Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: CPU Auslastung zu hoch (23%)

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 21.01.2014, 22:02   #1
Stalki
 
CPU Auslastung zu hoch (23%) - Icon27

CPU Auslastung zu hoch (23%)



Also ich habe eine kleines Problem und zwar, seit drei Wochen liegt meine CPU Auslastung bei 21-35 Prozent und wenn ich zum beispiel Bioshock Infinite starte liegt die CPU Auslastung bei 43-73 Prozent .
Ok ok ich hatte ein paar Probleme mit Nvidia und zwar hatte mir nvtray.exe die CPU ständig auf 100% gebracht, habe im iternet geforscht und das Problem so schnell wie möglich beseitigt. Alles schön und gut bis ich gemerkt habe das vor fünf Wochen die CPU bei 5% lag (also wenn ich einfach im normalen Windows Menü war) doch die liegt jetzt bei 23%. Ich dachte das ich einen Worm oder sogar einen Trojaner in meinem Pc hatte doch Bitdefender hat absolut nichts gefunden und ich habe sogar den System32 ordner durchsuchen lassen doch es fand mal wieder Garnichts. Ich benutze Windows 7 Home Premium 64.bit

Ich hoffe ihr könnt mir helfen da ich wirklich hilfe brauche

Alt 21.01.2014, 22:57   #2
schrauber
/// the machine
/// TB-Ausbilder
 

CPU Auslastung zu hoch (23%) - Standard

CPU Auslastung zu hoch (23%)



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 22.01.2014, 19:32   #3
Stalki
 
CPU Auslastung zu hoch (23%) - Standard

CPU Auslastung zu hoch (23%)




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-01-2014 01
Ran by Horea_Pop (ATTENTION: The logged in user is not administrator) on CLANULPOP-PC on 22-01-2014 19:30:06
Running from C:\Users\Horea_Pop\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal


==================== Processes (Whitelisted) =================

(Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe
(Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle Corporation) C:\Program Files (x86)\Java\jre7\bin\javaw.exe
(Oracle Corporation) C:\Program Files (x86)\Java\jre7\bin\javaw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11474024 2010-10-05] (Realtek Semiconductor)
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe [1571072 2013-11-20] (Bitdefender)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
AppInit_DLLs: C:\PROGRA~3\Wincert\WIN64C~1.DLL => C:\ProgramData\Wincert\win64cert.dll [8704 2013-11-04] ()
AppInit_DLLs: c:\progra~2\movies~1\safety~1\x64\safety~2.dll => C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetyldr.dll [24072 2014-01-05] ()
AppInit_DLLs-x32: C:\PROGRA~3\Wincert\WIN32C~1.DLL => C:\ProgramData\Wincert\win32cert.dll [7168 2013-11-04] ()
AppInit_DLLs-x32: c:\progra~2\movies~1\safety~1\safety~2.dll => C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetyldr.dll [20488 2014-01-05] ()
HKLM\...\AppCertDlls: [x86] -> C:\Program Files (x86)\Movies Toolbar\SafetyNut\safetycrt.dll [485384 2014-01-05] ()
HKLM\...\AppCertDlls: [x64] -> C:\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetycrt.dll [658440 2014-01-05] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKLM-x32 - (No Name) - {da7f5ae1-3be3-43c0-8098-c1d183616e97} - No File
URLSearchHook: HKLM-x32 - (No Name) - {66b103a7-d772-4fcd-ace4-16f79a9056e0} - No File
URLSearchHook: HKLM-x32 - (No Name) - {e44a1809-4d10-4ab8-b343-3326b64c7cdd} - No File
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=103&systemid=473&v=a10918-138&apn_uid=0030400034604422&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=VertiTechnologyYB&dpid=VertiTechnologyYB&co=DE&userid=b3663554-541c-8050-5467-edfaa23c7168&searchtype=ds&q={searchTerms}&installDate=17/10/2013
SearchScopes: HKLM-x32 - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=103&systemid=473&v=a10918-138&apn_uid=0030400034604422&apn_dtid=BND101&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = 
BHO: Snap.DoEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
BHO: SeeSimilar - {7549CA81-7BB5-41AF-AF7D-4689F5CF8340} - C:\Program Files (x86)\SeeSimilar\ScriptHost64.dll (SeeSimilar.com)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO-x32: SaveSense - {0f21b1e5-5afc-43c9-9c66-515046e92ec2} - C:\Program Files (x86)\SaveSense\SaveSenseIE.dll (SaveSense)
BHO-x32: PriceGong - Price Comparison - {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files (x86)\PriceGong\2.6.12\PriceGongIE.dll (PriceGong)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Snap.DoEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: SeeSimilar - {7549CA81-7BB5-41AF-AF7D-4689F5CF8340} - C:\Program Files (x86)\SeeSimilar\ScriptHost.dll (SeeSimilar.com)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: FireFTP - {8BC2B559-9017-4727-94A2-8C9FB6215966} -  No File
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: MinibarBHO - {AA74D58F-ACD0-450D-A85E-6C04B171C044} - C:\Program Files (x86)\Minibar\Minibar.dll (KangoExtensions)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com)
BHO-x32: AlxHelper Class - {F443A627-5009-4323-9C1D-7FD598D0D712} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
Toolbar: HKLM - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - Amazon Browser Bar - {EA582743-9076-4178-9AA6-7393FDF4D5CE} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com)
Toolbar: HKLM-x32 - No Name - {da7f5ae1-3be3-43c0-8098-c1d183616e97} -  No File
Toolbar: HKLM-x32 - No Name - {66b103a7-d772-4fcd-ace4-16f79a9056e0} -  No File
Toolbar: HKLM-x32 - No Name - {3444c3c5-6c56-4a16-a453-832b05bf6ea4} -  No File
Toolbar: HKLM-x32 - No Name - {e44a1809-4d10-4ab8-b343-3326b64c7cdd} -  No File
Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog9-x64 01 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 02 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 03 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 04 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 05 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 06 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 07 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 08 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 09 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 10 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Winsock: Catalog9-x64 21 C:\Program Files\Bitdefender\Bitdefender 2013\BdProvider.dll [117296] (Bitdefender)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Chrome: 
=======
CHR DefaultSearchKeyword: ask search
CHR DefaultSearchProvider: Ask Search
CHR DefaultSearchURL: hxxp://www.search.ask.com/web?p2=%5EAKE%5EOSJ000%5EYY%5EDE&gct=&o=APN10452&tpid=ORJ-V7&itbv=12.0.1.100&doi=2013-10-17&apn_uid=C54E8F91-D2B5-41FD-8492-4FACCBCFF6D8&apn_ptnrs=AKE&apn_dtid=%5EOSJ000%5EYY%5EDE&apn_dbr=cr_30.0.1599.69&psv=&trgb=CR&q={searchTerms}
CHR DefaultNewTabURL: 
CHR Extension: (Ask Toolbar) - C:\Users\Horea_Pop\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaajpkhjdkhhnkmgfjodbkfpbmibkkk [2014-01-13]
CHR Extension: (PriceGong) - C:\Users\Horea_Pop\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok [2014-01-13]
CHR Extension: (Softonic Chrome Toolbar) - C:\Users\Horea_Pop\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf [2014-01-13]
CHR Extension: (AdBlock) - C:\Users\Horea_Pop\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-13]
CHR Extension: (Google Wallet) - C:\Users\Horea_Pop\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-13]
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\clanul pop\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2014-01-13]
CHR HKLM-x32\...\Chrome\Extension: [aaaajpkhjdkhhnkmgfjodbkfpbmibkkk] - C:\ProgramData\AskPartnerNetwork\Toolbar\ORJ-V7\CRX\ToolbarCR.crx [2014-01-11]
CHR HKLM-x32\...\Chrome\Extension: [bkomkajifikmkfnjgphkjcfeepbnojok] - C:\Program Files (x86)\PriceGong\2.6.12\pricegong.crx [2013-07-02]
CHR HKLM-x32\...\Chrome\Extension: [elchiiiejkobdbblfejjkbphbddgmljf] - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonic.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [hekmimebcpbncnklfjadbpnjiaffabee] - C:\Users\clanul pop\AppData\Roaming\SeeSimilar\SeeSimilar.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [ibcgjcbeckcdemelifnledhihpaighfk] - C:\Users\clanul pop\AppData\Local\CRE\ibcgjcbeckcdemelifnledhihpaighfk.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\clanul pop\AppData\Local\Wajam\Chrome\wajam.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [kdfbddbdpnahdahmamlolacimfdbeckk] - C:\Users\clanul pop\AppData\Local\CRE\kdfbddbdpnahdahmamlolacimfdbeckk.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [lagfbbphhakmjhccgbghjaekbloacbfg] - C:\Users\clanul pop\AppData\LocalLow\FireFTP\CHROME\FireFTP.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [pickdmmkcajdddggmoaommkkoafandof] - C:\Users\clanul pop\AppData\Local\CRE\pickdmmkcajdddggmoaommkkoafandof.crx [2013-06-11]

==================== Services (Whitelisted) =================

S3 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-01-11] (APN LLC.)
R2 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe [69392 2013-11-20] (Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-12-05] ()
R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2301216 2014-01-01] (Conduit)
S3 GameConsoleService; C:\Program Files (x86)\Packard Bell Games\Packard Bell Game Console\GameConsoleService.exe [246520 2010-04-04] (WildTangent, Inc.)
R2 GREGService; C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated)
R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [95184 2013-08-09] (Bitdefender)
R2 SafetyNutManager; C:\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe [3446792 2014-01-05] (SafetyNut Inc.)
R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
R2 Updater Service for AMZN; C:\Program Files (x86)\Amazon Browser Bar\ToolbarUpdaterService.exe [222368 2013-03-21] ()
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe [67320 2013-08-27] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe [1645256 2013-11-20] (Bitdefender)
R2 WajamUpdaterV2; C:\Program Files (x86)\Wajam\Updater\WajamUpdaterV2.exe [113152 2013-10-10] (Wajam)
R2 FireFTPUpdater; "C:\Users\clanul pop\AppData\LocalLow\FireFTP\IE\FireFTPUpdater.exe" -service [x]

==================== Drivers (Whitelisted) ====================

R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2014-01-16] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2013-08-09] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2014-01-16] (BitDefender)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-08-09] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-20] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-10-02] (BitDefender LLC)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-10-02] (BitDefender S.R.L.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-22 19:30 - 2014-01-22 19:30 - 00015449 _____ C:\Users\Horea_Pop\Downloads\FRST.txt
2014-01-22 19:29 - 2014-01-22 19:29 - 02077184 _____ (Farbar) C:\Users\Horea_Pop\Downloads\FRST64.exe
2014-01-22 19:29 - 2014-01-22 19:29 - 00000000 ____D C:\FRST
2014-01-22 01:54 - 2014-01-22 01:55 - 00000000 ____D C:\Users\Horea_Pop\Downloads\world
2014-01-22 01:54 - 2014-01-22 01:54 - 00000664 _____ C:\Users\Horea_Pop\Downloads\server.properties
2014-01-22 01:54 - 2014-01-22 01:54 - 00000110 _____ C:\Users\Horea_Pop\Downloads\banned-players.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000110 _____ C:\Users\Horea_Pop\Downloads\banned-ips.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000000 _____ C:\Users\Horea_Pop\Downloads\white-list.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000000 _____ C:\Users\Horea_Pop\Downloads\ops.txt
2014-01-22 01:53 - 2014-01-22 01:54 - 09236287 _____ C:\Users\Horea_Pop\Downloads\minecraft_server.14w03b.jar
2014-01-21 18:51 - 2014-01-21 18:52 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\.technic
2014-01-21 18:51 - 2014-01-21 18:51 - 02314844 _____ () C:\Users\Horea_Pop\Downloads\TechnicLauncher.exe
2014-01-21 00:25 - 2014-01-21 00:25 - 00328782 _____ C:\Users\Horea_Pop\Downloads\nvse_2_beta12.7z
2014-01-21 00:19 - 2014-01-21 00:20 - 26572578 _____ C:\Users\Horea_Pop\Downloads\Weapon Modification Expansion 1101-37576-1-101.7z
2014-01-20 23:14 - 2014-01-22 17:14 - 00000308 _____ C:\Windows\Tasks\SaveSense.job
2014-01-20 23:14 - 2014-01-20 23:14 - 00000000 ____D C:\Program Files (x86)\SaveSense
2014-01-20 23:14 - 2014-01-20 23:14 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3
2014-01-20 23:13 - 2014-01-20 23:13 - 08065840 _____ (Cheat Engine                                                ) C:\Users\Horea_Pop\Downloads\CheatEngine63.exe
2014-01-20 22:09 - 2014-01-21 15:06 - 00001326 _____ C:\Users\Horea_Pop\Desktop\ROBLOX Player.lnk
2014-01-20 22:09 - 2014-01-20 22:09 - 00543088 _____ (ROBLOX Corporation) C:\Users\Horea_Pop\Downloads\RobloxPlayerLauncher (1).exe
2014-01-20 22:08 - 2014-01-21 15:06 - 00001145 _____ C:\Users\Horea_Pop\Desktop\ROBLOX Studio 2013.lnk
2014-01-20 22:08 - 2014-01-21 15:06 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2014-01-20 22:08 - 2014-01-20 22:12 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Roblox
2014-01-20 22:08 - 2014-01-20 22:08 - 00543088 _____ (ROBLOX Corporation) C:\Users\Horea_Pop\Downloads\RobloxPlayerLauncher.exe
2014-01-16 18:31 - 2014-01-16 18:31 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\FalloutNV
2014-01-16 18:08 - 2014-01-19 03:01 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Splashtop
2014-01-16 14:29 - 2014-01-16 14:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-16 14:28 - 2014-01-16 14:28 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Horea_Pop\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-01-16 14:17 - 2014-01-16 14:17 - 10284808 _____ (Malwarebytes Corporation                                    ) C:\Users\Horea_Pop\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-16 14:07 - 2014-01-16 14:07 - 04852472 _____ (Systweak Inc                                                ) C:\Users\Horea_Pop\Downloads\rcpsetup_2005.exe
2014-01-16 14:07 - 2013-12-27 18:10 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2014-01-15 18:44 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-01-15 18:44 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-01-15 18:44 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-01-15 18:44 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-01-15 18:44 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-01-15 18:44 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-01-15 18:44 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-01-15 18:44 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-01-15 18:44 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-01-15 18:44 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-01-15 18:44 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-01-15 18:40 - 2014-01-15 18:40 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Warner Bros. Interactive Entertainment
2014-01-15 18:06 - 2014-01-15 18:06 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\QuickScan
2014-01-15 18:01 - 2014-01-15 18:01 - 00614784 _____ (Chip Digital GmbH) C:\Users\Horea_Pop\Downloads\SpeedFan - CHIP-Downloader.exe
2014-01-15 18:01 - 2014-01-15 18:01 - 00614784 _____ (Chip Digital GmbH) C:\Users\Horea_Pop\Downloads\SpeedFan - CHIP-Downloader (1).exe
2014-01-15 17:49 - 2014-01-15 17:51 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\TS3Client
2014-01-15 17:49 - 2014-01-15 17:49 - 00001193 _____ C:\Users\Horea_Pop\Desktop\TeamSpeak 3 Client.lnk
2014-01-15 17:49 - 2014-01-15 17:49 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-01-15 17:49 - 2014-01-15 17:49 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\TeamSpeak 3 Client
2014-01-15 17:39 - 2014-01-15 17:45 - 30095736 _____ (TeamSpeak Systems GmbH) C:\Users\Horea_Pop\Downloads\TeamSpeak3-Client-win32-3.0.13.1.exe
2014-01-15 17:03 - 2014-01-15 17:03 - 00139480 _____ C:\Users\Horea_Pop\Downloads\Myz_Pack_20131115.zip
2014-01-15 16:13 - 2014-01-15 16:14 - 02873341 _____ C:\Users\Horea_Pop\Downloads\Kate B v2-2976.7z
2014-01-15 16:03 - 2014-01-16 18:07 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Skyrim
2014-01-15 16:01 - 2014-01-15 16:01 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\WinRAR
2014-01-15 15:40 - 2014-01-19 20:46 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Skype
2014-01-15 15:38 - 2014-01-15 15:59 - 271743418 _____ C:\Users\Horea_Pop\Downloads\TERA Armors CBBE by frigus-29411-1-3.rar
2014-01-15 14:33 - 2014-01-22 19:27 - 00000000 ____D C:\ProgramData\SafetyNut
2014-01-15 14:04 - 2014-01-15 14:09 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Bioshock2Steam
2014-01-15 14:04 - 2014-01-15 14:04 - 00000000 ____D C:\Users\Horea_Pop\Documents\Bioshock2
2014-01-15 14:04 - 2014-01-15 14:04 - 00000000 ____D C:\Users\Horea_Pop\Documents\4a games
2014-01-15 13:45 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 13:45 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 13:45 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 13:45 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 18:27 - 2014-01-14 18:27 - 00000000 ____D C:\SteamLibrary
2014-01-14 17:26 - 2014-01-14 17:26 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\NVIDIA
2014-01-14 17:23 - 2014-01-14 17:23 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-14 17:23 - 2014-01-14 17:23 - 00000000 ____D C:\Program Files (x86)\Java
2014-01-14 17:19 - 2014-01-14 17:19 - 00915368 _____ (Oracle Corporation) C:\Users\Horea_Pop\Downloads\chromeinstall-7u45.exe
2014-01-14 16:59 - 2014-01-14 16:59 - 00675988 _____ C:\Users\Horea_Pop\Downloads\Minecraft.exe
2014-01-14 16:59 - 2014-01-14 16:59 - 00675988 _____ C:\Users\Horea_Pop\Desktop\Minecraft.exe
2014-01-14 16:12 - 2014-01-14 16:12 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Eraser 6
2014-01-14 16:05 - 2014-01-14 17:14 - 00000000 ____D C:\Program Files\Eraser
2014-01-14 16:05 - 2014-01-14 16:05 - 00001759 _____ C:\Users\Public\Desktop\Eraser.lnk
2014-01-14 16:05 - 2014-01-14 16:05 - 00000355 _____ C:\Users\Horea_Pop\Desktop\Computer - Verknüpfung.lnk
2014-01-14 16:03 - 2014-01-14 16:03 - 09110456 _____ (The Eraser Project) C:\Users\Horea_Pop\Downloads\Eraser_206.0.10.2620.exe
2014-01-13 20:55 - 2014-01-13 20:55 - 00000000 _____ C:\Windows\SysWOW64\sho9241.tmp
2014-01-13 19:46 - 2014-01-22 19:23 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\.minecraft
2014-01-13 19:39 - 2014-01-13 19:39 - 00000385 _____ C:\Users\Horea_Pop\AppData\Roaminguser_gensett.xml
2014-01-13 19:39 - 2014-01-13 19:39 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\SearchProtect
2014-01-13 19:23 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-01-13 19:23 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-01-13 19:23 - 2012-08-23 15:07 - 00057856 ____N (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-01-13 19:23 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-01-13 19:23 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-01-13 19:23 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-01-13 19:23 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-01-13 19:23 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-01-13 19:23 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-01-13 19:23 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-01-13 19:23 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-01-13 19:23 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-01-13 19:23 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-01-13 19:23 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-01-13 19:23 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-01-13 19:23 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-01-13 19:23 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-01-13 19:23 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-01-13 19:23 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-01-13 19:23 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-01-13 19:23 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-01-13 19:23 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-01-13 19:23 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-01-13 19:23 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-01-13 19:16 - 2014-01-13 19:16 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Google
2014-01-13 19:15 - 2014-01-13 19:15 - 00000000 ____D C:\Users\Horea_Pop\Documents\Tunngle
2014-01-13 19:15 - 2014-01-13 19:15 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Tunngle
2014-01-13 19:11 - 2014-01-15 19:12 - 00000000 ____D C:\Users\Horea_Pop\Documents\my games
2014-01-13 19:05 - 2014-01-13 20:11 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Bitdefender
2014-01-13 19:05 - 2014-01-13 19:39 - 00064184 _____ C:\Users\Horea_Pop\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 19:05 - 2014-01-13 19:16 - 00002259 _____ C:\Users\Horea_Pop\Desktop\Google Chrome.lnk
2014-01-13 19:05 - 2014-01-13 19:05 - 00001433 _____ C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Macromedia
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Intel Corporation
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Adobe
2014-01-13 19:04 - 2014-01-14 17:14 - 00000000 ____D C:\Users\Horea_Pop
2014-01-13 19:04 - 2014-01-14 15:52 - 00001336 __RSH C:\Users\Horea_Pop\ntuser.pol
2014-01-13 19:04 - 2014-01-13 19:04 - 00000020 ___SH C:\Users\Horea_Pop\ntuser.ini
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Vorlagen
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Startmenü
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Netzwerkumgebung
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Lokale Einstellungen
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Eigene Dateien
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Druckumgebung
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Documents\Eigene Musik
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Documents\Eigene Bilder
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Local\Verlauf
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Local\Anwendungsdaten
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Anwendungsdaten
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\VirtualStore
2014-01-13 19:04 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-01-13 19:04 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-01-13 18:18 - 2014-01-15 14:31 - 00000000 ____D C:\Windows\system32\MRT
2014-01-13 16:25 - 2014-01-13 16:51 - 00000000 ____D C:\Program Files (x86)\YouTube Accelerator
2014-01-13 16:25 - 2014-01-13 16:25 - 00172032 ____N (Jin Hui    E-mail: jinhui@jcomsoft.com   Web: hxxp://www.jcomsoft.com) C:\Windows\SysWOW64\AniGIF.ocx
2014-01-13 16:25 - 2014-01-13 16:25 - 00000000 ____D C:\Users\Public\Documents\GOOBZO
2014-01-08 04:03 - 2014-01-08 04:03 - 00000000 ____D C:\ProgramData\Mozilla
2014-01-08 02:56 - 2014-01-08 02:56 - 00000000 ____D C:\Program Files (x86)\GeMM
2014-01-06 05:32 - 2014-01-06 05:36 - 00023436 _____ C:\Windows\SysWOW64\desura_service.log
2014-01-06 04:55 - 2014-01-06 04:55 - 00000902 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
2014-01-05 02:55 - 2014-01-05 02:55 - 00000000 ____D C:\ElementalTinkerer
2014-01-04 01:25 - 2014-01-04 01:25 - 00000000 ____D C:\Program Files\Blender Foundation
2014-01-01 20:45 - 2014-01-01 20:48 - 00000000 ____D C:\Gmod
2013-12-28 10:57 - 2013-12-28 10:57 - 00000000 _____ C:\Windows\SysWOW64\Access.dat
2013-12-28 10:52 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys
2013-12-24 12:22 - 2013-12-24 12:22 - 00000000 ____D C:\Windows\SysWOW64\SearchProtect

==================== One Month Modified Files and Folders =======

2014-01-22 19:30 - 2014-01-22 19:30 - 00015449 _____ C:\Users\Horea_Pop\Downloads\FRST.txt
2014-01-22 19:29 - 2014-01-22 19:29 - 02077184 _____ (Farbar) C:\Users\Horea_Pop\Downloads\FRST64.exe
2014-01-22 19:29 - 2014-01-22 19:29 - 00000000 ____D C:\FRST
2014-01-22 19:29 - 2012-08-30 18:24 - 01792394 _____ C:\Windows\WindowsUpdate.log
2014-01-22 19:29 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-22 19:29 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-22 19:28 - 2012-08-31 04:17 - 06474380 _____ C:\Windows\system32\perfh007.dat
2014-01-22 19:28 - 2012-08-31 04:17 - 01944406 _____ C:\Windows\system32\perfc007.dat
2014-01-22 19:28 - 2009-07-14 06:13 - 00006476 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-22 19:27 - 2014-01-15 14:33 - 00000000 ____D C:\ProgramData\SafetyNut
2014-01-22 19:23 - 2014-01-13 19:46 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\.minecraft
2014-01-22 19:22 - 2013-12-01 11:32 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ceee80a367ecb9.job
2014-01-22 19:22 - 2013-10-17 23:13 - 00000346 _____ C:\Windows\Tasks\spmonitor.job
2014-01-22 19:22 - 2013-10-17 23:13 - 00000268 _____ C:\Windows\Tasks\SpeedUpMyPC.job
2014-01-22 19:22 - 2013-10-09 16:11 - 00019066 _____ C:\Windows\setupact.log
2014-01-22 19:22 - 2012-09-01 08:41 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-22 19:22 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-22 17:57 - 2012-09-01 08:41 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-22 17:41 - 2012-09-01 08:41 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-22 17:37 - 2013-12-01 11:32 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1ceee80a6b4f53b.job
2014-01-22 17:14 - 2014-01-20 23:14 - 00000308 _____ C:\Windows\Tasks\SaveSense.job
2014-01-22 01:55 - 2014-01-22 01:54 - 00000000 ____D C:\Users\Horea_Pop\Downloads\world
2014-01-22 01:54 - 2014-01-22 01:54 - 00000664 _____ C:\Users\Horea_Pop\Downloads\server.properties
2014-01-22 01:54 - 2014-01-22 01:54 - 00000110 _____ C:\Users\Horea_Pop\Downloads\banned-players.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000110 _____ C:\Users\Horea_Pop\Downloads\banned-ips.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000000 _____ C:\Users\Horea_Pop\Downloads\white-list.txt
2014-01-22 01:54 - 2014-01-22 01:54 - 00000000 _____ C:\Users\Horea_Pop\Downloads\ops.txt
2014-01-22 01:54 - 2014-01-22 01:53 - 09236287 _____ C:\Users\Horea_Pop\Downloads\minecraft_server.14w03b.jar
2014-01-21 18:52 - 2014-01-21 18:51 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\.technic
2014-01-21 18:51 - 2014-01-21 18:51 - 02314844 _____ () C:\Users\Horea_Pop\Downloads\TechnicLauncher.exe
2014-01-21 15:06 - 2014-01-20 22:09 - 00001326 _____ C:\Users\Horea_Pop\Desktop\ROBLOX Player.lnk
2014-01-21 15:06 - 2014-01-20 22:08 - 00001145 _____ C:\Users\Horea_Pop\Desktop\ROBLOX Studio 2013.lnk
2014-01-21 15:06 - 2014-01-20 22:08 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2014-01-21 14:59 - 2012-09-01 08:41 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-21 14:59 - 2012-09-01 08:41 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-21 14:54 - 2013-10-17 15:13 - 00174774 _____ C:\Windows\PFRO.log
2014-01-21 00:25 - 2014-01-21 00:25 - 00328782 _____ C:\Users\Horea_Pop\Downloads\nvse_2_beta12.7z
2014-01-21 00:20 - 2014-01-21 00:19 - 26572578 _____ C:\Users\Horea_Pop\Downloads\Weapon Modification Expansion 1101-37576-1-101.7z
2014-01-20 23:14 - 2014-01-20 23:14 - 00000000 ____D C:\Program Files (x86)\SaveSense
2014-01-20 23:14 - 2014-01-20 23:14 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3
2014-01-20 23:13 - 2014-01-20 23:13 - 08065840 _____ (Cheat Engine                                                ) C:\Users\Horea_Pop\Downloads\CheatEngine63.exe
2014-01-20 22:12 - 2014-01-20 22:08 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Roblox
2014-01-20 22:09 - 2014-01-20 22:09 - 00543088 _____ (ROBLOX Corporation) C:\Users\Horea_Pop\Downloads\RobloxPlayerLauncher (1).exe
2014-01-20 22:08 - 2014-01-20 22:08 - 00543088 _____ (ROBLOX Corporation) C:\Users\Horea_Pop\Downloads\RobloxPlayerLauncher.exe
2014-01-19 20:46 - 2014-01-15 15:40 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Skype
2014-01-19 03:01 - 2014-01-16 18:08 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Splashtop
2014-01-16 18:31 - 2014-01-16 18:31 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\FalloutNV
2014-01-16 18:07 - 2014-01-15 16:03 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Skyrim
2014-01-16 14:29 - 2014-01-16 14:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-16 14:28 - 2014-01-16 14:28 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Horea_Pop\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-01-16 14:17 - 2014-01-16 14:17 - 10284808 _____ (Malwarebytes Corporation                                    ) C:\Users\Horea_Pop\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-16 14:11 - 2013-08-09 21:29 - 00893440 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-01-16 14:11 - 2013-08-09 21:29 - 00635392 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-01-16 14:07 - 2014-01-16 14:07 - 04852472 _____ (Systweak Inc                                                ) C:\Users\Horea_Pop\Downloads\rcpsetup_2005.exe
2014-01-15 22:24 - 2012-08-30 19:00 - 00000000 ____D C:\Users\clanul pop
2014-01-15 19:12 - 2014-01-13 19:11 - 00000000 ____D C:\Users\Horea_Pop\Documents\my games
2014-01-15 18:43 - 2013-10-17 16:20 - 00053841 _____ C:\Windows\DirectX.log
2014-01-15 18:40 - 2014-01-15 18:40 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Warner Bros. Interactive Entertainment
2014-01-15 18:06 - 2014-01-15 18:06 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\QuickScan
2014-01-15 18:01 - 2014-01-15 18:01 - 00614784 _____ (Chip Digital GmbH) C:\Users\Horea_Pop\Downloads\SpeedFan - CHIP-Downloader.exe
2014-01-15 18:01 - 2014-01-15 18:01 - 00614784 _____ (Chip Digital GmbH) C:\Users\Horea_Pop\Downloads\SpeedFan - CHIP-Downloader (1).exe
2014-01-15 17:51 - 2014-01-15 17:49 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\TS3Client
2014-01-15 17:49 - 2014-01-15 17:49 - 00001193 _____ C:\Users\Horea_Pop\Desktop\TeamSpeak 3 Client.lnk
2014-01-15 17:49 - 2014-01-15 17:49 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-01-15 17:49 - 2014-01-15 17:49 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\TeamSpeak 3 Client
2014-01-15 17:45 - 2014-01-15 17:39 - 30095736 _____ (TeamSpeak Systems GmbH) C:\Users\Horea_Pop\Downloads\TeamSpeak3-Client-win32-3.0.13.1.exe
2014-01-15 17:03 - 2014-01-15 17:03 - 00139480 _____ C:\Users\Horea_Pop\Downloads\Myz_Pack_20131115.zip
2014-01-15 16:14 - 2014-01-15 16:13 - 02873341 _____ C:\Users\Horea_Pop\Downloads\Kate B v2-2976.7z
2014-01-15 16:01 - 2014-01-15 16:01 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\WinRAR
2014-01-15 15:59 - 2014-01-15 15:38 - 271743418 _____ C:\Users\Horea_Pop\Downloads\TERA Armors CBBE by frigus-29411-1-3.rar
2014-01-15 15:40 - 2012-08-30 18:42 - 00000000 ____D C:\ProgramData\Skype
2014-01-15 15:40 - 2010-11-04 08:08 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk
2014-01-15 14:36 - 2009-07-14 05:45 - 00282016 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-15 14:33 - 2012-12-27 18:05 - 00000000 ____D C:\ProgramData\Wincert
2014-01-15 14:31 - 2014-01-13 18:18 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 14:29 - 2012-09-06 18:11 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 14:09 - 2014-01-15 14:04 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Bioshock2Steam
2014-01-15 14:04 - 2014-01-15 14:04 - 00000000 ____D C:\Users\Horea_Pop\Documents\Bioshock2
2014-01-15 14:04 - 2014-01-15 14:04 - 00000000 ____D C:\Users\Horea_Pop\Documents\4a games
2014-01-14 18:27 - 2014-01-14 18:27 - 00000000 ____D C:\SteamLibrary
2014-01-14 17:26 - 2014-01-14 17:26 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\NVIDIA
2014-01-14 17:23 - 2014-01-14 17:23 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-14 17:23 - 2014-01-14 17:23 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-14 17:23 - 2014-01-14 17:23 - 00000000 ____D C:\Program Files (x86)\Java
2014-01-14 17:23 - 2013-10-17 13:00 - 00000000 ____D C:\ProgramData\Oracle
2014-01-14 17:19 - 2014-01-14 17:19 - 00915368 _____ (Oracle Corporation) C:\Users\Horea_Pop\Downloads\chromeinstall-7u45.exe
2014-01-14 17:14 - 2014-01-14 16:05 - 00000000 ____D C:\Program Files\Eraser
2014-01-14 17:14 - 2014-01-13 19:04 - 00000000 ____D C:\Users\Horea_Pop
2014-01-14 17:14 - 2009-07-14 08:44 - 00000000 ___RD C:\Users\Public\Recorded TV
2014-01-14 17:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
2014-01-14 16:59 - 2014-01-14 16:59 - 00675988 _____ C:\Users\Horea_Pop\Downloads\Minecraft.exe
2014-01-14 16:59 - 2014-01-14 16:59 - 00675988 _____ C:\Users\Horea_Pop\Desktop\Minecraft.exe
2014-01-14 16:12 - 2014-01-14 16:12 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Eraser 6
2014-01-14 16:05 - 2014-01-14 16:05 - 00001759 _____ C:\Users\Public\Desktop\Eraser.lnk
2014-01-14 16:05 - 2014-01-14 16:05 - 00000355 _____ C:\Users\Horea_Pop\Desktop\Computer - Verknüpfung.lnk
2014-01-14 16:03 - 2014-01-14 16:03 - 09110456 _____ (The Eraser Project) C:\Users\Horea_Pop\Downloads\Eraser_206.0.10.2620.exe
2014-01-14 15:52 - 2014-01-13 19:04 - 00001336 __RSH C:\Users\Horea_Pop\ntuser.pol
2014-01-13 20:55 - 2014-01-13 20:55 - 00000000 _____ C:\Windows\SysWOW64\sho9241.tmp
2014-01-13 20:11 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Bitdefender
2014-01-13 19:39 - 2014-01-13 19:39 - 00000385 _____ C:\Users\Horea_Pop\AppData\Roaminguser_gensett.xml
2014-01-13 19:39 - 2014-01-13 19:39 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\SearchProtect
2014-01-13 19:39 - 2014-01-13 19:05 - 00064184 _____ C:\Users\Horea_Pop\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 19:38 - 2012-08-30 18:27 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-13 19:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2014-01-13 19:26 - 2012-08-30 18:24 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-13 19:16 - 2014-01-13 19:16 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\Google
2014-01-13 19:16 - 2014-01-13 19:05 - 00002259 _____ C:\Users\Horea_Pop\Desktop\Google Chrome.lnk
2014-01-13 19:15 - 2014-01-13 19:15 - 00000000 ____D C:\Users\Horea_Pop\Documents\Tunngle
2014-01-13 19:15 - 2014-01-13 19:15 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Tunngle
2014-01-13 19:05 - 2014-01-13 19:05 - 00001433 _____ C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ___RD C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Macromedia
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Intel Corporation
2014-01-13 19:05 - 2014-01-13 19:05 - 00000000 ____D C:\Users\Horea_Pop\AppData\Roaming\Adobe
2014-01-13 19:04 - 2014-01-13 19:04 - 00000020 ___SH C:\Users\Horea_Pop\ntuser.ini
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Vorlagen
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Startmenü
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Netzwerkumgebung
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Lokale Einstellungen
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Eigene Dateien
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Druckumgebung
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Documents\Eigene Musik
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Documents\Eigene Bilder
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Local\Verlauf
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\AppData\Local\Anwendungsdaten
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 _SHDL C:\Users\Horea_Pop\Anwendungsdaten
2014-01-13 19:04 - 2014-01-13 19:04 - 00000000 ____D C:\Users\Horea_Pop\AppData\Local\VirtualStore
2014-01-13 17:31 - 2010-11-04 07:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-13 16:51 - 2014-01-13 16:25 - 00000000 ____D C:\Program Files (x86)\YouTube Accelerator
2014-01-13 16:25 - 2014-01-13 16:25 - 00172032 ____N (Jin Hui    E-mail: jinhui@jcomsoft.com   Web: hxxp://www.jcomsoft.com) C:\Windows\SysWOW64\AniGIF.ocx
2014-01-13 16:25 - 2014-01-13 16:25 - 00000000 ____D C:\Users\Public\Documents\GOOBZO
2014-01-13 16:25 - 2013-10-17 15:48 - 00000000 ____D C:\Program Files (x86)\SearchProtect
2014-01-12 16:58 - 2012-12-27 18:06 - 00000568 _____ C:\Windows\wininit.ini
2014-01-08 15:37 - 2013-11-22 21:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-08 04:03 - 2014-01-08 04:03 - 00000000 ____D C:\ProgramData\Mozilla
2014-01-08 02:56 - 2014-01-08 02:56 - 00000000 ____D C:\Program Files (x86)\GeMM
2014-01-06 05:36 - 2014-01-06 05:32 - 00023436 _____ C:\Windows\SysWOW64\desura_service.log
2014-01-06 04:55 - 2014-01-06 04:55 - 00000902 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
2014-01-06 04:55 - 2013-10-24 21:50 - 00000000 ____D C:\Program Files\Nexus Mod Manager
2014-01-05 02:55 - 2014-01-05 02:55 - 00000000 ____D C:\ElementalTinkerer
2014-01-04 01:25 - 2014-01-04 01:25 - 00000000 ____D C:\Program Files\Blender Foundation
2014-01-04 01:22 - 2013-01-14 19:32 - 00006458 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2014-01-01 20:48 - 2014-01-01 20:45 - 00000000 ____D C:\Gmod
2014-01-01 20:45 - 2012-09-01 08:39 - 00000000 ____D C:\Program Files (x86)\Steam
2013-12-30 22:58 - 2013-02-14 20:23 - 00000000 ____D C:\ProgramData\Desura
2013-12-28 10:57 - 2013-12-28 10:57 - 00000000 _____ C:\Windows\SysWOW64\Access.dat
2013-12-27 18:10 - 2014-01-16 14:07 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2013-12-24 12:22 - 2013-12-24 12:22 - 00000000 ____D C:\Windows\SysWOW64\SearchProtect

Files to move or delete:
====================
C:\ProgramData\hash.dat
C:\Users\Public\AlexaNSISPlugin.4280.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================
         
--- --- ---
__________________

Alt 23.01.2014, 16:19   #4
schrauber
/// the machine
/// TB-Ausbilder
 

CPU Auslastung zu hoch (23%) - Standard

CPU Auslastung zu hoch (23%)



Unsere Tools brauchen immer Adminrechte.

Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!
Downloade dir bitte Combofix vom folgenden Downloadspiegel

Link 1


WICHTIG - Speichere Combofix auf deinem Desktop
  • Deaktiviere bitte all deine Anti Viren sowie Anti Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören.
Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.

Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort.


Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu CPU Auslastung zu hoch (23%)
100%, auslastung, bitdefender, brauche, cpu, cpu auslastung, cpu auslastung zu hoch, defender, einfach, home, kleines, lag, nichts, nvidia, problem, probleme, schnell, system, system32, trojaner, windows, windows 7, wirklich, worm, zu hoch



Ähnliche Themen: CPU Auslastung zu hoch (23%)


  1. CPU Auslastung sehr hoch
    Plagegeister aller Art und deren Bekämpfung - 14.07.2015 (18)
  2. CPU Auslastung zu hoch, was tun?
    Log-Analyse und Auswertung - 30.11.2012 (5)
  3. Cpu & ram auslastung zu hoch!
    Netzwerk und Hardware - 24.11.2012 (0)
  4. CPU-Auslastung zu hoch
    Log-Analyse und Auswertung - 21.11.2012 (2)
  5. Cpu Auslastung zu hoch
    Log-Analyse und Auswertung - 31.05.2012 (1)
  6. CPU Auslastung zu hoch
    Log-Analyse und Auswertung - 19.02.2011 (7)
  7. Cpu auslastung zu hoch
    Plagegeister aller Art und deren Bekämpfung - 20.01.2011 (0)
  8. Cpu Auslastung sehr hoch
    Log-Analyse und Auswertung - 15.09.2010 (40)
  9. Cpu Auslastung unter win 7 zu hoch
    Log-Analyse und Auswertung - 16.05.2010 (2)
  10. CPU Auslastung zu hoch
    Log-Analyse und Auswertung - 14.02.2010 (1)
  11. Auslastung schießt bei CSS hoch
    Plagegeister aller Art und deren Bekämpfung - 10.01.2010 (42)
  12. Ram-Auslastung merkwürdig hoch
    Netzwerk und Hardware - 23.06.2009 (3)
  13. CPU-Auslastung hoch
    Mülltonne - 20.12.2008 (0)
  14. Cpu Auslastung Hoch!!!!
    Log-Analyse und Auswertung - 11.12.2007 (4)
  15. Hoch CPU-Auslastung
    Alles rund um Windows - 17.11.2007 (0)
  16. cpu auslastung hoch
    Log-Analyse und Auswertung - 30.10.2006 (2)
  17. Cpu Auslastung Hoch
    Log-Analyse und Auswertung - 10.10.2005 (11)

Zum Thema CPU Auslastung zu hoch (23%) - Also ich habe eine kleines Problem und zwar, seit drei Wochen liegt meine CPU Auslastung bei 21-35 Prozent und wenn ich zum beispiel Bioshock Infinite starte liegt die CPU Auslastung - CPU Auslastung zu hoch (23%)...
Archiv
Du betrachtest: CPU Auslastung zu hoch (23%) auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.