17:53 - 2014-10-29 02:05 - 00008704 _____ (Microsoft Corporation) C:\windows\SysWOW64\backgroundTaskHost.exe
2015-03-06 17:53 - 2014-10-29 02:03 - 00183808 _____ (Microsoft Corporation) C:\windows\system32\LaunchTM.exe
2015-03-06 17:53 - 2014-10-29 02:00 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\CallButtons.ProxyStub.dll
2015-03-06 17:53 - 2014-10-29 01:58 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\bootim.exe
2015-03-06 17:53 - 2014-10-07 04:30 - 00026112 ____C (Microsoft Corporation) C:\windows\system32\Drivers\sermouse.sys
2015-03-06 17:53 - 2014-10-07 04:29 - 00107520 ____C (Microsoft Corporation) C:\windows\system32\Drivers\i8042prt.sys
2015-03-06 17:53 - 2014-10-07 04:29 - 00032256 ____C (Microsoft Corporation) C:\windows\system32\Drivers\kbdhid.sys
2015-03-06 17:53 - 2014-10-07 04:29 - 00030208 ____C (Microsoft Corporation) C:\windows\system32\Drivers\mouhid.sys
2015-03-01 14:34 - 2015-03-08 14:05 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\.minecraft
2015-03-01 13:14 - 2015-03-01 13:14 - 00003170 _____ () C:\windows\System32\Tasks\{FAE9F760-89F4-4D0F-A8E5-6A1D5F55B4A1}
2015-02-27 21:37 - 2015-02-27 21:37 - 00000000 ____D () C:\ProgramData\RELOADED
2015-02-24 19:54 - 2014-12-13 22:28 - 00513488 _____ () C:\windows\SysWOW64\locale.nls
2015-02-24 19:54 - 2014-12-13 22:28 - 00513488 _____ () C:\windows\system32\locale.nls
2015-02-24 19:54 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\windows\system32\Windows.Globalization.dll
2015-02-24 19:54 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\windows\system32\GlobCollationHost.dll
2015-02-24 19:54 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Globalization.dll
2015-02-24 19:54 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\windows\SysWOW64\GlobCollationHost.dll
2015-02-22 18:41 - 2015-02-22 18:41 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\WinRAR
2015-02-22 18:40 - 2015-02-22 18:40 - 00000720 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2015-02-22 18:40 - 2015-02-22 18:40 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-22 18:40 - 2015-02-22 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-22 15:01 - 2015-02-22 15:01 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\SKIDROW
2015-02-20 13:43 - 2015-02-20 13:43 - 00001042 _____ () C:\Users\Public\Desktop\CoD4 Demo Manager.lnk
2015-02-20 13:43 - 2015-02-20 13:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CoD4 Demo Manager
2015-02-20 13:43 - 2015-02-20 13:43 - 00000000 ____D () C:\Program Files (x86)\CoD4DM
2015-02-17 15:26 - 2015-02-17 15:26 - 01217184 _____ (Microsoft Corporation) C:\windows\SysWOW64\FM20.DLL
2015-02-15 16:34 - 2015-02-15 16:34 - 00000000 __SHD () C:\Users\Sebastian\AppData\Local\EmieBrowserModeList
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-15 23:10 - 2014-10-04 13:14 - 00000000 ____D () C:\Users\Sebastian
2015-03-15 23:03 - 2014-10-04 13:12 - 01557204 _____ () C:\windows\WindowsUpdate.log
2015-03-15 23:02 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\sru
2015-03-15 22:36 - 2014-10-18 22:17 - 00001138 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-15 22:30 - 2014-10-11 15:39 - 00281768 _____ () C:\windows\SysWOW64\PnkBstrB.xtr
2015-03-15 22:30 - 2014-10-04 17:46 - 00281768 _____ () C:\windows\SysWOW64\PnkBstrB.exe
2015-03-15 22:23 - 2014-08-30 19:20 - 00830894 _____ () C:\windows\system32\perfh007.dat
2015-03-15 22:23 - 2014-08-30 19:20 - 00183768 _____ () C:\windows\system32\perfc007.dat
2015-03-15 22:23 - 2014-03-18 11:03 - 01960188 _____ () C:\windows\system32\PerfStringBackup.INI
2015-03-15 22:21 - 2014-10-10 21:15 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Pokki
2015-03-15 22:21 - 2014-10-04 17:46 - 00281768 _____ () C:\windows\SysWOW64\PnkBstrB.ex0
2015-03-15 22:19 - 2014-08-30 09:55 - 00006463 _____ () C:\windows\SysWOW64\Gms.log
2015-03-15 22:18 - 2014-11-27 19:40 - 00000574 _____ () C:\windows\Tasks\MATLAB R2014b Startup Accelerator.job
2015-03-15 22:17 - 2014-10-04 13:26 - 00001134 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-15 22:17 - 2013-08-22 15:46 - 00084675 _____ () C:\windows\setupact.log
2015-03-15 22:17 - 2013-08-22 15:45 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-03-15 21:20 - 2014-10-04 22:33 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Xfire
2015-03-15 20:11 - 2014-10-04 13:20 - 00003598 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-689682856-1660054494-1727813767-1001
2015-03-15 19:18 - 2014-12-18 18:37 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\DVDVideoSoft
2015-03-15 19:17 - 2014-11-30 20:31 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\uTorrent
2015-03-15 18:34 - 2014-07-10 14:47 - 00042736 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\SynRMIHID.sys
2015-03-15 18:12 - 2014-08-30 09:41 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-03-15 18:12 - 2014-08-30 09:41 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-15 18:12 - 2014-08-30 09:41 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-03-15 18:12 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\Help
2015-03-15 17:51 - 2014-08-30 09:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-15 17:31 - 2014-12-01 16:11 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-15 17:30 - 2014-12-01 16:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-15 17:27 - 2015-01-22 13:02 - 00000710 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-03-15 16:37 - 2014-10-04 13:16 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\CrashDumps
2015-03-14 18:24 - 2014-10-10 21:18 - 00002297 _____ () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-03-14 18:24 - 2014-08-30 09:50 - 00003722 _____ () C:\windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2015-03-14 18:24 - 2014-08-30 09:50 - 00003476 _____ () C:\windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2015-03-14 18:24 - 2014-08-30 09:50 - 00000000 ____D () C:\ProgramData\Intel
2015-03-14 18:24 - 2014-07-31 02:04 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-14 18:23 - 2013-08-22 15:44 - 00518480 _____ () C:\windows\system32\FNTCACHE.DAT
2015-03-14 18:22 - 2014-03-18 10:54 - 00222574 _____ () C:\windows\PFRO.log
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\windows\ToastData
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\WinStore
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-14 17:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-14 17:37 - 2013-08-22 14:25 - 00262144 ___SH () C:\windows\system32\config\BBI
2015-03-14 12:42 - 2014-10-28 15:13 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-14 12:42 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\AppReadiness
2015-03-14 12:42 - 2013-08-22 16:20 - 00000000 ____D () C:\windows\CbsTemp
2015-03-14 12:41 - 2014-10-04 14:16 - 00000000 ____D () C:\windows\system32\MRT
2015-03-14 12:39 - 2014-10-04 14:16 - 122905848 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-03-11 20:33 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\rescache
2015-03-10 11:40 - 2014-10-04 14:44 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avnetflt.sys
2015-03-10 11:40 - 2014-10-04 14:41 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avipbb.sys
2015-03-10 11:40 - 2014-10-04 14:41 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avgntflt.sys
2015-03-08 22:03 - 2014-10-04 17:48 - 00362140 _____ () C:\windows\DirectX.log
2015-03-08 11:03 - 2013-08-22 16:37 - 00005111 _____ () C:\windows\DtcInstall.log
2015-03-07 23:44 - 2014-03-18 10:45 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\sppui
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\setup
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\migwiz
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\SysWOW64\Com
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\MediaViewer
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\FileManager
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\Camera
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2015-03-07 23:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-07 23:44 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\SysWOW64\oobe
2015-03-07 23:44 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\SysWOW64\Dism
2015-03-07 23:44 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\servicing
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ___SD () C:\windows\system32\dsc
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\windows\ImmersiveControlPanel
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\WinBioPlugIns
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\SystemResetPlatform
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\sppui
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\setup
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\migwiz
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\system32\Com
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\windows\IME
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-07 23:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
2015-03-07 23:43 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\Sysprep
2015-03-07 23:43 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\oobe
2015-03-07 23:43 - 2013-08-22 14:36 - 00000000 ____D () C:\windows\system32\Dism
2015-03-07 20:29 - 2013-08-22 16:36 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\msclmd.dll
2015-03-07 20:29 - 2013-08-22 16:36 - 00195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\msclmd.dll
2015-03-06 16:14 - 2014-10-04 14:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-03-06 16:14 - 2014-10-04 14:41 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-03-04 22:24 - 2014-07-31 02:03 - 00792032 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-03-04 22:24 - 2014-07-31 02:03 - 00178144 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-26 19:45 - 2014-10-04 22:12 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\vlc
==================== Files in the root of some directories =======
2014-11-20 22:34 - 2014-11-20 22:34 - 0004718 _____ () C:\Users\Sebastian\AppData\Local\recently-used.xbel
2014-08-30 09:52 - 2014-08-30 09:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some content of TEMP:
====================
C:\Users\Sebastian\AppData\Local\Temp\avgnt.exe
C:\Users\Sebastian\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplkveh3.dll
C:\Users\Sebastian\AppData\Local\Temp\gddghd.exe
C:\Users\Sebastian\AppData\Local\Temp\Intel_Technology_Access_Software.exe
C:\Users\Sebastian\AppData\Local\Temp\oct5E35.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octB063.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octB0D8.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octB7DE.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octDBFA.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octE446.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octE6E6.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\octF7F1.tmp.exe
C:\Users\Sebastian\AppData\Local\Temp\tmd_34017320.exe
C:\Users\Sebastian\AppData\Local\Temp\Uninstall.exe
C:\Users\Sebastian\AppData\Local\Temp\uttC58C.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-03-15 21:49
==================== End Of Log ============================ Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Sebastian at 2015-03-15 23:13:05
Running from D:\User\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 9.34 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0934-000001000000}) (Version: 9.34.00.0 - Igor Pavlov)
abDocs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.05.2005 - Acer Incorporated)
abDocs Office AddIn (HKLM-x32\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.01.2006 - Acer Incorporated)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.00.3002 - Acer Incorporated)
abMedia (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.06.2003.0 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.01.2005.1 - Acer Incorporated)
Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3008 - Acer Incorporated)
Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3000 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8107 - Acer Incorporated)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.01.2006 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3016.0 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated)
Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.02.3004 - Acer Incorporated)
Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.02.3004 - Acer Incorporated)
Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2005.0 - Acer Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
AGrcon v1.0 (HKLM-x32\...\AGrcon v1.0) (Version: - )
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.04.2001.2 - Acer Incorporated)
Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.03 - Ubisoft)
Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft)
Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft)
Assassin's Creed(R) III v1.06 (HKLM-x32\...\{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}) (Version: 1.06 - Ubisoft)
Avira (HKLM-x32\...\{d9ed6dcf-6bfc-4fbb-802e-81dd5b767d6e}) (Version: 1.1.32.25147 - Avira Operations & Co. KG)
Avira (x32 Version: 1.1.32.25147 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 15.0.8.650 - Avira)
Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation)
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
CoD4 Demo Manager 0.3.4 (HKLM-x32\...\CoD4 Demo Manager_is1) (Version: - Du[R]eX)
CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
Crystal Reports for Visual Studio (x32 Version: 12.51.0.240 - SAP) Hidden
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
Dotfuscator Software Services - Community Edition - DEU (HKLM-x32\...\{CE9BAD6E-60FC-46CC-82A2-5B0F2B1A0E36}) (Version: 5.0.2300.0 - PreEmptive Solutions)
Dotfuscator Software Services - Community Edition (HKLM-x32\...\{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}) (Version: 5.0.2300.0 - PreEmptive Solutions)
Dropbox (HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.)
eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM)
EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc)
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
Fallout Mod Manager 0.12.6 (HKLM-x32\...\Fallout Mod Manager_is1) (Version: - Timeslip, Q)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
HDD Password Tool (HKLM-x32\...\{97CA1EE3-9477-4C3C-BFCF-89A84B6A222E}) (Version: 1.11.1507 - TOSHIBA CORPORATION.)
inSSIDer Home (HKLM-x32\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC)
Intel(R) Chipset Device Software (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation)
Intel(R) Technology Access (HKLM-x32\...\{1c3caad7-d0ad-4f7c-87e0-f47627304993}) (Version: 1.3.3.1036 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{43FA4AC8-46F8-423F-96FD-9A7D67048F1C}) (Version: 2.5.1634 - Intel Corporation)
Java 8 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418025F0}) (Version: 8.0.250 - Oracle Corporation)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Juniper Networks Setup Client (HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\Juniper_Setup_Client) (Version: 8.0.7.50111 - Juniper Networks)
Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.)
Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.)
Junos Pulse (Version: 4.0.39813 - Ihr Firmenname) Hidden
Junos Pulse 5.0 (HKLM-x32\...\Junos Pulse 5.0) (Version: 5.0.50111 - Juniper Networks, Inc.)
Junos Pulse 802.1x Add-On (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse Core Components (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse Drivers Add-On (Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse Host Checker Plugin Add-On (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse SRX Components (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse Tunnel Manager Add-On (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Junos Pulse UAC/NC Components (x32 Version: 5.0.50111 - Juniper Networks) Hidden
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Maple 18 (HKLM\...\Maple 18) (Version: 18 - Maplesoft)
Mathcad PDSi viewable support (HKLM-x32\...\Mathcad PDSi viewable support) (Version: 9.0.0 - Adobe Systems)
Mathcad PDSi viewable support (x32 Version: 9.0.0 - Adobe Systems) Hidden
Mathcad Prime 2.0 (HKLM\...\{CC0987FE-EC76-41E0-AD67-BCD9E4E27C4F}) (Version: 2.0.1 - PTC)
MATLAB R2014b (HKLM\...\Matlab R2014b) (Version: 8.4 - The MathWorks, Inc.)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 - DEU (HKLM-x32\...\{E4E9CBC9-1CF5-48E3-AF6F-1AB44A856346}) (Version: 2.0.50331.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools - DEU (HKLM-x32\...\{31C3C6EA-E991-405F-A3AA-2C070CCCC47C}) (Version: 2.0.50331.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools (HKLM-x32\...\{40416836-56CC-4C0E-A6AF-5C34BADCE483}) (Version: 2.0.50217.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Silverlight 3 SDK - Deutsch (HKLM-x32\...\{91F54E1D-804A-46D8-A56C-53EA9C4B3177}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{8325FD0C-2FDB-46C3-921A-3A78385EA972}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Data-Tier Application Project (HKLM-x32\...\{5242B252-01BB-4F2E-BBF4-5C01BC3B6619}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{A106D33E-6B43-42C0-9BFC-D03303261FA7}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (x64) (HKLM\...\{8583E7E3-2237-4981-B957-E28E5E9AB678}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Transact-SQL Language Service (HKLM-x32\...\{92C5C058-E941-47C3-B7E8-38A79C605969}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2-Datenebenenanwendungs-Framework (HKLM-x32\...\{9C3B8582-A72A-4835-8903-877A834407BB}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 DEU (HKLM\...\{C3EAE456-7E7A-451F-80EF-F34C7A13C558}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Database Publishing Wizard 1.4 (HKLM-x32\...\{ACE28263-76A4-4BF5-B6F4-8BD719595969}) (Version: 10.1.2512.8 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{5A08C9D1-37AD-4A8D-90D3-33F92C578AA5}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (x64) (HKLM\...\{197B3774-B7E6-4D50-AD0D-7F99B1E264D2}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{28D06854-572C-4A65-83E5-F8CAF26B9FDC}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft Sync Framework Runtime v1.0 SP1 (x64) de (HKLM\...\{7AC5FFA7-6815-4AED-B16D-8E0D7CC4B221}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Framework SDK v1.0 SP1 de (HKLM-x32\...\{08DA8E46-ED67-451A-9246-50E0FF6959C9}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Framework Services v1.0 SP1 (x64) de (HKLM\...\{EF9A1373-9238-4E11-8FF8-7B83996F5BE5}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) de (HKLM\...\{11EB3D68-A5BE-43EA-8D31-43B08ADB0DA4}) (Version: 2.0.3010.0 - Microsoft Corporation)
Microsoft Team Foundation Server 2010-Objektmodell - DEU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - DEU) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319 (HKLM\...\{95A2AD24-BD44-3E39-A31F-CE928276577E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{729A3000-BC8A-3B74-BA5D-5068FE12D70C}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime Language Pack - DEU (HKLM-x32\...\{681F4E9F-34E0-36BD-BF2C-100554E403A5}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 IntelliTrace Collection (x64) (HKLM\...\{E1C1D175-C23E-38F4-9AC1-ABE5167022CF}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010 Ultimate - DEU (HKLM-x32\...\Microsoft Visual Studio 2010 Ultimate - DEU) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Macro Tools - DEU Language Pack (HKLM-x32\...\Microsoft Visual Studio Macro Tools - DEU Language Pack) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.52.3 - Black Tree Gaming)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Grafiktreiber 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
PDF24 Creator 6.9.1 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
Pokki (HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\Pokki) (Version: 0.269.7.564 - Pokki)
Pokki Download Helper (HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\PokkiDownloadHelper) (Version: 1.3.1.282 - Pokki)
PTC Quality Agent (HKLM-x32\...\{DE75B409-8D86-4574-944D-3B5E25D87B30}) (Version: 2.0.0.0 - PTC)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.322 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.33 - Qualcomm Atheros)
RconMax(MW) (HKLM-x32\...\{E6C1F38E-5B39-4155-A92B-61DFF16351AC}) (Version: 1.5.5 - Nikita)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.)
Savu Mouse (HKLM-x32\...\{6F4B8EA6-4546-4160-A05F-0706F7DC1EFF}) (Version: 1.1.9 - ROCCAT GmbH)
Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.)
Service Pack 1 für SQL Server 2008 (KB 968369) (64-bit) (HKLM\...\KB968369) (Version: 10.1.2531.0 - Microsoft Corporation)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden
Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB)
Sql Server Customer Experience Improvement Program (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
Unterstützungsdateien für Microsoft SQL Server 2008-Setup (HKLM\...\{6AF73222-EE90-434C-AE7E-B96F70A68D89}) (Version: 10.1.2731.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Visual Studio 2010 Prerequisites - English (HKLM\...\{53952792-BF16-300E-ADF2-E7E4367E00CF}) (Version: 10.0.30319 - Microsoft Corporation)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{CFCB8616-A5D1-4281-80E8-389F685BFAE2}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Web Deployment Tool (HKLM\...\{0F37D969-1260-419E-B308-EF7D29ABDE20}) (Version: 1.1.0618 - Microsoft Corporation)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Xfire (HKLM-x32\...\Xfire) (Version: - )
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-689682856-1660054494-1727813767-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
==================== Restore Points =========================
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2014-10-28 14:54 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {07A0D560-8640-43BA-8D48-5B705F4E66F0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.)
Task: {0A9D50C5-E57B-4899-858A-E0E399665CD8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-08-30] ()
Task: {13A16711-11B5-4AC2-A8C4-998DB6CFF78B} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2014-08-29] ()
Task: {252E3E34-FD6D-4E93-AB68-74BE8638B136} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-08-30] (Dolby Laboratories Inc.)
Task: {35736B86-C293-4BC6-A89F-005C8F93C922} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-08-30] (Acer Incorporate)
Task: {3E13C729-3628-4548-92D1-A6D3E3CE63B9} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-13] (TODO: <Company name>)
Task: {49948BA5-EE2E-41D8-A971-3EEB7E4278B1} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2014-08-29] ()
Task: {4B490355-F71F-4F31-86C9-866E45833607} - System32\Tasks\MATLAB R2014b Startup Accelerator => D:\Program Files\MATLAB\R2014b\bin\win64\MATLABStartupAccelerator.exe [2014-07-26] ()
Task: {53273F81-02ED-44A8-888E-23CAAB10191C} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-08-30] (Acer Incorporate)
Task: {5451CC4E-30E5-4DB4-8CD3-3A10A88CABDD} - System32\Tasks\{FAE9F760-89F4-4D0F-A8E5-6A1D5F55B4A1} => pcalua.exe -a D:\User\Downloads\forge-1.8-11.14.0.1295-1.8-installer-win.exe -d D:\User\Downloads
Task: {6C726536-24C4-4715-9EE0-53B3EC4ED589} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {7EDE74B8-E844-4C36-9F6B-79BCA115C40B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.)
Task: {80A6D352-0ED9-4343-8EC7-003546D0C70C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {85447193-E351-4571-890D-7003E88D0275} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-08-30] (Acer Incorporate)
Task: {865EB5C1-CCE0-4091-8592-E0DE66CC1B98} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2014-06-08] (Acer Incorporated)
Task: {93518CDA-3150-47D5-B85B-2A747059B786} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2014-07-01] ()
Task: {9B006759-BDAA-47C8-AC94-7FB7BA21FED6} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated)
Task: {BC67D65D-CDB1-4760-ABA5-718494E83885} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2015-03-14] (Microsoft Corporation)
Task: {F3BED502-2DA7-4E94-A99F-3B2E15947785} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-08-30] ()
Task: {FB93C086-AF33-4A6D-A662-AB87FF2B3CC4} - System32\Tasks\CCleanerSkipUAC => D:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\MATLAB R2014b Startup Accelerator.job => D:\Program Files\MATLAB\R2014b\bin\win64\MATLABStartupAccelerator.exe
==================== Loaded Modules (whitelisted) ==============
2015-03-15 18:12 - 2015-02-05 20:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-02-08 11:06 - 2015-02-08 11:06 - 00087552 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\libglog.dll
2015-02-08 11:20 - 2015-02-08 11:20 - 01793248 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\cpprest120_1_4.dll
2015-02-08 11:20 - 2015-02-08 11:20 - 00355040 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\JsonCpp.dll
2014-10-04 17:46 - 2015-01-04 21:19 - 00076888 _____ () C:\windows\SysWOW64\PnkBstrA.exe
2014-04-07 15:13 - 2014-08-30 20:18 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll
2014-04-29 01:38 - 2014-08-30 20:19 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-04-29 01:35 - 2014-08-30 20:19 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2014-04-29 01:42 - 2014-08-30 20:19 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2014-08-30 09:51 - 2014-08-30 20:18 - 00078880 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
2014-04-29 01:42 - 2014-08-30 20:19 - 00384128 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ContactsApi.dll
2014-04-29 01:30 - 2014-08-30 20:19 - 00020992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\L10n\de-DE\BtTray.de-DE.dll
2015-01-04 05:06 - 2015-01-04 05:06 - 00569856 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll
2015-01-04 05:06 - 2015-01-04 05:06 - 01400846 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avcodec-54.dll
2015-01-04 05:06 - 2015-01-04 05:06 - 00151054 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avutil-51.dll
2015-01-04 05:06 - 2015-01-04 05:06 - 00222734 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avformat-54.dll
2015-01-10 11:54 - 2015-01-10 11:54 - 00015616 _____ () C:\windows\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll
2014-12-19 21:16 - 2014-12-19 21:16 - 00013568 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll
2014-12-29 13:25 - 2014-12-29 13:25 - 00203008 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll
2014-12-29 13:26 - 2014-12-29 13:26 - 00654552 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll
2014-12-29 13:26 - 2014-12-29 13:26 - 00630528 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll
2014-12-29 13:26 - 2014-12-29 13:26 - 00119552 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll
2014-12-19 21:10 - 2014-12-19 21:10 - 00277096 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll
2014-02-19 17:51 - 2014-08-30 20:19 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-07-31 02:09 - 2014-07-01 22:13 - 00090368 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll
2015-03-12 12:40 - 2015-03-07 07:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\libglesv2.dll
2015-03-12 12:40 - 2015-03-07 07:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\libegl.dll
2015-03-12 12:40 - 2015-03-07 07:13 - 09279304 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\pdf.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-689682856-1660054494-1727813767-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg
DNS Servers: 192.168.2.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "JunosPulse"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "abDocsDllLoader"
HKLM\...\StartupApproved\Run32: => "PDFPrint"
HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\StartupApproved\StartupFolder: => "sfdr.vbs"
HKU\S-1-5-21-689682856-1660054494-1727813767-1001\...\StartupApproved\Run: => "Spotify Web Helper"
==================== Accounts: =============================
Administrator (S-1-5-21-689682856-1660054494-1727813767-500 - Administrator - Disabled)
Gast (S-1-5-21-689682856-1660054494-1727813767-501 - Limited - Disabled)
Sebastian (S-1-5-21-689682856-1660054494-1727813767-1001 - Administrator - Enabled) => C:\Users\Sebastian
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/15/2015 10:16:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: iw3mp.exe, Version: 0.0.0.0, Zeitstempel: 0x4859a219
Name des fehlerhaften Moduls: iw3mp.exe, Version: 0.0.0.0, Zeitstempel: 0x4859a219
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0027782e
ID des fehlerhaften Prozesses: 0x790
Startzeit der fehlerhaften Anwendung: 0xiw3mp.exe0
Pfad der fehlerhaften Anwendung: iw3mp.exe1
Pfad des fehlerhaften Moduls: iw3mp.exe2
Berichtskennung: iw3mp.exe3
Vollständiger Name des fehlerhaften Pakets: iw3mp.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: iw3mp.exe5
Error: (03/15/2015 04:36:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: BackgroundAgent.exe, Version: 1.0.1.6, Zeitstempel: 0x5494253a
Name des fehlerhaften Moduls: MSVCR90.dll, Version: 9.0.30729.8387, Zeitstempel: 0x51ea24a5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00056b1d
ID des fehlerhaften Prozesses: 0x1704
Startzeit der fehlerhaften Anwendung: 0xBackgroundAgent.exe0
Pfad der fehlerhaften Anwendung: BackgroundAgent.exe1
Pfad des fehlerhaften Moduls: BackgroundAgent.exe2
Berichtskennung: BackgroundAgent.exe3
Vollständiger Name des fehlerhaften Pakets: BackgroundAgent.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: BackgroundAgent.exe5
Error: (03/14/2015 06:23:17 PM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT-AUTORITÄT)
Description: Vom Ereignisanbieter "ProtectionManagement" wurde versucht, die Abfrage "select * from MSFT_MpEvent" zu registrieren, deren Zielklasse "MSFT_MpEvent" im Namespace "//./root/microsoft/protectionManagement" nicht vorhanden ist. Die Abfrage wird ignoriert.
Error: (03/14/2015 06:23:17 PM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT-AUTORITÄT)
Description: Vom Ereignisanbieter "" wurde versucht, die Abfrage "select * from MSFT_MpEvent" zu registrieren, deren Zielklasse "MSFT_MpEvent" im Namespace "//./root/microsoft/protectionManagement" nicht vorhanden ist. Die Abfrage wird ignoriert.
Error: (03/14/2015 00:45:20 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest2" in Zeile C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Komponente 2: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Error: (03/13/2015 00:58:06 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest2" in Zeile C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Komponente 2: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\windows\system32\wbem\wmiaprpl.dll4
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: rdyboost4
Error: (03/12/2015 02:09:14 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description:
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: MSDTCC:\windows\system32\msdtcuiu.DLL4
System errors:
=============
Error: (03/15/2015 10:17:19 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084ShellHWDetectionNicht verfügbar{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (03/15/2015 10:17:12 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{9E175B6D-F52A-11D8-B9A5-505054503030}
Error: (03/15/2015 10:17:11 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{9E175B6D-F52A-11D8-B9A5-505054503030}
Error: (03/15/2015 10:17:11 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{9E175B6D-F52A-11D8-B9A5-505054503030}
Error: (03/15/2015 10:17:11 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084ShellHWDetectionNicht verfügbar{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (03/15/2015 10:16:53 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084ShellHWDetectionNicht verfügbar{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (03/15/2015 10:16:42 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (03/15/2015 10:16:42 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (03/15/2015 10:16:42 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (03/15/2015 10:16:42 PM) (Source: DCOM) (EventID: 10005) (User: Allgemein)
Description: 1084WSearchNicht verfügbar{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Microsoft Office Sessions:
=========================
Error: (03/15/2015 10:16:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: iw3mp.exe0.0.0.04859a219iw3mp.exe0.0.0.04859a219c00000050027782e79001d05f65571c69b9D:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exeD:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe9709932f-cb58-11e4-836d-206a8ae0ebcf
Error: (03/15/2015 04:36:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BackgroundAgent.exe1.0.1.65494253aMSVCR90.dll9.0.30729.838751ea24a5c000000500056b1d170401d05f35cbfe376fC:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exeC:\windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.8387_none_5094ca96bcb6b2bb\MSVCR90.dll0dce3a0b-cb29-11e4-8369-206a8ae0ebcf
Error: (03/14/2015 06:23:17 PM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT-AUTORITÄT)
Description: ProtectionManagementselect * from MSFT_MpEventMSFT_MpEvent//./root/microsoft/protectionManagement
Error: (03/14/2015 06:23:17 PM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT-AUTORITÄT)
Description: select * from MSFT_MpEventMSFT_MpEvent//./root/microsoft/protectionManagement
Error: (03/14/2015 00:45:20 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestD:\Program Files\CCleaner\CCleaner.exe
Error: (03/13/2015 00:58:06 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestD:\Program Files\CCleaner\CCleaner.exe
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\windows\system32\wbem\wmiaprpl.dll4
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: rdyboost4
Error: (03/12/2015 02:09:14 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description:
Error: (03/12/2015 02:09:14 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: MSDTCC:\windows\system32\msdtcuiu.DLL4
CodeIntegrity Errors:
===================================
Date: 2015-03-15 18:31:40.507
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\SEBAST~1\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2015-03-15 18:31:40.435
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-10-04 21:13:55.389
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
Date: 2014-10-04 21:10:51.265
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-4210H CPU @ 2.90GHz
Percentage of memory in use: 40%
Total physical RAM: 8115.27 MB
Available physical RAM: 4821.41 MB
Total Pagefile: 9395.27 MB
Available Pagefile: 5619.43 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:43.98 GB) (Free:5.56 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:621.21 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 55.9 GB) (Disk ID: 8D34F1E7)
Partition: GPT Partition Type.
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 8D34F185)
Partition: GPT Partition Type.
==================== End Of Log ============================ |