Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: PC bootet nach Anwendung von ADWCleaner nicht mehr

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 26.10.2014, 19:55   #1
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Hallo zusammen,

also ich habe folgendes Problem:
Nachdem ich mit dem aus diversen Foren empfohlenen ADWCleaner einige nervende Adware entfernt habe, hat das Programm von sich aus den PC neu gestartet. Allerdings kann mein Computer seitdem nicht mehr booten, es erscheint wie bei jedem boot ein Asrock Logo und anschließend bekomme ich einen Blackscreen...

Ich habe bereits einen anderen Thread dazu gelesen und auch schon über die Problembehandlung und Eingabeaufforderung ein FRST.txt file erstellt.
Weiter weiß ich nicht.

Hier das file:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-10-2014
Ran by SYSTEM on MININT-CL3TKMJ on 26-10-2014 18:43:19
Running from d:\
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [2009952 2013-05-31] (cFos Software GmbH)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] ()
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.)
HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\system32\rstrui.exe [271872 2014-04-06] (Microsoft Corporation)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe,
HKU\FoxMc_000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\FoxMc_000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\FoxMc_000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\FoxMc_000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\FoxMc_000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\UpdatusUser\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\UpdatusUser\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\UpdatusUser\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\UpdatusUser\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\UpdatusUser\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\User\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\User\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\User\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\User\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\User\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\User\...\Run: [Fatal1tySTU] => [X]
HKU\User\...\Run: [ASRockRuefi] => [X]
HKU\User\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD)
AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found
Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
ShortcutTarget: GamersFirst LIVE!.lnk -> C:\windows\system32\config\systemprofile\AppData\Local\GamersFirst\LIVE!\Live.exe (No File)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] ()
S2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [463112 2014-07-31] ()
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [652640 2013-05-31] (cFos Software GmbH)
S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare)
S2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software)
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-06-24] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-04-09] ()
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-06-24] (Intel Corporation)
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation)
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation)
S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] ()
S2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros)
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation)
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation)
S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] ()
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.)
S3 AsrDrv101; C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-10-23] (ASRock Incorporation)
S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2014-06-30] (ASRock Inc.)
S0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.)
S3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.)
S3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation)
S3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.)
S3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [125952 2014-06-24] (Intel Corporation)
S3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek)
S3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek)
S3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek)
S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek)
S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek)
S4 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X]
S4 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X]
S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-26 18:43 - 2014-10-26 18:43 - 00000000 ____D () C:\FRST
2014-10-26 18:34 - 2014-10-26 18:41 - 00000000 _____ () C:\Recovery.txt
2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner
2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp
2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\Windows\AutoKMS
2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar
2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp
2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp
2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp
2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp
2014-10-25 19:44 - 2014-10-25 19:44 - 00002281 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp
2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\Windows\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C}
2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\Windows\System32\Tasks\AsrAPPShop
2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock
2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp
2014-10-23 20:35 - 2014-10-23 20:35 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2014-10-23 20:35 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-10-23 20:34 - 2014-10-23 20:35 - 00000032 _____ () C:\setup.log
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\Windows\SysWOW64\CCCInstall_201410232134373718.log
2014-10-23 20:34 - 2014-10-23 20:34 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Windows\LastGood
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdWB6.sys
2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\amdacpksl.sys
2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\Windows\System32\DelayAPO.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\Windows\System32\clinfo.exe
2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\Windows\System32\coinst_13.20.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\SysWOW64\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\System32\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atidemgy.dll
2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\Windows\System32\ativce02.dat
2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\Windows\atiogl.xml
2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\Windows\System32\ativvaxy_cik.dat
2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\Windows\System32\ativvaxy_cik_nd.dat
2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI
2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\amdkmafd.sys
2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\Windows\System32\ntrights.exe
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\Windows\SysWOW64\CCCInstall_201410232129256357.log
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI
2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton
2014-10-23 20:26 - 2014-10-25 19:06 - 00000000 ____D () C:\Program Files (x86)\Kloudian
2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb
2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Windows\LastGood.Tmp
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp
2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk
2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\Windows\System32\Tasks\AsrSP.exe
2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility
2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\Windows\SysWOW64\Drivers\AsrDrv101.sys
2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Windows\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility
2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\Windows\System32\USBKeyCredentialProvider.dll
2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrHidFilter.sys
2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrRamDisk.sys
2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\Windows\System32\Drivers\cfosspeed6.sys
2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google
2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility
2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\AsrAppCharger.sys
2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\Windows\SysWOW64\Gms.log
2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\Windows\System32\e1d64x64.din
2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\Windows\System32\Drivers\e1d64x64.sys
2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\Windows\System32\PROUnstl.exe
2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\Windows\System32\SetupBD.din
2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\Windows\System32\NicInstD.dll
2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\Windows\System32\e1dmsg.dll
2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\Windows\System32\NicCo36.dll
2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros
2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager
2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\Windows\System32\Drivers\RTAIODAT.DAT
2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys
2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat
2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\Windows\System32\SStudio.dll
2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll
2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll
2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl
2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\Windows\System32\sl3apo64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\Windows\System32\sltech64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\Windows\System32\slprp64.dll
2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll
2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll
2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll
2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\System32\YamahaAE.dll
2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOSettingsIPC.dll
2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOlfx.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO6064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO3064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnN64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll
2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\Windows\System32\Drivers\rtvienna.dat
2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO2064.dll
2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxSpeechAPO64.dll
2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll
2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll
2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll
2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\Windows\System32\SFSS_APO.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\Windows\System32\DTSU2PLFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\Windows\System32\DTSU2PGFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\Windows\System32\DTSU2PREC64.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\System32\DDPP64A.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\System32\DDPO64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\System32\DDPD64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\System32\DDPA64.dll
2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\Windows\System32\audioLibVc.dll
2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll
2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll
2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\Windows\System32\AcpiServiceVnA64.dll
2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\Windows\System32\MISS_APO.dll
2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll
2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll
2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll
2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll
2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll
2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll
2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\Windows\System32\DTSBoostDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\Windows\System32\DTSLimiterDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSLFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSGFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\Windows\System32\DTSGFXAPONS64.dll
2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\System32\tosade.dll
2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll
2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll
2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll
2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll
2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel
2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup
2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp
2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\Windows\MEMORY.DMP
2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\Windows\Minidump\102014-11578-01.dmp
2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\Windows\Minidump
2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\Windows\SysWOW64\installd.exe
2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag
2014-10-17 15:22 - 2014-10-17 15:22 - 00001015 _____ () C:\Users\User\Desktop\cookieclicker backup.txt
2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk
2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2
2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\winbici.dll
2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll
2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll
2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-10-15 17:05 - 2014-08-16 05:08 - 21195616 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll
2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 04:57 - 02498880 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2014-10-15 17:05 - 2014-08-16 04:57 - 00428864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2014-10-15 17:05 - 2014-08-16 04:16 - 18722600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll
2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\httpprxm.dll
2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\ProximityService.dll
2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\bisrv.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\adhsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\pcsvDevice.dll
2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveTelemetry.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\System32\SyncEngine.dll
2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\System32\WSShared.dll
2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-10-15 17:05 - 2014-08-01 00:22 - 00388729 _____ () C:\Windows\System32\ApnDatabase.xml
2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll
2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll
2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll
2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf
2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll
2014-09-28 14:31 - 2014-09-28 14:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\.technic

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-26 18:39 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat
2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\users\FoxMc_000
2014-10-26 18:36 - 2014-03-01 19:09 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software
2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser
2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy
2014-10-26 18:35 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\jagexcache
2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\registration
2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery
2014-10-26 18:10 - 2014-03-01 18:44 - 01477871 _____ () C:\Windows\WindowsUpdate.log
2014-10-26 18:10 - 2014-03-01 18:44 - 00774114 _____ () C:\Windows\PFRO.log
2014-10-26 18:02 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation
2014-10-26 17:48 - 2014-03-01 19:09 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-26 17:15 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype
2014-10-26 17:15 - 2014-03-01 18:54 - 01780340 _____ () C:\Windows\System32\PerfStringBackup.INI
2014-10-26 17:15 - 2013-08-23 00:24 - 00765378 _____ () C:\Windows\System32\perfh007.dat
2014-10-26 17:15 - 2013-08-23 00:24 - 00159696 _____ () C:\Windows\System32\perfc007.dat
2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db
2014-10-26 17:10 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify
2014-10-26 17:10 - 2014-07-18 12:00 - 00003188 _____ () C:\Windows\System32\Tasks\FRAPS
2014-10-26 17:10 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps
2014-10-26 14:58 - 2014-06-10 21:42 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2014-10-26 14:58 - 2014-03-09 23:00 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-10-26 14:56 - 2014-03-09 23:00 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-25 19:44 - 2014-03-01 18:55 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000
2014-10-25 19:43 - 2014-03-01 19:09 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-25 19:43 - 2014-03-01 19:09 - 00003872 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google
2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\ELAM
2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-23 20:34 - 2013-08-22 15:46 - 00113808 _____ () C:\Windows\setupact.log
2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-23 20:27 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin
2014-10-23 20:24 - 2013-08-22 15:44 - 00362840 _____ () C:\Windows\System32\FNTCACHE.DAT
2014-10-23 20:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\sru
2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random
2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\NDF
2014-10-22 17:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\Windows\DirectX.log
2014-10-17 21:33 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\BBI
2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype
2014-10-16 11:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\Windows\System32\MRT
2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\Windows\System32\CompatTel
2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion
2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen'
2014-10-02 18:10 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox
2014-10-02 17:55 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox
2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin
2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk
2014-09-28 14:32 - 2014-07-05 12:49 - 00000095 _____ () C:\Users\User\.atl.properties
2014-09-28 14:31 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\Minecraft

Files to move or delete:
====================
C:\Users\User\jagex_cl_runescape_LIVE.dat
C:\Users\User\jagex_cl_runescape_LIVE1.dat
C:\Users\User\random.dat


Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\116EC.exe
C:\Users\User\AppData\Local\Temp\6_Offer_11.exe
C:\Users\User\AppData\Local\Temp\6_Offer_14.exe
C:\Users\User\AppData\Local\Temp\appinstaly.exe
C:\Users\User\AppData\Local\Temp\BackupSetup.exe
C:\Users\User\AppData\Local\Temp\DivXInstaller.exe
C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcksj8_.dll
C:\Users\User\AppData\Local\Temp\drv14463.exe
C:\Users\User\AppData\Local\Temp\drv16794.exe
C:\Users\User\AppData\Local\Temp\drvinstal.exe
C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\User\AppData\Local\Temp\dxwebsetup.exe
C:\Users\User\AppData\Local\Temp\FastDownload.exe
C:\Users\User\AppData\Local\Temp\ffmpeg17.exe
C:\Users\User\AppData\Local\Temp\Gw2.exe
C:\Users\User\AppData\Local\Temp\i4jdel0.exe
C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll
C:\Users\User\AppData\Local\Temp\JavaIC.dll
C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe
C:\Users\User\AppData\Local\Temp\msscct32.dll
C:\Users\User\AppData\Local\Temp\NrMs6.exe
C:\Users\User\AppData\Local\Temp\nsmD52A.exe
C:\Users\User\AppData\Local\Temp\nssBF3C.exe
C:\Users\User\AppData\Local\Temp\nssD6D1.exe
C:\Users\User\AppData\Local\Temp\nsyC0E3.exe
C:\Users\User\AppData\Local\Temp\nsz48D.exe
C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\User\AppData\Local\Temp\nvStInst.exe
C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll
C:\Users\User\AppData\Local\Temp\prismsetup.exe
C:\Users\User\AppData\Local\Temp\rPKc9.dll
C:\Users\User\AppData\Local\Temp\rPKc9.exe
C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\User\AppData\Local\Temp\SecurityUtility.exe
C:\Users\User\AppData\Local\Temp\SkypeSetup.exe
C:\Users\User\AppData\Local\Temp\sonarinst.exe
C:\Users\User\AppData\Local\Temp\sp-downloader.exe
C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll
C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\User\AppData\Local\Temp\vcredist_x86.exe
C:\Users\User\AppData\Local\Temp\wpsetup.exe
C:\Users\User\AppData\Local\Temp\xmlUpdater.exe


==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2014-09-14 11:53] - [2014-08-23 08:48] - 2374784 ____A (Microsoft Corporation) ACDBE1ED38167C8B01B8F63161BB2CEA

C:\Windows\SysWOW64\explorer.exe
[2014-09-14 11:53] - [2014-08-23 08:13] - 2084520 ____A (Microsoft Corporation) 195822ACCDAA2B4815DD01BAFC335595

C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll
[2014-09-14 11:53] - [2014-07-24 16:23] - 1519488 ____A (Microsoft Corporation) A055D7D686F1CB5CBEDCFBB4C6DC9E2E

C:\Windows\SysWOW64\User32.dll
[2014-09-14 11:53] - [2014-07-24 09:49] - 1361408 ____A (Microsoft Corporation) A39251FAE3189E1AE1F0DF0884D37E2A

C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2014-09-14 11:53] - [2014-06-19 03:13] - 0310080 ___AC (Microsoft Corporation) 64CA2B4A49A8EAF495E435623ECCE7DB


==================== Restore Points  =========================

Restore point made on: 2014-10-01 21:50:00
Restore point made on: 2014-10-12 19:10:37
Restore point made on: 2014-10-16 11:17:02
Restore point made on: 2014-10-19 20:23:36
Restore point made on: 2014-10-23 20:16:10
Restore point made on: 2014-10-26 18:03:16

==================== Memory info =========================== 

Percentage of memory in use: 7%
Total physical RAM: 16277.57 MB
Available physical RAM: 15019.19 MB
Total Pagefile: 16277.57 MB
Available Pagefile: 15051.8 MB
Total Virtual: 131072 MB
Available Virtual: 131071.87 MB

==================== Drives ================================

Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1171.26 GB) NTFS
Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:131.24 GB) NTFS
Drive d: (INTENSO USB-Stick) (Removable) (Total:14.84 GB) (Free:8.08 GB) NTFS
Drive e: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS
Drive g: (SYSTEM RESERVED SSD 840) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive h: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS
Drive i: (PQSERVICE) (Fixed) (Total:19 GB) (Free:5.45 GB) NTFS
Drive j: (V1156) (CDROM) (Total:0.76 GB) (Free:0 GB) CDFS
Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS
Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121)
Partition 1: (Not Active) - (Size=19 GB) - (Type=27)
Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

========================================================
Disk: 4 (MBR Code: Windows XP) (Size: 14.8 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=14.8 GB) - (Type=07 NTFS)


LastRegBack: 2014-10-19 02:26

==================== End Of Log ============================
         
Noch einige Infos zu meinem System:
Windows 8.1 64bit
Asrock X99M Killer Mainboard
Intel i7-5820K @ 3,3GHz
Asus Radeon R9 280X Grafikkarte

Hoffe jemand kann mir helfen, danke schonmal.

Alt 26.10.2014, 20:55   #2
schrauber
/// the machine
/// TB-Ausbilder
 

PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



hi,

Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe,
S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] ()
C:\Program Files (x86)\kloudian
         
Speichere diese bitte als Fixlist.txt auf deinem USB Stick.
  • Starte deinen Rechner erneut in die Reparaturoptionen
  • Starte nun die FRST.exe erneut und klicke den Entfernen Button.

Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________

__________________

Alt 26.10.2014, 22:12   #3
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Okay, hab die Fixlog.txt

Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-10-2014
Ran by SYSTEM at 2014-10-26 22:06:14 Run:1
Running from d:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe,
S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] ()
C:\Program Files (x86)\kloudian
*****************

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => Value was restored successfully.
SVCM => Service deleted successfully.
C:\Program Files (x86)\kloudian => Moved successfully.

==== End of Fixlog ====
         
Sollte der PC jetzt schon funktionieren oder muss noch mehr gemacht werden?
Will ihn nicht ohne klare Anweisungen starten und evtl. etwas falsch machen.
__________________

Alt 27.10.2014, 18:22   #4
schrauber
/// the machine
/// TB-Ausbilder
 

PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Sollte normal starten, wenn ja dann:

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)




wenn nicht dann bitte frisches FRST log aus der Recovery.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 27.10.2014, 19:21   #5
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Leider startet der PC noch nicht.
Habe immer noch den Blackscreen, also hier die neue FRST.txt:


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-10-2014
Ran by SYSTEM on MININT-M9QHERK on 27-10-2014 19:17:15
Running from d:\
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [2009952 2013-05-31] (cFos Software GmbH)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] ()
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.)
HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\system32\rstrui.exe [271872 2014-04-06] (Microsoft Corporation)
HKU\FoxMc_000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\FoxMc_000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\FoxMc_000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\FoxMc_000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\FoxMc_000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\UpdatusUser\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\UpdatusUser\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\UpdatusUser\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\UpdatusUser\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\UpdatusUser\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\User\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\User\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\User\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\User\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\User\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\User\...\Run: [Fatal1tySTU] => [X]
HKU\User\...\Run: [ASRockRuefi] => [X]
HKU\User\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD)
AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found
Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
ShortcutTarget: GamersFirst LIVE!.lnk -> C:\windows\system32\config\systemprofile\AppData\Local\GamersFirst\LIVE!\Live.exe (No File)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] ()
S2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [463112 2014-07-31] ()
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [652640 2013-05-31] (cFos Software GmbH)
S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare)
S2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software)
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-06-24] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-04-09] ()
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-06-24] (Intel Corporation)
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation)
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation)
S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] ()
S2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros)
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation)
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.)
S3 AsrDrv101; C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-10-23] (ASRock Incorporation)
S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2014-06-30] (ASRock Inc.)
S0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.)
S3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.)
S3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation)
S3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.)
S3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [125952 2014-06-24] (Intel Corporation)
S3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek)
S3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek)
S3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek)
S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek)
S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek)
S4 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X]
S4 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X]
S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\Windows\System32\HRUPPROG.TXT
2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\Windows\System32\HRUPPROG.EXIT
2014-10-26 18:43 - 2014-10-27 19:13 - 00000000 ____D () C:\FRST
2014-10-26 18:34 - 2014-10-27 19:12 - 00000000 _____ () C:\Recovery.txt
2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner
2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp
2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\Windows\AutoKMS
2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar
2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp
2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp
2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp
2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp
2014-10-25 19:44 - 2014-10-25 19:44 - 00002281 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp
2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\Windows\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C}
2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\Windows\System32\Tasks\AsrAPPShop
2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock
2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp
2014-10-23 20:35 - 2014-10-23 20:35 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2014-10-23 20:35 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-10-23 20:34 - 2014-10-23 20:35 - 00000032 _____ () C:\setup.log
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\Windows\SysWOW64\CCCInstall_201410232134373718.log
2014-10-23 20:34 - 2014-10-23 20:34 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Windows\LastGood
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdWB6.sys
2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\amdacpksl.sys
2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\Windows\System32\DelayAPO.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\Windows\System32\clinfo.exe
2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\Windows\System32\coinst_13.20.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\SysWOW64\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\System32\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atidemgy.dll
2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\Windows\System32\ativce02.dat
2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\Windows\atiogl.xml
2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\Windows\System32\ativvaxy_cik.dat
2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\Windows\System32\ativvaxy_cik_nd.dat
2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI
2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\amdkmafd.sys
2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\Windows\System32\ntrights.exe
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\Windows\SysWOW64\CCCInstall_201410232129256357.log
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI
2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton
2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb
2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Windows\LastGood.Tmp
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp
2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk
2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\Windows\System32\Tasks\AsrSP.exe
2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility
2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\Windows\SysWOW64\Drivers\AsrDrv101.sys
2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Windows\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility
2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\Windows\System32\USBKeyCredentialProvider.dll
2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrHidFilter.sys
2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrRamDisk.sys
2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\Windows\System32\Drivers\cfosspeed6.sys
2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google
2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility
2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\AsrAppCharger.sys
2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\Windows\SysWOW64\Gms.log
2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\Windows\System32\e1d64x64.din
2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\Windows\System32\Drivers\e1d64x64.sys
2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\Windows\System32\PROUnstl.exe
2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\Windows\System32\SetupBD.din
2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\Windows\System32\NicInstD.dll
2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\Windows\System32\e1dmsg.dll
2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\Windows\System32\NicCo36.dll
2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros
2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager
2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\Windows\System32\Drivers\RTAIODAT.DAT
2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys
2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat
2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\Windows\System32\SStudio.dll
2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll
2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll
2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl
2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\Windows\System32\sl3apo64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\Windows\System32\sltech64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\Windows\System32\slprp64.dll
2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll
2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll
2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll
2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\System32\YamahaAE.dll
2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOSettingsIPC.dll
2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOlfx.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO6064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO3064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnN64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll
2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\Windows\System32\Drivers\rtvienna.dat
2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO2064.dll
2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxSpeechAPO64.dll
2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll
2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll
2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll
2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\Windows\System32\SFSS_APO.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\Windows\System32\DTSU2PLFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\Windows\System32\DTSU2PGFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\Windows\System32\DTSU2PREC64.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\System32\DDPP64A.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\System32\DDPO64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\System32\DDPD64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\System32\DDPA64.dll
2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\Windows\System32\audioLibVc.dll
2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll
2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll
2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\Windows\System32\AcpiServiceVnA64.dll
2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\Windows\System32\MISS_APO.dll
2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll
2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll
2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll
2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll
2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll
2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll
2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\Windows\System32\DTSBoostDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\Windows\System32\DTSLimiterDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSLFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSGFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\Windows\System32\DTSGFXAPONS64.dll
2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\System32\tosade.dll
2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll
2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll
2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll
2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll
2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel
2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup
2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp
2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\Windows\MEMORY.DMP
2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\Windows\Minidump\102014-11578-01.dmp
2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\Windows\Minidump
2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\Windows\SysWOW64\installd.exe
2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag
2014-10-17 15:22 - 2014-10-17 15:22 - 00001015 _____ () C:\Users\User\Desktop\cookieclicker backup.txt
2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk
2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2
2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\winbici.dll
2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll
2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll
2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-10-15 17:05 - 2014-08-16 05:08 - 21195616 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll
2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 04:57 - 02498880 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2014-10-15 17:05 - 2014-08-16 04:57 - 00428864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2014-10-15 17:05 - 2014-08-16 04:16 - 18722600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll
2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\httpprxm.dll
2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\ProximityService.dll
2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\bisrv.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\adhsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\pcsvDevice.dll
2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveTelemetry.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\System32\SyncEngine.dll
2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\System32\WSShared.dll
2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-10-15 17:05 - 2014-08-01 00:22 - 00388729 _____ () C:\Windows\System32\ApnDatabase.xml
2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll
2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll
2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll
2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf
2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll
2014-09-28 14:31 - 2014-09-28 14:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\.technic

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-27 19:10 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-26 22:09 - 2014-08-07 06:49 - 00001850 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat
2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\users\FoxMc_000
2014-10-26 18:36 - 2014-03-01 19:09 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software
2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser
2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy
2014-10-26 18:35 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\jagexcache
2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\registration
2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery
2014-10-26 18:10 - 2014-03-01 18:44 - 01477871 _____ () C:\Windows\WindowsUpdate.log
2014-10-26 18:10 - 2014-03-01 18:44 - 00774114 _____ () C:\Windows\PFRO.log
2014-10-26 18:02 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation
2014-10-26 17:48 - 2014-03-01 19:09 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-26 17:15 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype
2014-10-26 17:15 - 2014-03-01 18:54 - 01780340 _____ () C:\Windows\System32\PerfStringBackup.INI
2014-10-26 17:15 - 2013-08-23 00:24 - 00765378 _____ () C:\Windows\System32\perfh007.dat
2014-10-26 17:15 - 2013-08-23 00:24 - 00159696 _____ () C:\Windows\System32\perfc007.dat
2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db
2014-10-26 17:10 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify
2014-10-26 17:10 - 2014-07-18 12:00 - 00003188 _____ () C:\Windows\System32\Tasks\FRAPS
2014-10-26 17:10 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps
2014-10-26 14:58 - 2014-06-10 21:42 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2014-10-26 14:58 - 2014-03-09 23:00 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-10-26 14:56 - 2014-03-09 23:00 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-25 19:44 - 2014-03-01 18:55 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000
2014-10-25 19:43 - 2014-03-01 19:09 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-25 19:43 - 2014-03-01 19:09 - 00003872 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google
2014-10-25 19:02 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\ELAM
2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-23 20:34 - 2013-08-22 15:46 - 00113808 _____ () C:\Windows\setupact.log
2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin
2014-10-23 20:24 - 2013-08-22 15:44 - 00362840 _____ () C:\Windows\System32\FNTCACHE.DAT
2014-10-23 20:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\sru
2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random
2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\NDF
2014-10-22 17:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\Windows\DirectX.log
2014-10-17 21:33 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\BBI
2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype
2014-10-16 11:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\Windows\System32\MRT
2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\Windows\System32\CompatTel
2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion
2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen'
2014-10-02 18:10 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox
2014-10-02 17:55 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox
2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin
2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk
2014-09-28 14:32 - 2014-07-05 12:49 - 00000095 _____ () C:\Users\User\.atl.properties
2014-09-28 14:31 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\Minecraft

Files to move or delete:
====================
C:\Users\User\jagex_cl_runescape_LIVE.dat
C:\Users\User\jagex_cl_runescape_LIVE1.dat
C:\Users\User\random.dat


Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\116EC.exe
C:\Users\User\AppData\Local\Temp\6_Offer_11.exe
C:\Users\User\AppData\Local\Temp\6_Offer_14.exe
C:\Users\User\AppData\Local\Temp\appinstaly.exe
C:\Users\User\AppData\Local\Temp\BackupSetup.exe
C:\Users\User\AppData\Local\Temp\DivXInstaller.exe
C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcksj8_.dll
C:\Users\User\AppData\Local\Temp\drv14463.exe
C:\Users\User\AppData\Local\Temp\drv16794.exe
C:\Users\User\AppData\Local\Temp\drvinstal.exe
C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\User\AppData\Local\Temp\dxwebsetup.exe
C:\Users\User\AppData\Local\Temp\FastDownload.exe
C:\Users\User\AppData\Local\Temp\ffmpeg17.exe
C:\Users\User\AppData\Local\Temp\Gw2.exe
C:\Users\User\AppData\Local\Temp\i4jdel0.exe
C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll
C:\Users\User\AppData\Local\Temp\JavaIC.dll
C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe
C:\Users\User\AppData\Local\Temp\msscct32.dll
C:\Users\User\AppData\Local\Temp\NrMs6.exe
C:\Users\User\AppData\Local\Temp\nsmD52A.exe
C:\Users\User\AppData\Local\Temp\nssBF3C.exe
C:\Users\User\AppData\Local\Temp\nssD6D1.exe
C:\Users\User\AppData\Local\Temp\nsyC0E3.exe
C:\Users\User\AppData\Local\Temp\nsz48D.exe
C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\User\AppData\Local\Temp\nvStInst.exe
C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll
C:\Users\User\AppData\Local\Temp\prismsetup.exe
C:\Users\User\AppData\Local\Temp\rPKc9.dll
C:\Users\User\AppData\Local\Temp\rPKc9.exe
C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\User\AppData\Local\Temp\SecurityUtility.exe
C:\Users\User\AppData\Local\Temp\SkypeSetup.exe
C:\Users\User\AppData\Local\Temp\sonarinst.exe
C:\Users\User\AppData\Local\Temp\sp-downloader.exe
C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll
C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\User\AppData\Local\Temp\vcredist_x86.exe
C:\Users\User\AppData\Local\Temp\wpsetup.exe
C:\Users\User\AppData\Local\Temp\xmlUpdater.exe


==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2014-09-14 11:53] - [2014-08-23 08:48] - 2374784 ____A (Microsoft Corporation) ACDBE1ED38167C8B01B8F63161BB2CEA

C:\Windows\SysWOW64\explorer.exe
[2014-09-14 11:53] - [2014-08-23 08:13] - 2084520 ____A (Microsoft Corporation) 195822ACCDAA2B4815DD01BAFC335595

C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll
[2014-09-14 11:53] - [2014-07-24 16:23] - 1519488 ____A (Microsoft Corporation) A055D7D686F1CB5CBEDCFBB4C6DC9E2E

C:\Windows\SysWOW64\User32.dll
[2014-09-14 11:53] - [2014-07-24 09:49] - 1361408 ____A (Microsoft Corporation) A39251FAE3189E1AE1F0DF0884D37E2A

C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2014-09-14 11:53] - [2014-06-19 03:13] - 0310080 ___AC (Microsoft Corporation) 64CA2B4A49A8EAF495E435623ECCE7DB


==================== Restore Points  =========================

Restore point made on: 2014-10-01 21:50:00
Restore point made on: 2014-10-12 19:10:37
Restore point made on: 2014-10-16 11:17:02
Restore point made on: 2014-10-19 20:23:36
Restore point made on: 2014-10-23 20:16:10
Restore point made on: 2014-10-26 18:03:16

==================== Memory info =========================== 

Percentage of memory in use: 7%
Total physical RAM: 16277.57 MB
Available physical RAM: 15047.68 MB
Total Pagefile: 16277.57 MB
Available Pagefile: 15062.05 MB
Total Virtual: 131072 MB
Available Virtual: 131071.88 MB

==================== Drives ================================

Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1171.26 GB) NTFS
Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:131.21 GB) NTFS
Drive d: (INTENSO USB-Stick) (Removable) (Total:14.84 GB) (Free:8.08 GB) NTFS
Drive e: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS
Drive g: (SYSTEM RESERVED SSD 840) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive h: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS
Drive i: (PQSERVICE) (Fixed) (Total:19 GB) (Free:5.45 GB) NTFS
Drive j: (IRM_CCSA_X64FRE_DE-DE_DV5) (CDROM) (Total:3.68 GB) (Free:0 GB) UDF
Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS
Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121)
Partition 1: (Not Active) - (Size=19 GB) - (Type=27)
Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

========================================================
Disk: 4 (MBR Code: Windows XP) (Size: 14.8 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=14.8 GB) - (Type=07 NTFS)


LastRegBack: 2014-10-19 02:26

==================== End Of Log ============================
         
--- --- ---

--- --- ---


Alt 28.10.2014, 12:38   #6
schrauber
/// the machine
/// TB-Ausbilder
 

PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
LastRegBack: 2014-10-19 02:26
         
Speichere diese bitte als Fixlist.txt auf deinem USB Stick.
  • Starte deinen Rechner erneut in die Reparaturoptionen
  • Starte nun die FRST.exe erneut und klicke den Entfernen Button.

Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________
--> PC bootet nach Anwendung von ADWCleaner nicht mehr

Alt 28.10.2014, 18:30   #7
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Danke für die Hilfe, der PC startet wieder normal.
Ich erhielt allerdings folgende Fehlermeldung nach dem Hochfahren:

RunDLL
Problem beim Starten von C:\WINDOWS\system32\nvspcap64.dll

Das angegebene Modul wurde nicht gefunden.

Sonst scheint alles einwandfrei zu funktionieren.
Hier noch die Fixlog.txt:

Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-10-2014
Ran by SYSTEM at 2014-10-28 18:22:01 Run:2
Running from d:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
LastRegBack: 2014-10-19 02:26
*****************

DEFAULT hive was successfully copied to System32\config\HiveBackup
DEFAULT hive was successfully restored from registry back up.
SAM hive was successfully copied to System32\config\HiveBackup
SAM hive was successfully restored from registry back up.
SECURITY hive was successfully copied to System32\config\HiveBackup
SECURITY hive was successfully restored from registry back up.
SOFTWARE hive was successfully copied to System32\config\HiveBackup
SOFTWARE hive was successfully restored from registry back up.
SYSTEM hive was successfully copied to System32\config\HiveBackup
SYSTEM hive was successfully restored from registry back up.

==== End of Fixlog ====
         

Alt 29.10.2014, 17:30   #8
schrauber
/// the machine
/// TB-Ausbilder
 

PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Dann ab jetzt im normalen Modus:

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 29.10.2014, 18:45   #9
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Alles Klar,


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-10-2014 01
Ran by Foxxy (administrator) on PREDATORG7760 on 29-10-2014 18:41:00
Running from C:\Users\User\Desktop
Loaded Profile: Foxxy (Available profiles: Foxxy & UpdatusUser & FoxMc_000)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
() C:\Windows\SysWOW64\ASGT.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(Beepa P/L) C:\Program Files (x86)\Fraps\fraps.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Beepa P/L) C:\Program Files (x86)\Fraps\fraps64.dat
(Mad Catz Inc) C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
(Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\spotify.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe
() C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
() C:\Program Files (x86)\Drakonia Black\hid.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Corsair Components, Inc.) C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe
(ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Valve Corporation) A:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) A:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) A:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Dropbox, Inc.) C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] ()
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.)
HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Fatal1tySTU] => [X]
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [ASRockRuefi] => [X]
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD)
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {335f230d-48ed-11e4-8269-d02788825e85} - "L:\HTC_Sync_Manager_PC.exe" 
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {aa777ca9-5ebe-11e4-826c-806e6f6e6963} - "E:\CheckID.exe" 
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {dc92ca7f-5ae7-11e4-826f-806e6f6e6963} - "E:\CheckID.exe" 
HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {fe340242-a160-11e3-824b-806e6f6e6963} - "E:\MMMTest.EXE" 
AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk
ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{3A435941-E398-438A-9CAF-31D8996CF7C8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
ShortcutTarget: GamersFirst LIVE!.lnk -> C:\Users\User\AppData\Local\GamersFirst\LIVE!\Live.exe (GamersFirst)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites02_14_24_ch&cd=2XzuyEtN2Y1L1Qzu0DtDtByBzzzzzztByD0EzzyD0F0E0CzztN0D0Tzu0SzzzytBtN1L2XzutBtFtBtCtFyEtFtDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StDyD0FyCyDyBtAtBtG0Ezz0B0BtGyBtA0AtAtGyE0D0F0FtGtA0CyCyDyB0F0DtDtCyE0DyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEyByD0ByCyDyC0BtGtBtD0EzytGyC0E0C0BtG0E0C0CyCtGtD0F0EyEzzzz0FzyyB0B0C0E2Q&cr=274622059&ir=
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.fastosearch.info/?l=1&q={searchTerms}&pid=34&r=2014/06/21&hid=16012977647170923108&lg=EN&cc=AT&unqvl=55
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites02_14_24_ch&cd=2XzuyEtN2Y1L1Qzu0DtDtByBzzzzzztByD0EzzyD0F0E0CzztN0D0Tzu0SzzzytBtN1L2XzutBtFtBtCtFyEtFtDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StDyD0FyCyDyBtAtBtG0Ezz0B0BtGyBtA0AtAtGyE0D0F0FtGtA0CyCyDyB0F0DtDtCyE0DyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEyByD0ByCyDyC0BtGtBtD0EzytGyC0E0C0BtG0E0C0CyCtGtD0F0EyEzzzz0FzyyB0B0C0E2Q&cr=274622059&ir=
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms}
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.fastosearch.info/?l=1&q={searchTerms}&pid=34&r=2014/06/21&hid=16012977647170923108&lg=EN&cc=AT&unqvl=55
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: FlowSurf -> {E3F1CA13-EA0E-4617-8D03-3EAA6A94A7E0} -> C:\Program Files (x86)\Flowsurf\FlowSurf.dll No File
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default\user.js
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-06]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.at/
CHR StartupUrls: Default -> "hxxp://orteil.dashnet.org/cookieclicker/", "https://www.youtube.com/", "https://www.google.at/?gws_rd=ssl"
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-25]
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-01]
CHR Extension: (Google-Suche) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-01]
CHR Extension: (AdBlock) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-10-25]
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-01]
CHR Extension: (Adblock Plus Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\omihghdlmaedmkipdikamnejbeecjcim [2014-10-25]
CHR Extension: (Google Mail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-01]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare)
R2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [File not signed]
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation)
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] ()
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation)
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
S2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe -service [X]
S2 NvNetworkService; "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" [X]
S2 NvStreamSvc; "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" [X]
S2 nvsvc; "C:\WINDOWS\system32\nvvsvc.exe" [X]
S2 Stereo Service; "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices)
R3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation)
R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.)
R3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek)
R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek)
R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek)
R3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek)
S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek)
R4 IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [X]
S3 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X]
S3 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X]
S3 NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [X]
S3 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-29 18:41 - 2014-10-29 18:41 - 00022282 _____ () C:\Users\User\Desktop\FRST.txt
2014-10-29 18:40 - 2014-10-29 18:40 - 02113536 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2014-10-29 18:40 - 2014-10-29 18:40 - 00000000 ____D () C:\Users\User\Desktop\FRST-OlderVersion
2014-10-28 18:22 - 2014-10-28 18:22 - 00000000 ____D () C:\WINDOWS\system32\config\HiveBackup
2014-10-28 18:06 - 2014-10-28 18:06 - 00880272 _____ (Google Inc.) C:\Users\User\Downloads\ChromeSetup.exe
2014-10-28 17:58 - 2014-10-28 17:58 - 00061213 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410281758404134.log
2014-10-28 17:58 - 2014-10-28 17:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-10-28 17:43 - 2014-10-28 17:44 - 00001816 _____ () C:\Users\User\Desktop\Google Chrome.lnk
2014-10-28 17:40 - 2014-10-28 17:40 - 01064224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2014-10-28 17:34 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-10-28 17:34 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-10-28 17:34 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-10-28 17:34 - 2014-09-07 23:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-10-28 17:34 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-10-28 17:34 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-10-28 17:34 - 2014-09-04 04:15 - 00561416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-10-28 17:34 - 2014-09-04 04:14 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-10-28 17:34 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-10-28 17:34 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-10-28 17:34 - 2014-09-04 02:19 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-10-28 17:34 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-10-28 17:34 - 2014-09-04 01:45 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-10-28 17:34 - 2014-09-04 01:41 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-10-28 17:34 - 2014-09-04 01:36 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-10-28 17:34 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-10-28 17:34 - 2014-09-04 01:15 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-10-28 17:34 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-10-28 17:34 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-10-28 17:34 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-10-28 17:34 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2014-10-28 17:34 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2014-10-28 17:34 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-10-28 17:34 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2014-10-28 17:34 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-10-28 17:34 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-10-28 17:34 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-10-28 17:34 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-10-28 17:34 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-10-28 17:34 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-10-28 17:34 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-10-28 17:34 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-10-28 17:34 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\WINDOWS\system32\HRUPPROG.TXT
2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\WINDOWS\system32\HRUPPROG.EXIT
2014-10-26 18:43 - 2014-10-29 18:41 - 00000000 ____D () C:\FRST
2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner
2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp
2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\WINDOWS\AutoKMS
2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar
2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp
2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp
2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp
2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp
2014-10-25 19:44 - 2014-10-25 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp
2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\WINDOWS\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C}
2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\WINDOWS\System32\Tasks\AsrAPPShop
2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock
2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp
2014-10-23 20:35 - 2014-10-28 17:59 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2014-10-23 20:35 - 2014-10-28 17:59 - 00000000 ____D () C:\WINDOWS\System32\Tasks\ASUS
2014-10-23 20:34 - 2014-10-28 17:59 - 00000032 _____ () C:\setup.log
2014-10-23 20:34 - 2014-10-28 17:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2014-10-23 20:34 - 2014-10-28 17:58 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\WINDOWS\Downloaded Installations
2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410232134373718.log
2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD
2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWB6.sys
2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\amdacpksl.sys
2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\WINDOWS\system32\DelayAPO.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\WINDOWS\system32\clinfo.exe
2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\WINDOWS\system32\coinst_13.20.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll
2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll
2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll
2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\WINDOWS\system32\atiapfxx.blb
2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\WINDOWS\system32\ativce02.dat
2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\WINDOWS\atiogl.xml
2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat
2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI
2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmafd.sys
2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\WINDOWS\system32\ntrights.exe
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410232129256357.log
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI
2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI
2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton
2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb
2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kloudian
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD
2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp
2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp
2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk
2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\WINDOWS\System32\Tasks\AsrSP.exe
2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility
2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys
2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\WINDOWS\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XFast LAN
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fatal1ty Utility
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock
2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility
2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\WINDOWS\system32\USBKeyCredentialProvider.dll
2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\WINDOWS\system32\Drivers\AsrHidFilter.sys
2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\WINDOWS\system32\Drivers\AsrRamDisk.sys
2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\WINDOWS\system32\Drivers\cfosspeed6.sys
2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google
2014-10-23 20:22 - 2014-10-25 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility
2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility
2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\AsrAppCharger.sys
2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\WINDOWS\SysWOW64\Gms.log
2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\WINDOWS\system32\e1d64x64.din
2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\e1d64x64.sys
2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\WINDOWS\system32\PROUnstl.exe
2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\WINDOWS\system32\SetupBD.din
2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\WINDOWS\system32\NicInstD.dll
2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\WINDOWS\system32\e1dmsg.dll
2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\WINDOWS\system32\NicCo36.dll
2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros
2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager
2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel
2014-10-23 20:16 - 2014-10-23 20:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel
2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation
2014-10-23 20:15 - 2014-10-28 17:23 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek
2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\WINDOWS\system32\SStudio.dll
2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOSettingsIPC.dll
2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxAudioAPOShell.dll
2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnA64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnN64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll
2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\WINDOWS\system32\Drivers\rtvienna.dat
2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll
2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\WINDOWS\system32\audioLibVc.dll
2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll
2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll
2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\WINDOWS\system32\AcpiServiceVnA64.dll
2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll
2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel
2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup
2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp
2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\WINDOWS\MEMORY.DMP
2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\WINDOWS\Minidump\102014-11578-01.dmp
2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\WINDOWS\Minidump
2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\WINDOWS\SysWOW64\installd.exe
2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag
2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk
2014-10-16 21:07 - 2014-10-16 21:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2
2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX
2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf
2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-29 18:40 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox
2014-10-29 18:40 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox
2014-10-29 18:19 - 2014-03-01 18:55 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000
2014-10-29 18:17 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype
2014-10-29 18:11 - 2014-03-01 19:09 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-29 18:11 - 2014-03-01 19:09 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-29 18:02 - 2014-03-01 18:44 - 01875418 _____ () C:\WINDOWS\WindowsUpdate.log
2014-10-29 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-10-29 17:57 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify
2014-10-29 16:12 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify
2014-10-29 16:12 - 2014-07-18 12:00 - 00003188 _____ () C:\WINDOWS\System32\Tasks\FRAPS
2014-10-29 16:12 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps
2014-10-28 21:20 - 2014-06-10 21:42 - 00347464 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2014-10-28 21:20 - 2014-03-09 23:00 - 00347464 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2014-10-28 21:10 - 2014-03-09 23:00 - 00290776 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2014-10-28 18:06 - 2014-03-01 19:09 - 00004108 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-28 18:06 - 2014-03-01 19:09 - 00003872 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-28 18:06 - 2014-03-01 18:54 - 01807502 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-28 18:06 - 2013-08-23 00:24 - 00779752 _____ () C:\WINDOWS\system32\perfh007.dat
2014-10-28 18:06 - 2013-08-23 00:24 - 00164046 _____ () C:\WINDOWS\system32\perfc007.dat
2014-10-28 18:00 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-10-28 17:58 - 2013-08-22 15:46 - 00114220 _____ () C:\WINDOWS\setupact.log
2014-10-28 17:55 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-10-28 17:42 - 2014-03-01 18:44 - 00777460 _____ () C:\WINDOWS\PFRO.log
2014-10-28 17:41 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-10-28 17:36 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-10-28 17:36 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-10-28 17:34 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-10-28 17:23 - 2013-08-22 15:44 - 00362816 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-10-26 22:09 - 2014-08-07 06:49 - 00001850 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-10-26 22:09 - 2014-08-07 06:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat
2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\Users\FoxMc_000
2014-10-26 18:36 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneScape
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software
2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software
2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch
2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser
2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy
2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation
2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db
2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google
2014-10-25 19:02 - 2013-08-22 16:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\WINDOWS\SysWOW64\AI_RecycleBin
2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random
2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\WINDOWS\DirectX.log
2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype
2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion
2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen'
2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin
2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk
2014-09-29 18:14 - 2014-03-01 19:37 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox

Files to move or delete:
====================
C:\Users\User\jagex_cl_runescape_LIVE.dat
C:\Users\User\jagex_cl_runescape_LIVE1.dat
C:\Users\User\random.dat


Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\116EC.exe
C:\Users\User\AppData\Local\Temp\6_Offer_11.exe
C:\Users\User\AppData\Local\Temp\6_Offer_14.exe
C:\Users\User\AppData\Local\Temp\appinstaly.exe
C:\Users\User\AppData\Local\Temp\BackupSetup.exe
C:\Users\User\AppData\Local\Temp\DivXInstaller.exe
C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpilsee2.dll
C:\Users\User\AppData\Local\Temp\drv14463.exe
C:\Users\User\AppData\Local\Temp\drv16794.exe
C:\Users\User\AppData\Local\Temp\drvinstal.exe
C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\User\AppData\Local\Temp\dxwebsetup.exe
C:\Users\User\AppData\Local\Temp\FastDownload.exe
C:\Users\User\AppData\Local\Temp\ffmpeg17.exe
C:\Users\User\AppData\Local\Temp\Gw2.exe
C:\Users\User\AppData\Local\Temp\i4jdel0.exe
C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll
C:\Users\User\AppData\Local\Temp\JavaIC.dll
C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe
C:\Users\User\AppData\Local\Temp\msscct32.dll
C:\Users\User\AppData\Local\Temp\NrMs6.exe
C:\Users\User\AppData\Local\Temp\nsmD52A.exe
C:\Users\User\AppData\Local\Temp\nssBF3C.exe
C:\Users\User\AppData\Local\Temp\nssD6D1.exe
C:\Users\User\AppData\Local\Temp\nsyC0E3.exe
C:\Users\User\AppData\Local\Temp\nsz48D.exe
C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\User\AppData\Local\Temp\nvStInst.exe
C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll
C:\Users\User\AppData\Local\Temp\prismsetup.exe
C:\Users\User\AppData\Local\Temp\rPKc9.dll
C:\Users\User\AppData\Local\Temp\rPKc9.exe
C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\User\AppData\Local\Temp\SecurityUtility.exe
C:\Users\User\AppData\Local\Temp\SkypeSetup.exe
C:\Users\User\AppData\Local\Temp\sonarinst.exe
C:\Users\User\AppData\Local\Temp\sp-downloader.exe
C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll
C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\User\AppData\Local\Temp\vcredist_x86.exe
C:\Users\User\AppData\Local\Temp\wpsetup.exe
C:\Users\User\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-19 02:26

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

--- --- ---

Alt 29.10.2014, 18:46   #10
zzeldog
 
PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Musste die Addition.txt extra posten - zu viele Zeichen für einen Eintrag.

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-10-2014 01
Ran by Foxxy at 2014-10-29 18:41:24
Running from C:\Users\User\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acoustica Mixcraft 6 (HKLM-x32\...\Acoustica Mixcraft 6) (Version: b217 - Acoustica)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated)
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden
AMD Catalyst Install Manager (HKLM\...\{4B5124DF-F465-2BA6-FCCF-82C149E1223D}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
APB Reloaded (HKLM-x32\...\APB Reloaded) (Version: 1.6.7.672769 - )
Arma 3 (HKLM-x32\...\Steam App 107410) (Version:  - Bohemia Interactive)
Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version:  - Ubisoft)
ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.9.2 - ASUSTek COMPUTER INC.)
ASUS GPU Tweak (x32 Version: 2.4.9.2 - ASUSTek COMPUTER INC.) Hidden
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.)
AuraKingdom-DE (HKLM-x32\...\AuraKingdom-DE) (Version:  - )
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.3.2.3825 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB)
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version:  - Cheat Engine)
Corsair Headset Software (HKLM-x32\...\{C8040E59-33F2-4EA3-A28C-B912B87D9391}) (Version: 2.0.26 - Corsair)
Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version:  - FromSoftware)
DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version:  - FromSoftware, Inc)
Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version:  - Stunlock Studios)
Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
DisplayFusion 5.1.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 5.1.1.0 - Binary Fortress Software)
DisplayFusion MSI Deployment (HKLM-x32\...\{0F57CF7D-7E3F-4022-88DE-26DE4898AF22}) (Version: 5.1.1.0 - Binary Fortress Software)
Dragon's Prophet (HKLM-x32\...\{C31556D7-F2B9-4787-B223-F7A035067E89}_is1) (Version: 2.0.1315.20 - Infernum Productions AG)
Drakonia Black (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version:  - )
Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
FTL -  Advanced Edition (HKLM-x32\...\GOGPACKFTL_is1) (Version: 2.1.0.11 - GOG.com)
GamersFirst LIVE! (HKCU\...\GamersFirst LIVE!) (Version:  - GamersFirst)
Goat Simulator (HKLM-x32\...\R29hdFNpbXVsYXRvcg==_is1) (Version: 1 - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden
GPUTweakStreaming (HKLM-x32\...\InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D}) (Version: 1.0.3.5 - ASUS)
GPUTweakStreaming (x32 Version: 1.0.3.5 - ASUS) Hidden
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden
Java 7 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417045FF}) (Version: 7.0.450 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
MKLOL (HKCU\...\MKLOL) (Version:  - )
Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
Need For Speed™ World (HKLM-x32\...\{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1) (Version: 1.0.0.1599 - Electronic Arts)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.4 - Notepad++ Team)
NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)
Peggle (HKLM-x32\...\{715AD72D-887A-459E-988B-D4F3E87FA24B}) (Version: 1.04.0.0 - PopCap Games)
Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.)
Planetary Annihilation (HKLM-x32\...\Steam App 233250) (Version:  - Uber Entertainment)
Prism Videodatei-Konverter (HKLM-x32\...\Prism) (Version: 2.09 - NCH Software)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Realm of the Mad God (HKLM-x32\...\Steam App 200210) (Version:  - Wild Shadow Studios)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7195 - Realtek Semiconductor Corp.)
ROCCAT Kone XTD Mouse Driver (HKLM-x32\...\{7133137D-DF48-4522-AD88-13C82B7D0A63}) (Version:  - Roccat GmbH)
RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd)
Rust (HKLM-x32\...\Steam App 252490) (Version:  - Facepunch Studios)
S.T.R.I.K.E.3 (HKLM\...\{114C48CB-65F8-4EC6-83CD-B3F936BFF795}) (Version: 7.0.30.53 - Mad Catz Inc)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2247.4 - Hi-Rez Studios)
Software Version Updater (HKLM-x32\...\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}) (Version: 1.1.4.2 - ) <==== ATTENTION
Spotify (HKCU\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB)
Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.03 - Ubisoft)
Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version:  - Tunngle.net GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft)
VideoPad Video-Editor (HKLM-x32\...\VideoPad) (Version: 3.25 - NCH Software)
VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN)
WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 5.91 - NCH Software)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Restore Points  =========================

01-10-2014 20:49:56 Installiert The Sims 3
12-10-2014 18:10:32 Geplanter Prüfpunkt
16-10-2014 10:16:58 Windows Update
19-10-2014 19:23:32 DirectX wurde installiert
23-10-2014 19:16:06 IIF_MSI
26-10-2014 17:03:12 NVIDIA PhysX wird entfernt
28-10-2014 16:57:41 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
28-10-2014 16:57:51 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {1B18C65B-D0BC-4622-A822-8B3F06A4ACB0} - System32\Tasks\fsupdate => C:\PROGRA~2\Flowsurf\fsupd.exe
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {27030685-962A-4B0B-B4BF-2C0D99133EB0} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {3E9BD47E-6413-41F4-BA15-65369E1BC74C} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {49E456BD-A76D-4913-AE81-8E24B1DB386D} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {5308B3E6-6145-4193-B142-2751F75BCD17} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {5912B9C5-3F50-4D69-9868-C9E6750B7541} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6BA7BE7D-6167-4844-B3E7-4EFE8A6F0F97} - \AmiUpdXp No Task File <==== ATTENTION
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {74C903A4-C3F8-4376-AC9B-72326387858F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-10-16] (Microsoft Corporation)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {8D7101AF-E863-49CA-8EC4-7D2FD84BFA12} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {B1682A0E-9B1C-4B23-B828-A526BC8154CC} - System32\Tasks\FRAPS => C:\Program Files (x86)\Fraps\fraps.exe [2013-02-26] (Beepa P/L)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D0895C68-D1FE-463B-9B73-3247A51E3889} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.)
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DD8D9F15-0431-405E-B3DE-1410C5426E7C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {E9918410-C2EF-4FCE-A44C-F3BEBCA07767} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-01-17 10:24 - 2012-01-17 10:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe
2014-03-09 23:00 - 2014-10-14 18:36 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2013-07-18 14:11 - 2013-07-18 14:11 - 35868672 _____ () C:\Program Files\Mad Catz\S.T.R.I.K.E.3\Pr0fileEditor_Forms.dll
2013-07-18 14:11 - 2013-07-18 14:11 - 00294912 _____ () C:\Program Files\Mad Catz\S.T.R.I.K.E.3\de\Pr0fileEditor_Forms.resources.dll
2014-07-25 15:02 - 2014-09-30 22:59 - 00613944 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
2014-03-17 19:05 - 2013-06-26 17:01 - 00247296 _____ () C:\Program Files (x86)\Drakonia Black\hid.exe
2013-06-05 14:51 - 2013-06-05 14:51 - 00430080 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingNet4.dll
2013-06-05 14:51 - 2013-06-05 14:51 - 00032768 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingResourcesNet4.dll
2013-09-24 16:22 - 2013-09-24 16:22 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll
2013-10-07 09:30 - 2013-10-07 09:30 - 00053248 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll
2014-10-28 18:07 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-28 18:07 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-10-28 18:07 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
2014-10-28 18:07 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
2014-07-25 15:02 - 2014-09-30 22:59 - 36966968 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libcef.dll
2014-07-25 15:02 - 2014-09-30 22:59 - 00867896 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\ffmpegsumo.dll
2014-07-25 15:02 - 2014-09-30 22:59 - 00886840 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libglesv2.dll
2014-07-25 15:02 - 2014-09-30 22:59 - 00108600 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libegl.dll
2014-03-17 19:05 - 2013-06-26 17:01 - 00061952 _____ () C:\Program Files (x86)\Drakonia Black\HidDevice.dll
2014-08-28 19:34 - 2012-06-17 10:20 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\hiddriver.dll
2014-08-22 13:13 - 2014-08-21 19:15 - 01171456 _____ () A:\Program Files (x86)\Steam\libavcodec-56.dll
2014-08-22 13:13 - 2014-08-21 19:15 - 00332800 _____ () A:\Program Files (x86)\Steam\libavresample-2.dll
2014-08-22 13:13 - 2014-08-21 19:15 - 00442368 _____ () A:\Program Files (x86)\Steam\libavutil-54.dll
2013-09-12 17:45 - 2014-10-02 00:16 - 00774656 _____ () A:\Program Files (x86)\Steam\SDL2.dll
2014-05-02 16:14 - 2014-10-28 20:12 - 02227904 _____ () A:\Program Files (x86)\Steam\video.dll
2014-08-22 13:13 - 2014-08-21 19:15 - 00403968 _____ () A:\Program Files (x86)\Steam\libavformat-56.dll
2014-08-22 13:13 - 2014-08-21 19:15 - 00485888 _____ () A:\Program Files (x86)\Steam\libswscale-3.dll
2013-09-12 17:46 - 2014-10-28 20:12 - 00690368 _____ () A:\Program Files (x86)\Steam\bin\chromehtml.DLL
2013-09-12 17:46 - 2014-10-27 19:53 - 34589888 _____ () A:\Program Files (x86)\Steam\bin\libcef.dll
2014-07-29 05:48 - 2014-10-27 19:53 - 00837824 _____ () A:\Program Files (x86)\Steam\bin\ffmpegsumo.dll
2014-10-29 18:40 - 2014-10-29 18:40 - 00043008 _____ () c:\users\user\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpilsee2.dll
2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\User\AppData\Roaming\Dropbox\bin\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\FoxMc_000\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\User\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "Aeria Ignite"
HKCU\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKCU\...\StartupApproved\StartupFolder: => "GamersFirst LIVE!.lnk"

========================= Accounts: ==========================

Administrator (S-1-5-21-4069629916-1410994336-3629031801-500 - Administrator - Disabled)
FoxMc_000 (S-1-5-21-4069629916-1410994336-3629031801-1004 - Administrator - Enabled) => C:\Users\FoxMc_000
Foxxy (S-1-5-21-4069629916-1410994336-3629031801-1000 - Administrator - Enabled) => C:\Users\User
Gast (S-1-5-21-4069629916-1410994336-3629031801-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-4069629916-1410994336-3629031801-1003 - Limited - Enabled)
UpdatusUser (S-1-5-21-4069629916-1410994336-3629031801-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Faulty Device Manager Devices =============

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Leistungsindikatoren
Description: Leistungsindikatoren
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: PCI-Gerät
Description: PCI-Gerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Leistungsindikatoren
Description: Leistungsindikatoren
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: PCI-Kommunikationscontroller (einfach)
Description: PCI-Kommunikationscontroller (einfach)
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Leistungsindikatoren
Description: Leistungsindikatoren
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Leistungsindikatoren
Description: Leistungsindikatoren
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Leistungsindikatoren
Description: Leistungsindikatoren
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Systeminterrupt-Controller
Description: Systeminterrupt-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvvad_WaveExtensible
Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39)
Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded.
Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Basissystemgerät
Description: Basissystemgerät
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/28/2014 06:03:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: aprp.exe, Version: 1.0.0.25, Zeitstempel: 0x521c6b89
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eeb460
Ausnahmecode: 0x0eedfade
Fehleroffset: 0x00012f71
ID des fehlerhaften Prozesses: 0xd74
Startzeit der fehlerhaften Anwendung: 0xaprp.exe0
Pfad der fehlerhaften Anwendung: aprp.exe1
Pfad des fehlerhaften Moduls: aprp.exe2
Berichtskennung: aprp.exe3
Vollständiger Name des fehlerhaften Pakets: aprp.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: aprp.exe5

Error: (10/28/2014 06:00:25 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:55:16 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT-AUTORITÄT)
Description: There was an error with the Windows Location Provider database

Error: (10/28/2014 05:42:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:37:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004C008
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=TimerEvent

Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008
SKU-ID=b080aea2-e6c5-4b22-838e-fa4a21c931e3

Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Lizenzerwerb-Fehlerdetails. 
hr=0xC004C008

Error: (10/28/2014 05:37:11 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004E028
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (10/28/2014 05:37:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:25:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x800705B4
Befehlszeilenargumente:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=fe1c3238-432a-43a1-8e25-97e7d1ef10f3;NotificationInterval=1440;Trigger=TimerEvent


System errors:
=============
Error: (10/29/2014 05:53:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (10/29/2014 05:53:19 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht.

Error: (10/28/2014 06:02:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (10/28/2014 06:02:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update-Dienst (gupdate) erreicht.

Error: (10/28/2014 06:00:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "IePlugin Services" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (10/28/2014 06:00:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Stereoscopic 3D Driver Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (10/28/2014 05:59:10 PM) (Source: DCOM) (EventID: 10001) (User: PREDATORG7760)
Description: C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe -Embedding740{B3EDE298-AE75-4A1C-AB7E-1B9229B77BBE}Nicht verfügbarNicht verfügbar

Error: (10/28/2014 05:58:57 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "ASGT" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (10/28/2014 05:58:52 PM) (Source: DCOM) (EventID: 10001) (User: PREDATORG7760)
Description: C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe -Embedding740{B3EDE298-AE75-4A1C-AB7E-1B9229B77BBE}Nicht verfügbarNicht verfügbar

Error: (10/28/2014 05:44:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053


Microsoft Office Sessions:
=========================
Error: (10/28/2014 06:03:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: aprp.exe1.0.0.25521c6b89KERNELBASE.dll6.3.9600.1727853eeb4600eedfade00012f71d7401cff2d0ae571d38C:\Program Files (x86)\ASUS\APRP\aprp.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll5bae0164-5ec4-11e4-826f-d05099460952

Error: (10/28/2014 06:00:25 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:55:16 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT-AUTORITÄT)
Description: -2147024883

Error: (10/28/2014 05:42:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:37:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004C008RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=TimerEvent

Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C008b080aea2-e6c5-4b22-838e-fa4a21c931e3

Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00800010001(0x00000000, 17:37:11:605 - https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail)
00020001(0x00000000, 17:37:11:620)
00030001(0x00000000, 17:37:11:620 - https://activation-v2.sls.microsoft.com)
00030002(0x00000000, 17:37:11:620 - 0)
00040001(0x00000000, 17:37:11:620 - https://activation-v2.sls.microsoft.com)
00040002(0x00000000, 17:37:11:620 - 1, <NULL>, <NULL>, <NULL>)
00050002(0x80072F94, 17:37:11:620 - 0, 1)
00040006(0x00000001, 17:37:11:620 - 0, https://activation-v2.sls.microsoft.com, <N/A>, <N/A>)
00020005(0x00000000, 17:37:11:620 - 0)
0002000C(0x00000000, 17:37:12:933 - 500)
00010002(0x8004FC01, 17:37:12:933 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded.  ---&gt; Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 17:37:12:933)

Error: (10/28/2014 05:37:11 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0xC004E028RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (10/28/2014 05:37:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden.
   bei System.Xml.XmlTextReaderImpl.Throw(Exception e)
   bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
   bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace)
   bei System.Xml.XmlDocument.Load(XmlReader reader)
   bei System.Xml.XmlDocument.Load(String filename)
   bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath)
   bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key)
   bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback )
   bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback)
   bei Hirez.Patcher.HiPatchService.InternalStart()
   bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (10/28/2014 05:25:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0x800705B4RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=fe1c3238-432a-43a1-8e25-97e7d1ef10f3;NotificationInterval=1440;Trigger=TimerEvent


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-5820K CPU @ 3.30GHz
Percentage of memory in use: 16%
Total physical RAM: 16277.57 MB
Available physical RAM: 13584.18 MB
Total Pagefile: 18709.57 MB
Available Pagefile: 15146.04 MB
Total Virtual: 131072 MB
Available Virtual: 131071.84 MB

==================== Drives ================================

Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1175.04 GB) NTFS
Drive b: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS
Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:144.16 GB) NTFS
Drive d: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS
Drive e: (V1156) (CDROM) (Total:0.76 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121)
Partition 1: (Not Active) - (Size=19 GB) - (Type=27)
Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)

==================== End Of Log ============================
         

Alt 30.10.2014, 15:44   #11
schrauber
/// the machine
/// TB-Ausbilder
 

PC bootet nach Anwendung von ADWCleaner nicht mehr - Standard

PC bootet nach Anwendung von ADWCleaner nicht mehr



Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Software Version Updater

  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 






Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu PC bootet nach Anwendung von ADWCleaner nicht mehr
adware, adwcleaner, akamai, blackscreen, boot problem, booten, computer, explorer, fehlercode 0x0eedfade, fehlercode 28, fehlercode 39, fehlercode windows, nvidia, programm, realtek, services.exe, software version updater entfernen, spotify web helper, svchost.exe, vcredist, windows, windows xp, winlogon.exe



Ähnliche Themen: PC bootet nach Anwendung von ADWCleaner nicht mehr


  1. USB-Stick bootet nach Win7 *Einrichtung* nicht mehr.
    Netzwerk und Hardware - 20.09.2015 (12)
  2. PC bootet nach diversen Bluescreens nicht mehr...
    Netzwerk und Hardware - 04.09.2015 (39)
  3. Nach Uodates auf Winsows7 bootet der Lappi nicht mehr...
    Log-Analyse und Auswertung - 09.10.2014 (8)
  4. Nach ADW Cleaner Anwendung öffnet Firefox nicht mehr
    Log-Analyse und Auswertung - 02.11.2013 (5)
  5. mit adwcleaner malware entfernt - Windows 7 bootet nicht mehr
    Plagegeister aller Art und deren Bekämpfung - 21.08.2013 (17)
  6. Laptop bootet nach Trojaner Meldung (Avira) nicht mehr, Start von Win XP CD nicht möglich
    Plagegeister aller Art und deren Bekämpfung - 12.11.2012 (1)
  7. PC bootet nach Änderung im Bios nicht mehr
    Log-Analyse und Auswertung - 19.04.2012 (8)
  8. Nach Virusmeldung bootet mein PC nicht mehr hoch
    Plagegeister aller Art und deren Bekämpfung - 20.02.2012 (9)
  9. PC bootet nicht mehr nach Trojaner( Zahlungsaufforderung)
    Plagegeister aller Art und deren Bekämpfung - 12.12.2011 (1)
  10. Vista bootet nach Trojaner nicht mehr!
    Alles rund um Windows - 03.04.2011 (4)
  11. Windows XP bootet nach Virenfund (Antivir) nicht mehr
    Alles rund um Windows - 08.02.2011 (4)
  12. Win XP bootet nicht mehr nach Trojaner(?)befall
    Plagegeister aller Art und deren Bekämpfung - 23.12.2010 (7)
  13. PC nicht mehr bootfähig nach Anwendung Antivirenprogramm
    Plagegeister aller Art und deren Bekämpfung - 01.11.2010 (12)
  14. Vista bootet nicht mehr nach Installation von SP1
    Alles rund um Windows - 29.09.2008 (3)
  15. PC Bootet nach Virus nicht mehr
    Plagegeister aller Art und deren Bekämpfung - 27.11.2007 (13)
  16. HILFE! PC bootet nach Vundo-Entfernung nicht mehr
    Plagegeister aller Art und deren Bekämpfung - 27.03.2007 (1)
  17. Nach SP2 Installation bootet Windows nicht mehr erfolgreich
    Alles rund um Windows - 15.10.2006 (6)

Zum Thema PC bootet nach Anwendung von ADWCleaner nicht mehr - Hallo zusammen, also ich habe folgendes Problem: Nachdem ich mit dem aus diversen Foren empfohlenen ADWCleaner einige nervende Adware entfernt habe, hat das Programm von sich aus den PC neu - PC bootet nach Anwendung von ADWCleaner nicht mehr...
Archiv
Du betrachtest: PC bootet nach Anwendung von ADWCleaner nicht mehr auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.