clemicool | 03.04.2015 13:43 |
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Clemens (administrator) on CLEMENS-PC on 03-04-2015 14:37:05
Running from C:\Users\Clemens\Downloads
Loaded Profiles: Clemens (Available profiles: Clemens)
Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe
(TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\AutoUpdate.exe
(Microsoft Corporation) C:\Windows\System32\AutoUpdate.exe
(Microsoft Corporation) C:\Windows\System32\AutoUpdate.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [GamecomSound] => C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe [817440 2014-01-21] ()
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2601104 2015-02-24] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [GamingKeyboard] => C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe [1803264 2012-06-07] (Game Inc.)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2886848 2015-02-26] (Valve Corporation)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Clemens\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Run: [TBPanel] => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2195240 2014-02-17] (Gainward Co. Ltd.)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Run: [WLAN Optimizer] => C:\Users\Clemens\AppData\Local\Temp\Rar$EXa0.251\WLAN Optimizer.exe <===== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-26] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-26] (Oracle Corporation)
DPF: HKLM-x32 {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-02-07] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-07] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-26] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-03-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-03-13] (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin HKU\S-1-5-21-957755645-4260464881-2478257714-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Clemens\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-957755645-4260464881-2478257714-1001: redgiant.com/RGMediaPlayer -> C:\Program Files (x86)\Red Giant\BulletProof\npRGMediaPlayer.dll [2014-06-18] (Red Giant)
FF Plugin HKU\S-1-5-21-957755645-4260464881-2478257714-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-03-08] ()
Chrome:
=======
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT3314958&octid=EB_ORIGINAL_CTID&ISID=M18CEBFDC-E1D6-4F55-A93D-1C20C3016816&SearchSource=55&CUI=&UM=6&UP=SP7A3DCEFA-5B80-459B-8FDB-C5C7F2D6883D&SSPV=
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (ProxFlow) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-09-14]
CHR Extension: (Google Slides) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-14]
CHR Extension: (Google Docs) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-07]
CHR Extension: (Google Drive) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-07]
CHR Extension: (YouTube) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-07]
CHR Extension: (Adblock Plus) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-14]
CHR Extension: (Google Search) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-07]
CHR Extension: (Google Play Music) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2014-09-14]
CHR Extension: (Google Sheets) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-14]
CHR Extension: (AdBlock) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-09-14]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-04]
CHR Extension: (Google Wallet) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-14]
CHR Extension: (Gmail) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-07]
CHR Profile: C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Profile: C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Google Slides) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-16]
CHR Extension: (Google Docs) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-16]
CHR Extension: (Google Drive) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-16]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-16]
CHR Extension: (YouTube) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-16]
CHR Extension: (Google Search) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-16]
CHR Extension: (Google Play Music) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2014-11-16]
CHR Extension: (Google Sheets) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-16]
CHR Extension: (Google Wallet) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-16]
CHR Extension: (Gmail) - C:\Users\Clemens\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-16]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-02-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-01-16] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-23] ()
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16024 2015-01-31] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 Apowersoft_AudioDevice; C:\Windows\system32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare)
U5 AppMgmt; C:\Windows\system32\svchost.exe [29696 2012-09-20] (Microsoft Corporation)
R3 AU8168; C:\Windows\system32\DRIVERS\au630x64.sys [792648 2013-09-23] (Realtek )
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-06-08] (Disc Soft Ltd)
R3 GameKB; C:\Windows\system32\drivers\GameKB.sys [27648 2012-05-11] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-01-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 PlantronicsGC; C:\Windows\system32\drivers\PLTGC.sys [1327104 2013-04-12] (C-Media Electronics Inc)
S3 RTL8187B; C:\Windows\system32\DRIVERS\RTL8187B.sys [458384 2012-05-31] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1577104 2012-09-27] (Realtek Semiconductor Corporation )
S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-01-15] (Anchorfree Inc.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 wolfkr; \??\C:\AeriaGames\WolfTeam-DE\avital\wolfk64.sys [X]
S3 XFDriver64; \??\C:\Program Files (x86)\Xfire2\XFDriver64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-03 14:35 - 2015-04-03 14:37 - 00015118 _____ () C:\Users\Clemens\Downloads\FRST.txt
2015-04-03 14:35 - 2015-04-03 14:37 - 00000000 ___DC () C:\FRST
2015-04-03 14:35 - 2015-04-03 14:36 - 00036313 _____ () C:\Users\Clemens\Downloads\Addition.txt
2015-04-03 14:33 - 2015-04-03 14:34 - 02095616 _____ (Farbar) C:\Users\Clemens\Downloads\FRST64.exe
2015-04-02 12:12 - 2015-04-02 13:27 - 00000000 ____D () C:\Users\Clemens\Desktop\silv
2015-04-02 11:40 - 2015-04-02 14:28 - 437588156 _____ () C:\Users\Clemens\Downloads\SnieElieIIUtmtEitionMLT9EAmgo.part13.rar
2015-04-02 08:23 - 2015-04-02 14:28 - 00000000 ____D () C:\Users\Clemens\Desktop\sniper elite 3
2015-04-02 00:08 - 2015-04-02 06:00 - 1000000000 _____ () C:\Users\Clemens\Downloads\SnieElieIIUtmtEitionMLT9EAmgo.part01.rar
2015-04-01 20:56 - 2015-04-01 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Owlchemy Labs
2015-04-01 20:55 - 2015-04-01 23:14 - 00000000 ____D () C:\Program Files (x86)\Owlchemy Labs
2015-04-01 18:06 - 2015-04-01 20:23 - 377019938 _____ () C:\Users\Clemens\Downloads\DYO0215C31XBI1737.rar
2015-04-01 17:11 - 2015-04-01 17:11 - 00000098 _____ () C:\Users\Clemens\Downloads\1e035a17-26a8-4fad-aace-7739ee27a807.htm
2015-04-01 17:08 - 2015-04-01 17:08 - 00018256 _____ () C:\Users\Clemens\Downloads\Download (1).htm
2015-04-01 17:07 - 2015-04-01 17:07 - 00008390 _____ () C:\Users\Clemens\Downloads\Download.htm
2015-04-01 16:41 - 2015-04-01 23:16 - 00000000 ____D () C:\Users\Clemens\AppData\Local\Intel
2015-04-01 16:04 - 2015-04-01 23:14 - 00000000 ____D () C:\Program Files (x86)\Belkin
2015-04-01 16:04 - 2012-02-23 11:01 - 00451072 _____ () C:\Windows\SysWOW64\ISSRemoveSP.exe
2015-03-30 20:56 - 2015-03-30 20:56 - 00000000 ____D () C:\Users\Clemens\Documents\My Cheat Tables
2015-03-29 21:03 - 2015-03-04 09:26 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\AutoUpdate.exe
2015-03-29 21:03 - 2015-03-04 09:26 - 00467952 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe
2015-03-29 21:03 - 2015-03-04 09:26 - 00011105 _____ () C:\Windows\system32\AutoconfigV2.cab
2015-03-29 21:03 - 2015-03-04 08:41 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-29 21:03 - 2015-03-04 08:41 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-29 21:03 - 2015-03-04 06:53 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-29 21:03 - 2015-03-04 06:53 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-29 20:52 - 2015-03-11 07:21 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-29 20:52 - 2015-03-11 07:20 - 00943104 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-29 20:52 - 2015-03-11 07:20 - 00760320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-29 20:52 - 2015-03-11 07:20 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-29 20:52 - 2015-03-11 07:20 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-29 20:52 - 2015-03-11 07:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-29 20:52 - 2015-03-11 00:04 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-29 20:50 - 2015-03-14 10:07 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-29 20:50 - 2015-03-14 08:33 - 00891904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-24 22:30 - 2015-03-24 22:30 - 00000000 ____D () C:\Users\Clemens\Documents\PluralEyes
2015-03-24 22:30 - 2015-03-24 22:30 - 00000000 ____D () C:\Users\Clemens\AppData\Local\Red_Giant
2015-03-24 22:30 - 2015-03-24 22:30 - 00000000 ____D () C:\Users\Clemens\AppData\Local\PluralEyes 3
2015-03-24 22:24 - 2015-03-24 22:31 - 00000000 ____D () C:\Users\Clemens\AppData\Local\Red Giant
2015-03-24 22:24 - 2015-03-24 22:24 - 00000000 ____D () C:\Users\Clemens\Documents\Red Giant
2015-03-24 22:17 - 2015-03-24 22:18 - 00000000 ____D () C:\Program Files (x86)\Red Giant Link
2015-03-24 22:15 - 2015-03-24 22:15 - 00000000 ____D () C:\ProgramData\rgt
2015-03-24 22:10 - 2015-03-24 22:17 - 00000000 ____D () C:\Program Files (x86)\Red Giant
2015-03-24 22:10 - 2015-03-24 22:16 - 00000000 ____D () C:\ProgramData\Red Giant
2015-03-24 22:10 - 2015-03-24 22:10 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\Red Giant
2015-03-24 22:06 - 2015-03-24 22:16 - 00000000 ____D () C:\Program Files\Red Giant
2015-03-24 22:06 - 2015-03-09 11:36 - 41522176 _____ (Red Giant LLC) C:\Windows\system32\MBLooksUI_x64.dll
2015-03-24 22:06 - 2015-02-27 13:39 - 13485056 _____ (Red Giant Software) C:\Windows\system32\Gpu_Shader_Engine_x64.dll
2015-03-24 22:06 - 2015-02-27 13:39 - 05849600 _____ (Noesis Technologies) C:\Windows\system32\Noesis.dll
2015-03-24 22:06 - 2013-11-21 11:38 - 04893184 _____ () C:\Windows\system32\PhotoLooksRenderer_x64.dll
2015-03-24 22:06 - 2013-11-21 11:38 - 04168704 _____ () C:\Windows\SysWOW64\PhotoLooksRenderer.dll
2015-03-23 17:46 - 2015-03-23 17:46 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\RenPy
2015-03-22 17:37 - 2015-03-22 17:37 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnH Solutions
2015-03-22 17:37 - 2015-03-22 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnH Solutions
2015-03-22 17:37 - 2015-03-22 17:37 - 00000000 ____D () C:\Program Files (x86)\UnH Solutions
2015-03-22 12:57 - 2011-10-21 17:48 - 00000000 ___HD () C:\Users\Clemens\Desktop\flashgames
2015-03-19 16:01 - 2015-03-13 17:38 - 00622224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-03-19 16:00 - 2015-03-13 21:41 - 32114888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 25460880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 24775368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 20466376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 16022016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 14121624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 13297144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 13210080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 10775080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 10715864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 10262160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-03-19 16:00 - 2015-03-13 21:41 - 03611792 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 03249352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 01896136 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434788.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434788.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00997856 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00970384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00944784 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00930448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00909512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00878328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00496272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00400584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00390288 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00354112 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00346824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00306208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00178512 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-03-19 16:00 - 2015-03-13 21:41 - 00164568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-03-18 23:12 - 2015-03-19 01:19 - 309143408 _____ (NVIDIA Corporation) C:\Users\Clemens\Downloads\347.88-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-03-13 18:34 - 2015-01-24 08:42 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-13 18:34 - 2015-01-24 07:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-12 07:48 - 2015-03-12 07:48 - 00288352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 23:15 - 2015-02-23 12:52 - 02237952 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-11 23:15 - 2015-02-23 12:52 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-11 23:15 - 2015-02-23 12:51 - 01409024 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-11 23:15 - 2015-02-23 12:51 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-03-11 23:15 - 2015-02-23 12:51 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-11 23:15 - 2015-02-23 12:51 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-11 23:15 - 2015-02-23 12:51 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 19301888 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 15410688 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 02656256 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00949760 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-11 23:15 - 2015-02-23 12:50 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-11 23:15 - 2015-02-23 12:49 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-11 23:15 - 2015-02-23 11:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-11 23:15 - 2015-02-23 11:15 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2015-03-11 23:15 - 2015-02-23 10:51 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-11 23:15 - 2015-02-21 07:31 - 01763328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-11 23:15 - 2015-02-21 07:31 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-11 23:15 - 2015-02-21 07:31 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-11 23:15 - 2015-02-21 07:31 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 14380544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 13768704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 02864640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00737280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-11 23:15 - 2015-02-21 07:30 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-11 23:15 - 2015-02-21 07:29 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-11 23:15 - 2015-02-21 07:29 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-11 23:15 - 2015-02-21 07:29 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-11 23:15 - 2015-02-21 07:09 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-11 23:15 - 2015-02-21 07:07 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2015-03-11 23:15 - 2015-02-21 06:42 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-11 23:15 - 2015-02-21 05:00 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-03-11 23:14 - 2015-01-29 10:45 - 06973248 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 23:08 - 2015-02-17 08:54 - 19777536 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-11 23:08 - 2015-02-17 07:13 - 17561600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-11 23:06 - 2015-01-29 10:05 - 01627648 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 23:06 - 2015-01-29 08:19 - 01339392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-11 23:05 - 2015-03-06 09:39 - 00588800 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-11 23:05 - 2015-03-06 09:39 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 23:05 - 2015-03-06 07:48 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-11 23:05 - 2015-03-06 07:48 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-11 23:05 - 2015-02-03 01:18 - 00569712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-11 23:04 - 2015-01-31 15:48 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-11 23:04 - 2015-01-31 07:55 - 00275712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-11 23:01 - 2015-02-26 06:35 - 04063232 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 23:00 - 2015-02-20 15:59 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 23:00 - 2015-02-20 13:56 - 00366592 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 23:00 - 2015-02-20 10:10 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-11 23:00 - 2015-02-20 09:24 - 00304128 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-11 23:00 - 2015-02-13 01:18 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-11 23:00 - 2015-01-24 08:43 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 23:00 - 2015-01-24 07:00 - 00368640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-11 23:00 - 2015-01-24 06:31 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-11 17:00 - 2015-03-11 17:00 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\11bitstudios
2015-03-08 14:36 - 2015-03-08 14:36 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\MMFApplications
2015-03-08 14:35 - 2015-03-08 14:35 - 00000000 ____D () C:\ProgramData\SkidRow
2015-03-06 18:25 - 2015-04-01 23:01 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-03-06 18:24 - 2015-04-01 23:18 - 00000000 ____D () C:\Program Files\Common Files\Apple
2015-03-06 17:25 - 2015-03-06 18:23 - 152428336 _____ (Apple Inc.) C:\Users\Clemens\Downloads\itunes6464setup.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-03 14:37 - 2012-07-26 12:27 - 00828878 _____ () C:\Windows\system32\perfh007.dat
2015-04-03 14:37 - 2012-07-26 12:27 - 00188018 _____ () C:\Windows\system32\perfc007.dat
2015-04-03 14:37 - 2012-07-26 09:28 - 01949496 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-03 14:34 - 2014-01-15 16:28 - 01477242 _____ () C:\Windows\WindowsUpdate.log
2015-04-03 14:31 - 2013-12-07 13:47 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\TS3Client
2015-04-03 14:31 - 2013-12-07 12:35 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-03 14:30 - 2013-12-09 19:02 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-03 14:30 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-02 15:11 - 2014-01-07 19:48 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\vlc
2015-04-02 15:02 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru
2015-04-02 14:30 - 2013-12-07 12:35 - 00001140 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-02 11:41 - 2013-12-28 19:57 - 00000000 ____D () C:\Users\Clemens\Desktop\Spiele
2015-04-02 09:51 - 2014-09-26 15:37 - 08009728 ___SH () C:\Users\Clemens\Desktop\Thumbs.db
2015-04-01 23:22 - 2013-12-07 12:09 - 00000000 ____D () C:\Users\Clemens
2015-04-01 23:18 - 2014-12-18 23:46 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-01 23:18 - 2014-10-30 14:51 - 00000000 ____D () C:\Windows\system32\AutoUpdateLicense
2015-04-01 23:18 - 2014-07-10 16:17 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-01 23:18 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore
2015-04-01 23:17 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-04-01 23:16 - 2014-10-01 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-04-01 23:16 - 2014-10-01 21:15 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-04-01 23:16 - 2014-08-03 01:09 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-04-01 23:16 - 2014-06-08 21:30 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-04-01 23:16 - 2014-01-18 00:13 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\Skype
2015-04-01 23:16 - 2014-01-03 16:22 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-04-01 23:16 - 2013-12-28 19:58 - 00000000 ___RD () C:\Users\Clemens\Desktop\Tools
2015-04-01 23:16 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache
2015-04-01 23:15 - 2014-06-28 13:44 - 00000000 ____D () C:\ProgramData\Apple
2015-04-01 23:15 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\registration
2015-04-01 23:14 - 2014-03-07 17:57 - 00000000 ____D () C:\ProgramData\Package Cache
2015-04-01 23:14 - 2014-02-08 13:38 - 00000000 ____D () C:\Program Files (x86)\Activision
2015-04-01 23:14 - 2013-12-18 19:18 - 00000000 ____D () C:\Users\Clemens\Desktop\Musik
2015-04-01 23:14 - 2013-12-07 12:16 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-01 23:12 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-01 23:01 - 2015-01-31 17:15 - 00000000 ____D () C:\ProgramData\Nero
2015-04-01 18:25 - 2014-11-05 21:15 - 00000000 ____D () C:\Users\Clemens\AppData\Local\LooksBuilder
2015-04-01 18:23 - 2014-01-11 11:36 - 00000000 ____D () C:\Users\Clemens\AppData\Local\CrashDumps
2015-04-01 16:58 - 2015-02-02 15:42 - 00000000 ____D () C:\Users\Clemens\Desktop\shadowplay
2015-04-01 16:57 - 2014-07-05 11:09 - 00000000 ____D () C:\Users\Clemens\Desktop\Mods
2015-04-01 16:04 - 2012-07-26 07:26 - 00000167 _____ () C:\Windows\win.ini
2015-03-31 22:36 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-03-31 18:21 - 2013-12-07 12:17 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-957755645-4260464881-2478257714-1001
2015-03-29 21:03 - 2012-07-26 09:59 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-24 22:18 - 2014-11-05 21:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2015-03-24 22:16 - 2014-11-05 21:13 - 00000000 ____D () C:\ProgramData\RedGiant
2015-03-24 22:10 - 2014-11-05 21:14 - 00004198 _____ () C:\Windows\System32\Tasks\Red Giant Link
2015-03-24 22:06 - 2014-11-05 21:14 - 00000000 ____D () C:\Program Files (x86)\LooksBuilder
2015-03-22 16:54 - 2014-09-23 18:59 - 00026624 ____H () C:\Users\Clemens\Desktop\photothumb.db
2015-03-19 16:01 - 2015-01-31 11:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-03-19 16:01 - 2015-01-26 22:14 - 00001133 _____ () C:\Windows\setupact.log
2015-03-19 16:00 - 2013-12-09 19:01 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-13 21:41 - 2015-01-31 11:21 - 17258024 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-03-13 21:41 - 2015-01-31 11:21 - 03303448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-03-13 21:41 - 2015-01-27 04:59 - 02906928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-03-13 21:41 - 2014-12-25 17:57 - 00027441 _____ () C:\Windows\system32\nvinfo.pb
2015-03-13 21:41 - 2014-11-19 20:56 - 18580512 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-03-13 21:41 - 2013-12-09 19:02 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-03-13 21:41 - 2013-12-09 19:02 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-03-13 18:16 - 2013-12-09 19:02 - 06861968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-03-13 18:16 - 2013-12-09 19:02 - 03526856 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-03-13 18:16 - 2013-12-09 19:02 - 02559808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-03-13 18:16 - 2013-12-09 19:02 - 00935056 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-03-13 18:16 - 2013-12-09 19:02 - 00386248 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-03-13 18:16 - 2013-12-09 19:02 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-03-11 23:32 - 2012-07-26 10:12 - 00000000 ___RD () C:\Windows\ToastData
2015-03-11 23:32 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-11 23:32 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-11 23:32 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-11 23:32 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-11 15:10 - 2014-06-08 20:22 - 04246327 _____ () C:\Windows\system32\nvcoproc.bin
2015-03-07 15:40 - 2013-12-09 18:32 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-07 15:37 - 2013-12-09 18:32 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-06 18:47 - 2014-06-28 13:47 - 00000000 ____D () C:\Users\Clemens\AppData\Roaming\Apple Computer
2015-03-06 18:25 - 2014-06-28 13:47 - 00000000 ____D () C:\Users\Clemens\AppData\Local\Apple Computer
2015-03-05 20:20 - 2013-12-09 21:49 - 00756736 ___SH () C:\Users\Clemens\Downloads\Thumbs.db
2015-03-04 23:24 - 2014-07-10 16:19 - 00791496 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-04 23:24 - 2014-07-10 16:19 - 00177608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2014-01-18 00:14 - 2014-10-17 01:02 - 2260992 _____ () C:\Program Files (x86)\Thumbs.db
2014-01-13 23:23 - 2014-10-22 11:23 - 0003584 _____ () C:\Users\Clemens\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-13 20:54 - 2014-11-02 17:33 - 0007598 _____ () C:\Users\Clemens\AppData\Local\Resmon.ResmonCfg
Some content of TEMP:
====================
C:\Users\Clemens\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Clemens\AppData\Local\Temp\drm_dyndata_7390006.dll
C:\Users\Clemens\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Clemens\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Clemens\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Clemens\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Clemens\AppData\Local\Temp\nvStInst.exe
C:\Users\Clemens\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Clemens\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Clemens\AppData\Local\Temp\SecuExp.exe
C:\Users\Clemens\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Clemens\AppData\Local\Temp\SRLDetectionLibrary8579360246823144772.dll
C:\Users\Clemens\AppData\Local\Temp\Uninstall.exe
C:\Users\Clemens\AppData\Local\Temp\_is5520.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-01 18:58
==================== End Of Log ============================ --- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Clemens at 2015-04-03 14:35:57
Running from C:\Users\Clemens\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\Akamai) (Version: - Akamai Technologies, Inc)
Belkin N600 DB USB Wireless Adapter (HKLM-x32\...\{B20F9D1C-A0A5-4CD8-8306-DA03872311B1}) (Version: 1.00.0184.2 - Belkin International, Inc.)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Borderlands (HKLM-x32\...\{52B65911-1559-4ED5-9461-46957FDD48CD}) (Version: 1.0.295 - 2K Games)
Bulletstorm (HKLM-x32\...\GFWL_{45410935-3E72-472B-8C35-AB1000008200}) (Version: 1.0.0000.130 - EA)
Bulletstorm (x32 Version: 1.0.0000.130 - EA) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden
Call of Duty: Black Ops - Multiplayer (HKLM-x32\...\Steam App 42710) (Version: - Treyarch)
Call of Duty: Black Ops (HKLM-x32\...\Steam App 42700) (Version: - Treyarch)
Call of Juarez Gunslinger (HKLM-x32\...\Steam App 204450) (Version: - Techland)
Camtasia Studio 8 (HKLM-x32\...\{F5C9BE9A-04C3-4A72-8CD0-BB67C722D608}) (Version: 8.1.2.1344 - TechSmith Corporation)
Color Suite v11.1.4 (HKLM-x32\...\{99487911-8011-42BC-B594-8B02BFD32B1D}_is1) (Version: 11.1.4 - Red Giant, LLC)
Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve)
Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version: - Valve)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Dyscourse (HKLM-x32\...\Dyscourse_is1) (Version: - )
Effects Suite v11.1.3 (HKLM-x32\...\{4DD8EE5E-F571-4EC8-9526-E7C62FE39B19}_is1) (Version: 11.1.3 - Red Giant, LLC)
EXPERTool v9.1 (HKLM-x32\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 9.1.0.2 - Gainward Co. Ltd.)
Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.00 - Ubisoft)
Far Cry 3 Blood Dragon (HKLM-x32\...\{A071F478-73E0-4143-AE55-4DD6BABD74F5}) (Version: 1.00 - Ubisoft)
Far Cry 3 Deutsch Patch Fix-TokZic 1.00 (HKLM-x32\...\Far Cry 3 Deutsch Patch Fix-TokZic 1.00) (Version: 1.00 - TokZic)
Far Cry 3 Deutsch Patch-TokZic 1.00 (HKLM-x32\...\Far Cry 3 Deutsch Patch-TokZic 1.00) (Version: 1.00 - TokZic)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Grand Theft Auto San Andreas (HKLM-x32\...\{086BADF8-9B1F-4E89-B207-2EDA520972D6}) (Version: 1.00.00001 - Rockstar Games)
Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0003.135 - Rockstar Games Inc.) Hidden
Hitman Absolution (HKLM-x32\...\Hitman Absolution_is1) (Version: - )
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Keying Suite v11.1.3 (HKLM-x32\...\{21AD9423-3C17-43E2-AFD7-8305C965500F}_is1) (Version: 11.1.3 - Red Giant, LLC)
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: 1.0 - Take-Two Interactive Software, Inc.)
Magic Bullet Suite (HKLM\...\Magic Bullet Suite_is1) (Version: 12.0.2 - Team V.R)
Magic Bullet Suite 64-bit (HKLM-x32\...\InstallShield_{26055432-339E-4776-803B-F22240B91864}) (Version: 11.1.2 - Red Giant Software)
Magic Bullet Suite 64-bit (Version: 11.1.2 - Red Giant Software) Hidden
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MTA:SA v1.3.5 (HKLM-x32\...\MTA:SA 1.3) (Version: v1.3.5 - Multi Theft Auto)
MTA:SA v1.4.0 (HKLM-x32\...\MTA:SA 1.4) (Version: v1.4.0 - Multi Theft Auto)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.6 - Notepad++ Team)
NVIDIA 3D Vision Controller-Treiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.88 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.3.10.37 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.3.10.37 - NVIDIA Corporation)
NVIDIA Grafiktreiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.88 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
Orcs Must Die! (HKLM-x32\...\Orcs Must Die!_is1) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Plantronics® GameCom 780/788 Software for Dolby® Headphone (HKLM-x32\...\{EB3C9064-9140-4279-9E51-965119402151}) (Version: 3.20.0001 - Plantronics)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Red Giant Link (HKLM-x32\...\{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1) (Version: 1.9.2.19 - Red Giant, LLC)
SHARKOON Skiller (HKLM-x32\...\{91C25547-9534-41A5-823A-1E54BA16EA3F}) (Version: 1.00.0000 - )
SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden
Shooter Suite (HKLM\...\Shooter Suite_is1) (Version: 12.6.2 - Team V.R)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sniper Elite: Zombie Army 2 (HKLM-x32\...\Steam App 247930) (Version: - Rebellion)
South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
SWF Opener (HKLM-x32\...\{01386D1F-ADE7-43B4-A4E9-312FC5BC726F}_is1) (Version: 1.3 - UnH Solutions)
Tales of Monkey Island - Launch of the Screaming Narwhal (HKLM-x32\...\Launch of the Screaming Narwhal) (Version: 1.0.0.15 - Daedalic Entertainment)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Trapcode Suite v12.1.7 (HKLM-x32\...\{DFD2DC6B-C634-4C1C-81CC-5EF852E71CEE}_is1) (Version: 12.1.7 - Red Giant, LLC)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Unity Web Player (HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
Universe (HKLM\...\Universe_is1) (Version: 1.4.0.0 CE - Team V.R)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
Vegas Pro 13.0 (64-bit) (HKLM\...\{386F5740-091D-11E4-B13E-F04DA23A5C58}) (Version: 13.0.373 - Sony)
VLC media player 2.1.2 (HKLM-x32\...\VLC media player) (Version: 2.1.2 - VideoLAN)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
24-03-2015 22:06:58 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
29-03-2015 20:56:57 Windows Update
01-04-2015 14:30:46 Removed Nero BurnRights 10.
01-04-2015 14:31:12 Removed Nero StartSmart 10.
01-04-2015 22:50:38 Wiederherstellungsvorgang
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2012-07-26 07:26 - 2014-09-14 12:40 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {481C19A1-102C-43DC-A602-8642E6182F7A} - System32\Tasks\{C3CCE56B-4CF4-4681-92C4-2B356B38826D} => Chrome.exe hxxp://ui.skype.com/ui/0/7.0.0.102/de/abandoninstall?source=lightinstaller&page=tsPlugin
Task: {4E89B4B0-CC85-46ED-B4E8-3F3CA78FCCC4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-07] (Google Inc.)
Task: {722F2DA5-3D75-4B8B-A706-616B7C64A5E9} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe
Task: {744E0A84-6F53-48A1-8682-6CD9292E97D0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-07] (Google Inc.)
Task: {74726EC3-B4FB-426A-AB83-FEBA960459AA} - System32\Tasks\Java(TM) Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17] (Oracle Corporation)
Task: {8063572F-4A3D-4740-BAAA-BC079BF24584} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-07] (Adobe Systems Incorporated)
Task: {836ABE6E-E11C-4E82-96A8-985A05C32049} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
Task: {B2E04C41-7488-45B4-9E93-63F92F34E09A} - System32\Tasks\Red Giant Link => C:\Program Files (x86)\Red Giant Link\Red Giant Link.exe [2014-11-17] ()
Task: {C4A2FA10-F036-4824-9D0C-1800F17E6AB9} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
Task: {E3D08399-F6D1-413C-AAEE-568117C22390} - System32\Tasks\EXPERTool => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2014-02-17] (Gainward Co. Ltd.)
Task: {E7E019DE-3C30-4F6B-8D4B-B2295BBA490D} - System32\Tasks\{721847FC-0767-4E70-B413-9234752B3796} => Chrome.exe hxxp://ui.skype.com/ui/0/7.0.0.102/de/abandoninstall?source=lightinstaller&page=tsInstall
Task: {F2C8AF16-C834-4966-BB93-A6A48D7BED41} - System32\Tasks\{B72324A2-F78C-4EAB-89BF-B34CBA8A14AC} => pcalua.exe -a "C:\Users\Public\Sony Online Entertainment\Installed Games\PlanetSide 2 PSG\Uninstaller.exe"
Task: {F5D21611-7835-4B61-AD24-78E267431EE3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-03-07] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) ==============
2013-12-09 19:02 - 2015-03-13 18:16 - 00118472 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-12-09 19:20 - 2014-06-23 15:49 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2015-01-10 12:19 - 2014-01-21 17:41 - 00817440 ____N () C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe
2014-02-28 11:14 - 2014-02-28 11:14 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll
2014-02-27 16:51 - 2014-02-27 16:51 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll
2014-02-27 16:51 - 2014-02-27 16:51 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
2014-08-04 15:43 - 2014-08-04 15:43 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll
2014-08-04 15:43 - 2014-08-04 15:43 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll
2014-02-27 16:51 - 2014-02-27 16:51 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll
2014-02-27 16:51 - 2014-02-27 16:51 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll
2014-08-04 15:46 - 2014-08-04 15:46 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2014-11-16 22:04 - 2014-11-16 22:04 - 00486912 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\soundboard.dll
2014-08-04 15:46 - 2014-08-04 15:46 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-02-27 16:51 - 2014-02-27 16:51 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
2015-01-31 15:08 - 2015-01-16 08:41 - 00714896 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll
2015-01-31 15:08 - 2015-01-16 08:41 - 00854160 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll
2015-02-25 23:01 - 2015-02-24 11:50 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-01-10 12:19 - 2014-01-21 17:41 - 00149792 ____N () C:\Program Files\Plantronics\GameCom 780 & 788\VmixPLGC.dll
2015-03-21 13:31 - 2015-03-14 12:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libglesv2.dll
2015-03-21 13:31 - 2015-03-14 12:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libegl.dll
2015-03-21 13:31 - 2015-03-14 12:12 - 09278792 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\pdf.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData:$SS_DESCRIPTOR_NBVUV6PKDVBGTLPHJKBUK1R0WTPLY2LB3W2PHDEX6J5T4BW9V4DLNNH2V1UY71VU5VVVVVJVTVVJVT
AlternateDataStreams: C:\ProgramData:NT
AlternateDataStreams: C:\ProgramData:NT2
AlternateDataStreams: C:\Users\All Users:$SS_DESCRIPTOR_NBVUV6PKDVBGTLPHJKBUK1R0WTPLY2LB3W2PHDEX6J5T4BW9V4DLNNH2V1UY71VU5VVVVVJVTVVJVT
AlternateDataStreams: C:\Users\All Users:NT
AlternateDataStreams: C:\Users\All Users:NT2
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:$SS_DESCRIPTOR_NBVUV6PKDVBGTLPHJKBUK1R0WTPLY2LB3W2PHDEX6J5T4BW9V4DLNNH2V1UY71VU5VVVVVJVTVVJVT
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT2
AlternateDataStreams: C:\ProgramData\Application Data:$SS_DESCRIPTOR_NBVUV6PKDVBGTLPHJKBUK1R0WTPLY2LB3W2PHDEX6J5T4BW9V4DLNNH2V1UY71VU5VVVVVJVTVVJVT
AlternateDataStreams: C:\ProgramData\Application Data:NT
AlternateDataStreams: C:\ProgramData\Application Data:NT2
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2
AlternateDataStreams: C:\Users\Clemens\Anwendungsdaten:NT
AlternateDataStreams: C:\Users\Clemens\Anwendungsdaten:NT2
AlternateDataStreams: C:\Users\Clemens\AppData\Roaming:NT
AlternateDataStreams: C:\Users\Clemens\AppData\Roaming:NT2
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Clemens\Desktop\Für Videos\font_preview.png
DNS Servers: 192.168.2.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: AdobeARMservice => 2
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "Aeria Ignite"
HKLM\...\StartupApproved\Run32: => "GamingKeyboard"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\StartupFolder: => "MFBot.url"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "EA Core"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "Akamai NetSession Interface"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-957755645-4260464881-2478257714-1001\...\StartupApproved\Run: => "Overwolf"
==================== Accounts: =============================
Administrator (S-1-5-21-957755645-4260464881-2478257714-500 - Administrator - Disabled)
Clemens (S-1-5-21-957755645-4260464881-2478257714-1001 - Administrator - Enabled) => C:\Users\Clemens
Gast (S-1-5-21-957755645-4260464881-2478257714-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-957755645-4260464881-2478257714-1003 - Limited - Enabled)
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/01/2015 11:08:22 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1584) SRUJet: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\Windows\system32\SRU\SRU008F5.log.
Error: (04/01/2015 10:50:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary GEAR ASPI Filter Driver.
System Error:
Das System kann die angegebene Datei nicht finden.
.
Error: (04/01/2015 06:22:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: BulletProof.exe, Version: 1.2.3.0, Zeitstempel: 0x54de78ad
Name des fehlerhaften Moduls: BulletProof.exe, Version: 1.2.3.0, Zeitstempel: 0x54de78ad
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00124e04
ID des fehlerhaften Prozesses: 0x1324
Startzeit der fehlerhaften Anwendung: 0xBulletProof.exe0
Pfad der fehlerhaften Anwendung: BulletProof.exe1
Pfad des fehlerhaften Moduls: BulletProof.exe2
Berichtskennung: BulletProof.exe3
Vollständiger Name des fehlerhaften Pakets: BulletProof.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: BulletProof.exe5
Error: (04/01/2015 06:22:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: BulletProof.exe, Version: 1.2.3.0, Zeitstempel: 0x54de78ad
Name des fehlerhaften Moduls: BulletProof.exe, Version: 1.2.3.0, Zeitstempel: 0x54de78ad
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00124e04
ID des fehlerhaften Prozesses: 0x12c0
Startzeit der fehlerhaften Anwendung: 0xBulletProof.exe0
Pfad der fehlerhaften Anwendung: BulletProof.exe1
Pfad des fehlerhaften Moduls: BulletProof.exe2
Berichtskennung: BulletProof.exe3
Vollständiger Name des fehlerhaften Pakets: BulletProof.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: BulletProof.exe5
Error: (04/01/2015 04:22:49 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm mmc.exe, Version 6.2.9200.16496 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1368
Startzeit: 01d06c86a7e250dd
Endzeit: 4294967295
Anwendungspfad: C:\Windows\system32\mmc.exe
Berichts-ID: 9169dbba-d87a-11e4-8062-60a44c3287ba
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (04/01/2015 04:05:51 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm setup.exe, Version 15.0.0.498 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 12d4
Startzeit: 01d06c84bd345999
Endzeit: 4294967295
Anwendungspfad: C:\Users\Clemens\AppData\Local\Temp\HZ$D.572.2428\setup.exe
Berichts-ID: 335e06ca-d878-11e4-8062-60a44c3287ba
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (04/01/2015 02:17:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm ts3client_win64.exe, Version 3.0.16.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 104c
Startzeit: 01d06c75ca597e12
Endzeit: 4
Anwendungspfad: C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
Berichts-ID: 1963a86e-d869-11e4-8061-60a44c3287ba
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (03/26/2015 07:56:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm vegas130.exe, Version 13.0.0.373 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 106c
Startzeit: 01d067ecc1366b29
Endzeit: 57
Anwendungspfad: C:\Program Files\Sony\Vegas Pro 13.0\vegas130.exe
Berichts-ID: 5f4ef7ef-d3e1-11e4-805b-60a44c3287ba
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (03/26/2015 07:46:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm vegas130.exe, Version 13.0.0.373 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1784
Startzeit: 01d067e8e2df08ee
Endzeit: 77
Anwendungspfad: C:\Program Files\Sony\Vegas Pro 13.0\vegas130.exe
Berichts-ID: e26c13c9-d3df-11e4-805b-60a44c3287ba
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (03/25/2015 05:06:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SWFOPE~1.EXE, Version: 1.3.0.0, Zeitstempel: 0x426f26cb
Name des fehlerhaften Moduls: combase.dll, Version: 6.2.9200.16420, Zeitstempel: 0x505a976e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0004a29c
ID des fehlerhaften Prozesses: 0xf18
Startzeit der fehlerhaften Anwendung: 0xSWFOPE~1.EXE0
Pfad der fehlerhaften Anwendung: SWFOPE~1.EXE1
Pfad des fehlerhaften Moduls: SWFOPE~1.EXE2
Berichtskennung: SWFOPE~1.EXE3
Vollständiger Name des fehlerhaften Pakets: SWFOPE~1.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SWFOPE~1.EXE5
System errors:
=============
Error: (04/03/2015 02:30:57 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/02/2015 03:12:12 PM) (Source: DCOM) (EventID: 10010) (User: CLEMENS-PC)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (04/01/2015 11:19:37 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/01/2015 11:06:10 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/01/2015 10:51:10 PM) (Source: DCOM) (EventID: 10010) (User: CLEMENS-PC)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (04/01/2015 10:51:10 PM) (Source: DCOM) (EventID: 10010) (User: CLEMENS-PC)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (04/01/2015 10:51:10 PM) (Source: DCOM) (EventID: 10010) (User: CLEMENS-PC)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (04/01/2015 04:20:37 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/01/2015 04:04:46 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/01/2015 03:52:51 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Microsoft Office Sessions:
=========================
Error: (04/01/2015 11:08:22 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost1584SRUJet: C:\Windows\system32\SRU\SRU008F5.log-1811 (0xfffff8ed)
Error: (04/01/2015 10:50:38 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description:
Details:
AddLegacyDriverFiles: Unable to back up image of binary GEAR ASPI Filter Driver.
System Error:
Das System kann die angegebene Datei nicht finden.
Error: (04/01/2015 06:22:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BulletProof.exe1.2.3.054de78adBulletProof.exe1.2.3.054de78adc000000500124e04132401d06c9816a69745C:\Program Files (x86)\Red Giant\BulletProof\BulletProof.exeC:\Program Files (x86)\Red Giant\BulletProof\BulletProof.exe5add9f14-d88b-11e4-8062-60a44c3287ba
Error: (04/01/2015 06:22:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BulletProof.exe1.2.3.054de78adBulletProof.exe1.2.3.054de78adc000000500124e0412c001d06c981260d714C:\Program Files (x86)\Red Giant\BulletProof\BulletProof.exeC:\Program Files (x86)\Red Giant\BulletProof\BulletProof.exe5ad88133-d88b-11e4-8062-60a44c3287ba
Error: (04/01/2015 04:22:49 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: mmc.exe6.2.9200.16496136801d06c86a7e250dd4294967295C:\Windows\system32\mmc.exe9169dbba-d87a-11e4-8062-60a44c3287ba
Error: (04/01/2015 04:05:51 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: setup.exe15.0.0.49812d401d06c84bd3459994294967295C:\Users\Clemens\AppData\Local\Temp\HZ$D.572.2428\setup.exe335e06ca-d878-11e4-8062-60a44c3287ba
Error: (04/01/2015 02:17:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: ts3client_win64.exe3.0.16.0104c01d06c75ca597e124C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe1963a86e-d869-11e4-8061-60a44c3287ba
Error: (03/26/2015 07:56:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: vegas130.exe13.0.0.373106c01d067ecc1366b2957C:\Program Files\Sony\Vegas Pro 13.0\vegas130.exe5f4ef7ef-d3e1-11e4-805b-60a44c3287ba
Error: (03/26/2015 07:46:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: vegas130.exe13.0.0.373178401d067e8e2df08ee77C:\Program Files\Sony\Vegas Pro 13.0\vegas130.exee26c13c9-d3df-11e4-805b-60a44c3287ba
Error: (03/25/2015 05:06:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: SWFOPE~1.EXE1.3.0.0426f26cbcombase.dll6.2.9200.16420505a976ec00000050004a29cf1801d0670cd960819dC:\PROGRA~2\UNHSOL~1\SWFOPE~1\SWFOPE~1.EXEC:\Windows\SYSTEM32\combase.dll76960b68-d300-11e4-805a-60a44c3287ba
CodeIntegrity Errors:
===================================
Date: 2014-12-30 02:47:03.426
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\Clemens\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-12-30 02:47:03.339
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-12-30 01:54:41.921
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\Clemens\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-12-30 01:54:41.841
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-09-14 12:39:53.357
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-07-22 01:09:17.420
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\Clemens\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-07-22 01:09:17.264
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-05-18 18:01:37.838
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\Clemens\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-05-18 18:01:37.784
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3-3220 CPU @ 3.30GHz
Percentage of memory in use: 15%
Total physical RAM: 12224.28 MB
Available physical RAM: 10378.34 MB
Total Pagefile: 13952.28 MB
Available Pagefile: 11730.89 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.51 GB) (Free:719.62 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2DF6D47D)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |