Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Weißer Bildschirm nach Start bei Win7 auf Laptop

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 07.11.2014, 14:25   #1
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Hi ich habe ein Laptop von msi A6405

Bei diesem wird sobald ich ihn starte wird der Bildschirm weiß, sollte ich es doch über zwanzig Mal Neustarten das er hochfährt und ich in Windows reinkomme wird mir ein Fehlerfenster angezeigt. In dem steht das :
DVCCDBConfigDBAPICDP100.DLL fehlt auf ihrem PC.
Ich bin total unwissend bei sowas kann mir da bitte einer zur Hand gehen ??

Vielen Dank schonmal

MIRKO

Alt 07.11.2014, 14:27   #2
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop






Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.


Bitte beachte folgende Hinweise:
  • Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo. Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!
  • Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
  • Bitte beachten: Download bei filepony.de: So ladet Ihr unsere Tools richtig!
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort zu starten!


Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!




FRST bitte im abgesicherten Modus ausführen ausführen:


Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 07.11.2014, 15:35   #3
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-11-2014
Ran by M at 2014-11-07 15:32:03
Running from C:\Users\M\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0Y4YJ6OF
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.82.76 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.9.900.152 - Adobe Systems Incorporated)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.306 - Avira)
B1315AppGuid (x32 Version: 1.0.0 - DATEV eG) Hidden
Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version:  - )
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.0.0 - Conexant)
Finger Sensing Pad Driver (HKLM\...\{E86906FF-C63D-4EAF-ACE7-5F8D55FBEA9A}) (Version: 8.8.0.9 - Sentelic)
Geeks3D FurMark 1.14.1 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version:  - Geeks3D)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2266 - Intel Corporation)
Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Kaninchen-Schau 3.3 (HKLM-x32\...\{9627CB86-ABAF-48C0-A22F-6471B605F3ED}) (Version: 3.3.0 - internet & software peter)
kobdfu x64x86 driver installation (x32 Version: 1.00.0000 - KOBIL Systems) Hidden
KOBIL CCID driver x64x86 (x32 Version: 1.010.01181 - KOBIL Systems) Hidden
Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.1.0.0 - GIANTS Software)
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM-x32\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7C39E0D1-E138-42B1-B083-213EC2CF7692}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{1FBEA8BA-D40B-48BC-85BC-EE2D5575F27C}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 12.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 12.0 (x86 de)) (Version: 12.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 12.0 - Mozilla)
MSI Remind Manager (HKLM-x32\...\{89F17DC5-A776-4DF4-8CD1-FAEF29BCE51A}) (Version: 1.11.0104 - MSI)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.)
NVIDIA GeForce Experience 2.1.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.3 - NVIDIA Corporation)
NVIDIA Grafiktreiber 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.48 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
PC Sound (HKLM\...\{F3C66EC8-2F33-452D-9CFF-E8C886B3ECC4}) (Version: 1.11.0200 - SRS Labs, Inc.)
PHotkey (HKLM-x32\...\{24047BE4-329D-46F7-9689-8684C7A1CFBB}) (Version: 1.00.0005 - )
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.20.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.20.0 - Renesas Electronics Corporation) Hidden
SHIELD Streaming (Version: 3.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.13.56 - NVIDIA Corporation) Hidden
SQLXML4 (HKLM\...\{BFBF33B5-AEFE-454B-A189-DF5013028535}) (Version: 9.00.5000.00 - Microsoft Corporation)
Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (HKLM-x32\...\{07629207-FAA0-4F1A-8092-BF5085BE511F}) (Version: 9.00.5000.00 - Microsoft Corporation)
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)


==================== Loaded Modules (whitelisted) =============

2011-03-24 05:48 - 2010-12-10 20:19 - 00104968 ____R () C:\Program Files (x86)\PHotkey\ASLDRSrv.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00159752 ____R () C:\Program Files (x86)\PHotkey\GFNEXSrv.exe
2014-10-31 23:36 - 2014-10-16 17:54 - 00012104 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-10-31 23:39 - 2014-10-16 15:11 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-02-23 10:51 - 2011-02-25 14:01 - 00021848 _____ () C:\windows\System32\skypdfmonpro.dll
2013-08-29 13:29 - 2011-04-25 12:24 - 00034304 _____ () C:\windows\System32\ssj1mlm.dll
2011-03-24 05:48 - 2010-12-10 20:19 - 00117256 ____R () C:\Program Files (x86)\PHotkey\MsgTranAgt.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00121864 ____R () C:\Program Files (x86)\PHotkey\MsgTranAgt64.exe
2011-02-11 06:11 - 2010-12-16 09:37 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2011-02-17 15:36 - 2010-11-08 07:50 - 00044032 _____ () C:\Program Files\FSP\KbdHook.dll
2011-02-17 15:36 - 2010-11-08 07:51 - 00070656 _____ () C:\Program Files\FSP\FspLib.dll
2011-03-24 05:48 - 2010-12-27 22:14 - 00776200 ____R () C:\Program Files (x86)\PHotkey\PVDesktop.exe
2011-03-24 05:48 - 2010-12-03 19:33 - 00462856 ____R () C:\Program Files (x86)\PHotkey\PVDAgent.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00973432 ____R () C:\Program Files (x86)\PHotkey\acAuth.dll
2011-03-24 05:36 - 2014-10-16 17:54 - 00013120 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2011-03-24 05:48 - 2010-12-10 20:19 - 00129544 ____R () C:\Program Files (x86)\PHotkey\GFNEX.dll
2011-06-28 09:22 - 2011-06-28 09:22 - 00068704 ____N () C:\DATEV\PROGRAMM\B0000150\ScServer\ScEventSourcePlugin.dll
2010-07-12 09:05 - 2010-07-12 09:05 - 00030304 ____N () C:\DATEV\PROGRAMM\B0000150\ScServer\ScWinMagicPlugin.dll
2011-05-09 14:52 - 2011-05-09 14:52 - 00203264 ____N () C:\DATEV\SYSTEM\DVCCSipaHostApidll.dll
2010-09-22 16:47 - 2010-09-22 16:47 - 00007776 ____N () C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardServicePS.dll
2010-09-13 17:58 - 2010-09-13 17:58 - 00006752 ____N () C:\DATEV\PROGRAMM\B0001363\SCmIdentityScannerPS.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

========================= Accounts: ==========================

Administrator (S-1-5-21-3339000988-519491333-1609533031-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3339000988-519491333-1609533031-1009 - Limited - Enabled)
Gast (S-1-5-21-3339000988-519491333-1609533031-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3339000988-519491333-1609533031-1003 - Limited - Enabled)
M (S-1-5-21-3339000988-519491333-1609533031-1001 - Administrator - Enabled) => C:\Users\M

==================== Faulty Device Manager Devices =============

Name: Ethernet-Controller
Description: Ethernet-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/07/2014 02:59:28 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile  WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.

Error: (11/07/2014 02:34:59 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:29:36 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:20:34 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:01:01 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/06/2014 08:26:27 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/05/2014 08:06:16 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/04/2014 08:08:09 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/04/2014 07:50:11 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/03/2014 09:41:45 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...


System errors:
=============
Error: (11/07/2014 02:34:08 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:33:04 unerwartet heruntergefahren.

Error: (11/07/2014 02:28:45 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:26:37 unerwartet heruntergefahren.

Error: (11/07/2014 02:19:46 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:14:35 unerwartet heruntergefahren.

Error: (11/07/2014 02:00:30 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎06.‎11.‎2014 um 22:19:28 unerwartet heruntergefahren.

Error: (11/06/2014 08:25:09 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎06.‎11.‎2014 um 20:23:04 unerwartet heruntergefahren.

Error: (11/06/2014 07:58:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎05.‎11.‎2014 um 22:24:35 unerwartet heruntergefahren.

Error: (11/05/2014 08:05:33 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎05.‎11.‎2014 um 19:59:05 unerwartet heruntergefahren.

Error: (11/03/2014 09:41:18 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎03.‎11.‎2014 um 21:39:29 unerwartet heruntergefahren.

Error: (11/03/2014 07:58:30 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252.

Error: (11/03/2014 07:54:13 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎03.‎11.‎2014 um 19:51:35 unerwartet heruntergefahren.


Microsoft Office Sessions:
=========================

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz
Percentage of memory in use: 37%
Total physical RAM: 4008.21 MB
Available physical RAM: 2486.55 MB
Total Pagefile: 8014.61 MB
Available Pagefile: 6109.52 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (OS_Install) (Fixed) (Total:265.63 GB) (Free:221.17 GB) NTFS
Drive d: (Data) (Fixed) (Total:188.04 GB) (Free:186.33 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 3361844E)
Partition 1: (Not Active) - (Size=12 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453.7 GB) - (Type=OF Extended)

==================== End Of Log ============================
         

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-11-2014
Ran by M (administrator) on M-MSI on 07-11-2014 15:30:21
Running from C:\Users\M\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0Y4YJ6OF
Loaded Profile: M (Available profiles: M)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
() C:\Program Files (x86)\PHotkey\AsLdrSrv.exe
() C:\Program Files (x86)\PHotkey\GFNEXSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Pegatron Corporation) C:\Program Files (x86)\PHotkey\PHotkey.exe
() C:\Program Files (x86)\PHotkey\MsgTranAgt.exe
() C:\Program Files (x86)\PHotkey\MsgTranAgt64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
(DATEV e.G.) C:\DATEV\PROGRAMM\B0001364\DtvScSer.exe
(Intel Corporation) C:\Windows\system32\igfxtray.exe
(Intel Corporation) C:\Windows\system32\hkcmd.exe
(Intel Corporation) C:\Windows\system32\igfxpers.exe
(Sentelic Corporation) C:\Program Files\FSP\FspUip.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000398\SiPaHost.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000150\ScWTS\DVCCSAWTSSetEntryNTE.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardManager.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0001442\PSNTServ.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000150\ScServer\DVckService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(KOBIL Systems GmbH) C:\DATEV\PROGRAMM\B0000404\msdisrv.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardService.exe
(Datev eG) C:\DATEV\PROGRAMM\B0000398\SiPaHostService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
() C:\Program Files (x86)\PHotkey\PVDesktop.exe
() C:\Program Files (x86)\PHotkey\PVDAgent.exe
(Pegatron Corporation) C:\Program Files (x86)\PHotkey\MsOsd.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0001363\SCmIdentityScanner.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10i_ActiveX.exe
(Microsoft Corporation) C:\Windows\system32\audiodg.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant systems, Inc.)
HKLM\...\Run: [fspuip] => C:\Program Files\FSP\fspuip.exe [4055552 2010-11-08] (Sentelic Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2462536 2014-10-16] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [NUSB3MON] => c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SiPaHost] => C:\DATEV\PROGRAMM\B0000398\SiPaHost.exe [595552 2011-05-09] (DATEV eG)
HKLM-x32\...\Run: [DVCCSAWTSSetEntryNTE] => C:\DATEV\PROGRAMM\B0000150\ScWTS\DVCCSAWTSSetEntryNTE.exe [549472 2011-06-28] (DATEV eG)
HKLM-x32\...\Run: [DATEV_SCardMan] => C:\DATEV\PROGRAMM\B0000347\ScMgmt\ScardManager.exe [368736 2010-09-22] (DATEV eG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-09-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\windows\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3339000988-519491333-1609533031-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-3339000988-519491333-1609533031-1001\...\MountPoints2: {0d5005de-c59d-11e0-b64c-e0699560c4f9} - F:\SETUP.EXE
HKU\S-1-5-21-3339000988-519491333-1609533031-1001\...\MountPoints2: {ea15bfd1-55cf-11e0-936a-806e6f6e6963} - E:\autorun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\windows\System32\SPReview\SPReview.exe [301568 2013-09-04] (Microsoft Corporation)
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [156840 2014-10-16] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SkyUserDevmode-Update.lnk
ShortcutTarget: SkyUserDevmode-Update.lnk -> C:\DATEV\PROGRAMM\B0001401\UpdateDevmode.exe (DATEV eG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS PC Sound.lnk
ShortcutTarget: SRS PC Sound.lnk -> C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe (SRS Labs, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi.msn.com
BHO: DtvIePwdSafeBHO64 Class -> {557F4852-8868-44dd-B5E9-9890AC4B1FD5} -> C:\DATEV\PROGRAMM\B0000397\DtvIePwdSafe64.dll (DATEV eG)
BHO: No Name -> {6EF6B546-25FB-455B-801F-FDB3B3D39F9E} ->  No File
BHO: SCardBHOEvent Class -> {AF8CD625-E04A-4A8F-A90A-0C74846C2E30} -> C:\DATEV\SYSTEM\DVCCSASCardBHO64002.Dll (DATEV eG)
BHO-x32: No Name -> {557F4852-8868-44dd-B5E9-9890AC4B1FD5} ->  No File
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
BHO-x32: DtvIePwdSafeBHO Class -> {6EF6B546-25FB-455B-801F-FDB3B3D39F9E} -> C:\DATEV\PROGRAMM\B0000397\DtvIePwdSafe.dll (DATEV eG)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: SCardBHOEvent Class -> {AF8CD625-E04A-4A8F-A90A-0C74846C2E30} -> C:\DATEV\SYSTEM\DVCCSAScardBHO002.dll (DATEV eG)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: Avira Browser Safety - C:\Users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default\Extensions\abs@avira.com [2014-10-31]

Chrome: 
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 ASLDRService; C:\Program Files (x86)\PHotkey\ASLDRSrv.exe [104968 2010-12-10] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 DATEV Logon Service; C:\DATEV\PROGRAMM\B0001364\DtvScSer.exe [511072 2010-09-08] (DATEV e.G.)
S3 DATEV Update-Service; C:\DATEV\PROGRAMM\INSTALL\DvInesASDSvc.Exe [172640 2011-07-25] (DATEV eG)
S3 Datev.Database.Conserve; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S2 Datev.Framework.RemoteServiceModel.EnablerService; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S3 Datev.Framework.RemoteServices; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S3 Datev.Framework.RemoteServices.Messaging.CentralMessagingService; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
R2 DatevPrintService; C:\DATEV\PROGRAMM\B0001442\PSNTSERV.EXE [79872 2011-12-09] (DATEV eG) [File not signed]
R2 DVckService; C:\DATEV\PROGRAMM\B0000150\ScServer\DVckService.exe [2409056 2011-06-28] (DATEV eG)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-16] (NVIDIA Corporation)
R2 GFNEXSrv; C:\Program Files (x86)\PHotkey\GFNEXSrv.exe [159752 2010-12-10] ()
R2 KOBIL_MSDI; C:\DATEV\PROGRAMM\B0000404\msdisrv.exe [194144 2010-08-25] (KOBIL Systems GmbH)
R2 msftesql$DATEV_CL_DE01; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe [91992 2010-03-26] (Microsoft Corporation)
R2 MSSQL$DATEV_CL_DE01; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-16] (NVIDIA Corporation)
R2 SCardService; C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardService.exe [292960 2010-09-22] (DATEV eG)
R2 Sicherheitspaket-Dienst; C:\DATEV\PROGRAMM\B0000398\SiPaHostService.exe [271456 2011-05-09] (Datev eG)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-09-24] (Avira Operations GmbH & Co. KG)
S3 FARMNTIO; c:\windows\system32\drivers\farmntio.sys [24152 2010-06-03] ()
S3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-01] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-10-16] (NVIDIA Corporation)
R2 PEGAGFN; C:\Program Files (x86)\PHotkey\PEGAGFN.sys [14344 2010-12-10] (PEGATRON)
R2 SC_SERV3D; C:\windows\system32\drivers\d3_kafm.sys [82488 2011-07-19] (Datev eG)
U0 dmboot; No ImagePath
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
S3 MGHwCtrl; \??\c:\Utility\Silent\MGHwCtrl.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-07 15:30 - 2014-11-07 15:30 - 00000000 ____D () C:\FRST
2014-11-04 19:54 - 2014-11-04 19:54 - 00000000 ____D () C:\Users\M\Desktop\savegame2
2014-11-04 19:54 - 2014-11-04 19:54 - 00000000 ____D () C:\Users\M\Desktop\savegame1
2014-11-02 11:19 - 2014-11-02 11:19 - 00000000 ____D () C:\Users\M\Downloads\Leeremap_ls15
2014-11-02 11:17 - 2014-11-02 11:18 - 74449341 _____ () C:\Users\M\Downloads\Leeremap_ls15.zip
2014-11-01 22:40 - 2014-11-01 22:40 - 00000000 ____D () C:\Users\M\AppData\Local\GIANTSPackageRegistry
2014-11-01 22:40 - 2014-11-01 22:40 - 00000000 ____D () C:\Users\M\AppData\Local\GIANTS Editor 64bit 6.0.2
2014-11-01 14:32 - 2014-09-19 02:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-11-01 14:32 - 2014-07-08 23:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-11-01 14:32 - 2014-07-08 23:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-11-01 12:42 - 2014-11-01 12:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2014-11-01 12:42 - 2014-11-01 12:42 - 00000000 ____D () C:\Program Files (x86)\Geeks3D
2014-11-01 12:41 - 2014-11-01 12:41 - 00000000 ____D () C:\Users\M\Documents\CoreTemp64
2014-11-01 12:28 - 2014-11-01 12:28 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-11-01 12:28 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-11-01 12:28 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-11-01 12:28 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-11-01 12:22 - 2014-07-22 10:00 - 04059136 _____ (Qualcomm Atheros Communications, Inc.) C:\windows\system32\Drivers\athrx.sys
2014-11-01 11:48 - 2014-11-01 11:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Samsung
2014-11-01 11:41 - 2014-11-01 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaninchen-Schau 3.3
2014-11-01 11:37 - 2014-11-01 11:37 - 00000000 __SHD () C:\Users\M\AppData\Local\EmieUserList
2014-11-01 11:37 - 2014-11-01 11:37 - 00000000 __SHD () C:\Users\M\AppData\Local\EmieSiteList
2014-11-01 02:26 - 2014-11-01 02:26 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-11-01 02:16 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2014-11-01 02:16 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2014-11-01 02:16 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2014-11-01 02:16 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2014-11-01 01:04 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-11-01 01:04 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-11-01 00:57 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-11-01 00:57 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-11-01 00:57 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-11-01 00:57 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-11-01 00:57 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-11-01 00:57 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-11-01 00:57 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-11-01 00:57 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-11-01 00:55 - 2014-11-01 00:55 - 00007627 _____ () C:\Users\M\AppData\Local\Resmon.ResmonCfg
2014-10-31 23:59 - 2014-11-01 00:02 - 294205928 _____ (GIANTS Software ) C:\Users\M\Downloads\FarmingSimulator2015Patch1.1DE.exe
2014-10-31 23:48 - 2014-10-31 23:48 - 00000000 ____D () C:\Users\M\AppData\Roaming\NVIDIA
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\ProgramData\Mozilla
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-31 23:41 - 2014-10-31 23:43 - 00000000 ____D () C:\Users\M\AppData\Local\NVIDIA
2014-10-31 23:41 - 2014-10-31 23:42 - 00000000 ____D () C:\Users\M\AppData\Local\NVIDIA Corporation
2014-10-31 23:41 - 2014-10-31 23:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-10-31 23:41 - 2014-10-16 17:54 - 02800296 _____ (NVIDIA Corporation) C:\windows\system32\nvspcap64.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 02197680 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvspcap.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 01715224 _____ (NVIDIA Corporation) C:\windows\system32\nvspbridge64.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 01291280 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvspbridge.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\windows\system32\d3dx11_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx11_43.dll
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\windows\SysWOW64\NV
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\windows\system32\NV
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-10-31 23:39 - 2014-10-31 23:37 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avnetflt.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 31890064 _____ (NVIDIA Corporation) C:\windows\system32\nvoglv64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 24555840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglv32.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 20968040 _____ (NVIDIA Corporation) C:\windows\system32\nvwgf2umx.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 20922696 _____ (NVIDIA Corporation) C:\windows\system32\nvcompiler.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 19966856 _____ (NVIDIA Corporation) C:\windows\system32\nvd3dumx.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 18499648 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvwgf2um.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 17260864 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcompiler.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 16886168 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvd3dum.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 14029400 _____ (NVIDIA Corporation) C:\windows\system32\nvopencl.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 13942368 _____ (NVIDIA Corporation) C:\windows\system32\nvcuda.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 13190288 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvlddmkm.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 11395672 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvopencl.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 11333848 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuda.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 04289856 _____ (NVIDIA Corporation) C:\windows\system32\nvcuvid.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 04009672 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuvid.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 01876296 _____ (NVIDIA Corporation) C:\windows\system32\nvdispco6434448.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 01539272 _____ (NVIDIA Corporation) C:\windows\system32\nvdispgenco6434448.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00962376 _____ (NVIDIA Corporation) C:\windows\system32\NvIFR64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00931984 _____ (NVIDIA Corporation) C:\windows\system32\NvFBC64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00921928 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvIFR.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00895176 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvFBC.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00352016 _____ (NVIDIA Corporation) C:\windows\system32\nvoglshim64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00303600 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglshim32.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00038048 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 00034976 _____ (NVIDIA Corporation) C:\windows\system32\nvaudcap64v.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00032416 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00030408 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvpciflt.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 00027024 _____ () C:\windows\system32\nvinfo.pb
2014-10-31 23:36 - 2014-09-24 12:44 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avipbb.sys
2014-10-31 23:36 - 2014-09-24 12:44 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avgntflt.sys
2014-10-31 23:36 - 2014-09-24 12:44 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avkmgr.sys
2014-10-31 23:35 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\windows\system32\IEUDINIT.EXE
2014-10-31 23:34 - 2014-10-31 23:34 - 00000000 ____D () C:\NVIDIA
2014-10-31 23:32 - 2014-10-31 23:32 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-31 23:32 - 2014-10-31 23:32 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-31 23:32 - 2014-10-31 23:32 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-31 23:32 - 2014-10-31 23:32 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-31 23:32 - 2014-10-31 23:32 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-10-31 23:32 - 2014-10-31 23:32 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-10-31 23:32 - 2014-10-31 23:32 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-10-31 23:32 - 2014-10-31 23:32 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-10-31 23:32 - 2014-10-31 23:32 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-10-31 23:32 - 2014-10-31 23:32 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-10-31 23:32 - 2014-10-31 23:32 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\ProgramData\Avira
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-10-31 23:30 - 2014-10-31 23:30 - 04583464 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_de_av___ws.exe
2014-10-31 23:30 - 2014-10-31 23:30 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00619520 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-31 23:29 - 2014-10-31 23:34 - 306270552 _____ (NVIDIA Corporation) C:\Users\M\Downloads\344.48-notebook-win8-win7-64bit-international-whql.exe
2014-10-31 23:28 - 2014-10-31 23:35 - 00012001 _____ () C:\windows\IE11_main.log
2014-10-31 23:28 - 2014-10-31 23:28 - 02077392 _____ (Microsoft Corporation) C:\Users\M\Downloads\IE11-Windows6.1.exe
2014-10-31 19:29 - 2014-09-29 01:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-31 19:29 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-31 19:29 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-31 19:29 - 2014-04-25 03:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2014-10-31 19:29 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2014-10-31 19:29 - 2014-04-05 03:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2014-10-31 19:29 - 2014-04-05 03:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2014-10-31 19:29 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2014-10-31 19:29 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2014-10-31 19:29 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2014-10-31 19:29 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2014-10-31 19:29 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2014-10-31 19:29 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2014-10-31 19:29 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\windows\system32\msieftp.dll
2014-10-31 19:29 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msieftp.dll
2014-10-31 19:29 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll
2014-10-31 19:29 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll
2014-10-31 19:29 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2014-10-31 19:29 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2014-10-31 19:29 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2014-10-31 19:29 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2014-10-31 19:28 - 2014-10-10 03:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-31 19:28 - 2014-10-10 03:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-31 19:28 - 2014-10-10 03:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-31 19:28 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-31 19:28 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-31 19:28 - 2014-06-18 03:18 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\osk.exe
2014-10-31 19:28 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe
2014-10-31 19:28 - 2014-06-06 11:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-10-31 19:28 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-10-31 19:28 - 2014-05-30 07:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2014-10-31 19:28 - 2014-03-26 15:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2014-10-31 19:28 - 2014-03-26 15:44 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-10-31 19:28 - 2014-03-26 15:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2014-10-31 19:28 - 2014-03-26 15:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-10-31 19:28 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2014-10-31 19:28 - 2014-03-26 15:27 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-10-31 19:28 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2014-10-31 19:28 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\windows\system32\secproc.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\windows\system32\secproc_isv.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp_isv.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp.dll
2014-10-31 19:28 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\windows\system32\msdrm.dll
2014-10-31 19:28 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_isv.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\windows\system32\RMActivate.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp_isv.exe
2014-10-31 19:28 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_isv.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp_isv.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp.dll
2014-10-31 19:28 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdrm.dll
2014-10-31 19:28 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_isv.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp_isv.exe
2014-10-31 19:28 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2014-10-31 19:28 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2014-10-31 19:28 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\credui.dll
2014-10-31 19:28 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\drmk.sys
2014-10-31 19:28 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\windows\SysWOW64\SmartcardCredentialProvider.dll
2014-10-31 19:28 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\credui.dll
2014-10-31 19:28 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\portcls.sys
2014-10-31 19:28 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2014-10-31 19:28 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2014-10-31 19:28 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2014-10-31 19:28 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2014-10-31 19:28 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebClnt.dll
2014-10-31 19:28 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\davclnt.dll
2014-10-31 19:28 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2014-10-31 19:28 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbscan.sys
2014-10-31 19:28 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2014-10-31 19:28 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2014-10-31 19:28 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2014-10-31 19:28 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2014-10-31 19:28 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2014-10-31 19:28 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2014-10-31 19:28 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2014-10-31 19:28 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2014-10-31 19:28 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2014-10-31 19:28 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2014-10-31 19:28 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2014-10-31 19:28 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2014-10-31 19:28 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2014-10-31 19:27 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-31 19:27 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-31 19:27 - 2014-09-18 03:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-31 19:27 - 2014-09-18 02:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-31 19:27 - 2014-06-16 03:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-10-31 19:27 - 2014-06-03 11:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-10-31 19:27 - 2014-06-03 11:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-10-31 19:27 - 2014-06-03 11:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-10-31 19:27 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-10-31 19:27 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-10-31 19:27 - 2014-03-04 10:47 - 05550016 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2014-10-31 19:27 - 2014-03-04 10:44 - 00722944 _____ (Microsoft Corporation) C:\windows\system32\objsel.dll
2014-10-31 19:27 - 2014-03-04 10:44 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2014-10-31 19:27 - 2014-03-04 10:44 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\wincredprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\cngprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\adprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\capiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00052736 _____ (Microsoft Corporation) C:\windows\system32\dpapiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\dimsroam.dll
2014-10-31 19:27 - 2014-03-04 10:20 - 03969984 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2014-10-31 19:27 - 2014-03-04 10:20 - 03914176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2014-10-31 19:27 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\windows\SysWOW64\objsel.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\cngprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\adprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\capiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpapiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\dimsroam.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincredprovider.dll
2014-10-31 19:27 - 2014-03-04 10:16 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2014-10-31 19:27 - 2014-02-04 03:35 - 00274880 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msiscsi.sys
2014-10-31 19:27 - 2014-02-04 03:35 - 00190912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys
2014-10-31 19:27 - 2014-02-04 03:35 - 00027584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Diskdump.sys
2014-10-31 19:27 - 2014-02-04 03:28 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\iologmsg.dll
2014-10-31 19:27 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\iologmsg.dll
2014-10-31 19:27 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2014-10-31 19:27 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2014-10-31 19:27 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2014-10-31 19:27 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2014-10-31 19:27 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2014-10-31 19:27 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2014-10-31 19:26 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-10-31 19:26 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-10-31 19:26 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-31 19:26 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 03722240 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 01118720 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2014-10-31 19:26 - 2014-07-17 03:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-31 19:26 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-31 19:26 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 03221504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2014-10-31 19:26 - 2014-07-17 02:39 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-31 19:26 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-31 19:26 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-31 19:26 - 2014-07-07 03:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-31 19:26 - 2014-07-07 03:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-31 19:26 - 2014-07-07 02:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-31 19:26 - 2014-07-07 02:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-31 19:26 - 2014-07-07 02:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-31 19:26 - 2014-06-25 03:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-10-31 19:26 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2014-10-31 19:26 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-31 19:26 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-31 19:25 - 2014-09-13 02:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-31 19:25 - 2014-09-13 02:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-31 19:25 - 2014-08-23 03:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-10-31 19:25 - 2014-08-23 02:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-10-31 19:25 - 2014-04-12 03:22 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2014-10-31 19:25 - 2014-04-12 03:22 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2014-10-31 19:25 - 2014-04-12 03:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2014-10-31 19:25 - 2014-04-12 03:19 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2014-10-31 19:25 - 2014-04-12 03:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2014-10-31 19:25 - 2014-04-12 03:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 01163264 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2014-10-31 19:25 - 2014-03-04 10:17 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2014-10-31 19:25 - 2014-03-04 10:16 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2014-10-31 19:25 - 2014-03-04 10:16 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2014-10-31 19:25 - 2014-03-04 10:16 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2014-10-31 19:25 - 2014-03-04 09:09 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2014-10-31 19:25 - 2014-03-04 09:09 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2014-10-31 19:25 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-10-31 19:25 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-10-31 19:25 - 2014-01-24 03:37 - 01684928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2014-10-31 19:25 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\windows\system32\wshom.ocx
2014-10-31 19:25 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\windows\system32\scrrun.dll
2014-10-31 19:25 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2014-10-31 19:25 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2014-10-31 19:25 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2014-10-31 19:25 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshom.ocx
2014-10-31 19:25 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2014-10-31 19:25 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrrun.dll
2014-10-31 19:25 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2014-10-31 19:25 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\wscript.exe
2014-10-31 19:25 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\windows\system32\cscript.exe
2014-10-31 19:25 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscript.exe
2014-10-31 19:25 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscript.exe
2014-10-31 19:25 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2014-10-31 19:25 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-10-31 19:25 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2014-10-31 19:24 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2014-10-31 19:20 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys
2014-10-31 19:18 - 2014-10-31 19:18 - 00000000 ____D () C:\Users\M\Documents\My Games
2014-10-31 19:17 - 2014-07-14 03:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-10-31 19:17 - 2014-07-14 02:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-10-31 19:13 - 2014-11-04 20:00 - 00001289 _____ () C:\Users\M\Desktop\Landwirtschafts Simulator 15 .lnk
2014-10-31 19:13 - 2014-11-04 20:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Landwirtschafts Simulator 2015
2014-10-31 19:13 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_7.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_7.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_5.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_5.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_43.dll
2014-10-31 19:13 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_7.dll
2014-10-31 19:13 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_7.dll
2014-10-31 19:13 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\windows\system32\xinput1_3.dll
2014-10-31 19:13 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\windows\SysWOW64\xinput1_3.dll
2014-10-31 19:12 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2014-10-31 19:12 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll
2014-10-31 19:08 - 2014-11-04 20:14 - 00000000 ____D () C:\Program Files (x86)\Landwirtschafts Simulator 2015
2014-10-31 19:03 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-10-31 19:03 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-10-31 19:03 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-10-31 19:03 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-10-31 19:03 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-10-31 19:03 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-10-31 19:03 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-10-31 19:03 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-10-31 19:03 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-07 15:05 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\rescache
2014-11-07 15:00 - 2011-03-24 05:03 - 01493087 _____ () C:\windows\WindowsUpdate.log
2014-11-07 14:42 - 2009-07-14 05:45 - 00018512 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-07 14:42 - 2009-07-14 05:45 - 00018512 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-07 14:34 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-07 14:34 - 2009-07-14 05:51 - 00048435 _____ () C:\windows\setupact.log
2014-11-07 14:34 - 2009-07-14 05:45 - 00015360 _____ () C:\windows\system32\umstartup.etl
2014-11-06 20:25 - 2009-07-14 05:45 - 00015360 _____ () C:\windows\system32\umstartup000.etl
2014-11-04 20:00 - 2011-08-02 12:48 - 00031839 _____ () C:\windows\DirectX.log
2014-11-02 10:08 - 2011-03-24 04:44 - 00808452 _____ () C:\windows\system32\perfh007.dat
2014-11-02 10:08 - 2011-03-24 04:44 - 00191860 _____ () C:\windows\system32\perfc007.dat
2014-11-02 10:08 - 2009-07-14 06:13 - 01899360 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-02 10:00 - 2009-07-14 05:45 - 00412576 _____ () C:\windows\system32\FNTCACHE.DAT
2014-11-01 22:55 - 2012-02-23 10:13 - 00000000 ____D () C:\Users\M\AppData\Local\CrashDumps
2014-11-01 21:36 - 2012-02-23 10:30 - 01873640 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-11-01 12:46 - 2011-08-03 08:38 - 00562718 _____ () C:\windows\PFRO.log
2014-11-01 12:18 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\NDF
2014-11-01 11:51 - 2011-03-24 05:44 - 00021416 _____ () C:\windows\DPINST.LOG
2014-11-01 11:50 - 2011-03-24 05:42 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-01 11:49 - 2011-08-02 12:52 - 00001058 __RSH () C:\windows\system32\VFsRegister
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\Users\M\AppData\Roaming\Samsung
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\ProgramData\Samsung
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2014-11-01 11:46 - 2011-03-24 05:54 - 00000000 ____D () C:\Program Files (x86)\msi
2014-11-01 11:46 - 2011-03-24 05:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2014-11-01 11:45 - 2012-02-23 11:36 - 00000107 _____ () C:\windows\KurusDeinstall.INI
2014-11-01 11:41 - 2011-08-13 13:18 - 00000000 ____D () C:\Kaninchen
2014-11-01 11:32 - 2011-08-02 12:56 - 00001431 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-01 02:26 - 2009-07-14 08:45 - 00000000 ____D () C:\Program Files\Windows Journal
2014-11-01 02:26 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2014-11-01 02:26 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\Dism
2014-11-01 02:25 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-11-01 01:02 - 2013-09-04 14:29 - 00000000 ____D () C:\windows\system32\MRT
2014-10-31 23:42 - 2011-08-13 13:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-31 23:42 - 2011-03-24 05:36 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-31 23:41 - 2011-03-24 05:36 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-31 23:41 - 2011-03-24 05:36 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-31 23:40 - 2011-03-24 05:37 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-31 18:57 - 2011-08-14 15:27 - 00000000 ____D () C:\Users\M\Tracing
2014-10-28 06:34 - 2011-08-13 12:29 - 00275080 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-10-16 17:54 - 2011-03-24 05:36 - 03237528 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 02849224 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvapi.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00987008 _____ (NVIDIA Corporation) C:\windows\system32\nvumdshimx.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00870112 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvumdshim.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00174856 _____ (NVIDIA Corporation) C:\windows\system32\nvinitx.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00156840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvinit.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 06883136 _____ (NVIDIA Corporation) C:\windows\system32\nvcpl.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 03533632 _____ (NVIDIA Corporation) C:\windows\system32\nvsvc64.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 02559808 _____ (NVIDIA Corporation) C:\windows\system32\nvsvcr.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 01089736 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshext.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00933064 _____ (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
2014-10-16 15:11 - 2010-12-24 04:10 - 00384200 _____ (NVIDIA Corporation) C:\windows\system32\nvmctray.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00067072 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshextr.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00061640 _____ (NVIDIA Corporation) C:\windows\system32\nvshext.dll
2014-10-15 01:48 - 2010-12-24 04:10 - 04047877 _____ () C:\windows\system32\nvcoproc.bin

Some content of TEMP:
====================
C:\Users\M\AppData\Local\Temp\avgnt.exe
C:\Users\M\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe
C:\Users\M\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih_1.exe
C:\Users\M\AppData\Local\Temp\MSNC40B.exe
C:\Users\M\AppData\Local\Temp\Nv3DVStreaming.dll
C:\Users\M\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\M\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\M\AppData\Local\Temp\nvStInst.exe
C:\Users\M\AppData\Local\Temp\ose00000.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-05 20:38

==================== End Of Log ============================
         
--- --- ---

--- --- ---
__________________

Alt 07.11.2014, 16:47   #4
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Startet der Rechner in den abgesicherten Modus schneller bzw. ohne weißen Bildschirm?



Zitat:
Running from C:\Users\M\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0Y4YJ6OF
Leider hast du unsere Anleitung nicht richtig befolgt:
Bitte alle Tools direkt auf den Desktop downloaden bzw. dorthin verschieben und vom Desktop starten, da unsere Anleitungen daraufhin ausgelegt sind.
Zudem lassen sich dann am Ende der Bereinigung alle verwendeten Tools sehr einfach entfernen.
Alle Tools bis zum Ende der Bereinigung auf dem Desktop lassen, evtl. benötigen wir manche öfter.
__________________
Grüße aus Bayern
M-K-D-B

______________________________________

Das Trojaner-Board unterstützen

Alt 07.11.2014, 17:03   #5
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Naja bin halt n NOOB

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-11-2014
Ran by M at 2014-11-07 16:58:50
Running from C:\Users\M\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.82.76 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.9.900.152 - Adobe Systems Incorporated)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.306 - Avira)
B1315AppGuid (x32 Version: 1.0.0 - DATEV eG) Hidden
Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version:  - )
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.0.0 - Conexant)
Finger Sensing Pad Driver (HKLM\...\{E86906FF-C63D-4EAF-ACE7-5F8D55FBEA9A}) (Version: 8.8.0.9 - Sentelic)
Geeks3D FurMark 1.14.1 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version:  - Geeks3D)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2266 - Intel Corporation)
Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Kaninchen-Schau 3.3 (HKLM-x32\...\{9627CB86-ABAF-48C0-A22F-6471B605F3ED}) (Version: 3.3.0 - internet & software peter)
kobdfu x64x86 driver installation (x32 Version: 1.00.0000 - KOBIL Systems) Hidden
KOBIL CCID driver x64x86 (x32 Version: 1.010.01181 - KOBIL Systems) Hidden
Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.1.0.0 - GIANTS Software)
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM-x32\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{7C39E0D1-E138-42B1-B083-213EC2CF7692}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{1FBEA8BA-D40B-48BC-85BC-EE2D5575F27C}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 12.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 12.0 (x86 de)) (Version: 12.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 12.0 - Mozilla)
MSI Remind Manager (HKLM-x32\...\{89F17DC5-A776-4DF4-8CD1-FAEF29BCE51A}) (Version: 1.11.0104 - MSI)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.)
NVIDIA GeForce Experience 2.1.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.3 - NVIDIA Corporation)
NVIDIA Grafiktreiber 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.48 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
PC Sound (HKLM\...\{F3C66EC8-2F33-452D-9CFF-E8C886B3ECC4}) (Version: 1.11.0200 - SRS Labs, Inc.)
PHotkey (HKLM-x32\...\{24047BE4-329D-46F7-9689-8684C7A1CFBB}) (Version: 1.00.0005 - )
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.20.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.20.0 - Renesas Electronics Corporation) Hidden
SHIELD Streaming (Version: 3.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.13.56 - NVIDIA Corporation) Hidden
SQLXML4 (HKLM\...\{BFBF33B5-AEFE-454B-A189-DF5013028535}) (Version: 9.00.5000.00 - Microsoft Corporation)
Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (HKLM-x32\...\{07629207-FAA0-4F1A-8092-BF5085BE511F}) (Version: 9.00.5000.00 - Microsoft Corporation)
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)


==================== Loaded Modules (whitelisted) =============

2011-03-24 05:48 - 2010-12-10 20:19 - 00104968 ____R () C:\Program Files (x86)\PHotkey\ASLDRSrv.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00159752 ____R () C:\Program Files (x86)\PHotkey\GFNEXSrv.exe
2014-10-31 23:36 - 2014-10-16 17:54 - 00012104 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-10-31 23:39 - 2014-10-16 15:11 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-02-23 10:51 - 2011-02-25 14:01 - 00021848 _____ () C:\windows\System32\skypdfmonpro.dll
2013-08-29 13:29 - 2011-04-25 12:24 - 00034304 _____ () C:\windows\System32\ssj1mlm.dll
2011-03-24 05:48 - 2010-12-10 20:19 - 00117256 ____R () C:\Program Files (x86)\PHotkey\MsgTranAgt.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00121864 ____R () C:\Program Files (x86)\PHotkey\MsgTranAgt64.exe
2011-02-11 06:11 - 2010-12-16 09:37 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2011-02-17 15:36 - 2010-11-08 07:50 - 00044032 _____ () C:\Program Files\FSP\KbdHook.dll
2011-02-17 15:36 - 2010-11-08 07:51 - 00070656 _____ () C:\Program Files\FSP\FspLib.dll
2011-03-24 05:48 - 2010-12-27 22:14 - 00776200 ____R () C:\Program Files (x86)\PHotkey\PVDesktop.exe
2011-03-24 05:48 - 2010-12-03 19:33 - 00462856 ____R () C:\Program Files (x86)\PHotkey\PVDAgent.exe
2011-03-24 05:48 - 2010-12-10 20:19 - 00973432 ____R () C:\Program Files (x86)\PHotkey\acAuth.dll
2011-03-24 05:36 - 2014-10-16 17:54 - 00013120 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2011-03-24 05:48 - 2010-12-10 20:19 - 00129544 ____R () C:\Program Files (x86)\PHotkey\GFNEX.dll
2011-06-28 09:22 - 2011-06-28 09:22 - 00068704 ____N () C:\DATEV\PROGRAMM\B0000150\ScServer\ScEventSourcePlugin.dll
2010-07-12 09:05 - 2010-07-12 09:05 - 00030304 ____N () C:\DATEV\PROGRAMM\B0000150\ScServer\ScWinMagicPlugin.dll
2011-05-09 14:52 - 2011-05-09 14:52 - 00203264 ____N () C:\DATEV\SYSTEM\DVCCSipaHostApidll.dll
2010-09-22 16:47 - 2010-09-22 16:47 - 00007776 ____N () C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardServicePS.dll
2010-09-13 17:58 - 2010-09-13 17:58 - 00006752 ____N () C:\DATEV\PROGRAMM\B0001363\SCmIdentityScannerPS.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

========================= Accounts: ==========================

Administrator (S-1-5-21-3339000988-519491333-1609533031-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3339000988-519491333-1609533031-1009 - Limited - Enabled)
Gast (S-1-5-21-3339000988-519491333-1609533031-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3339000988-519491333-1609533031-1003 - Limited - Enabled)
M (S-1-5-21-3339000988-519491333-1609533031-1001 - Administrator - Enabled) => C:\Users\M

==================== Faulty Device Manager Devices =============

Name: Ethernet-Controller
Description: Ethernet-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/07/2014 04:55:03 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:59:28 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile  WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.

Error: (11/07/2014 02:34:59 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:29:36 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:20:34 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/07/2014 02:01:01 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/06/2014 08:26:27 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/05/2014 08:06:16 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/04/2014 08:08:09 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...

Error: (11/04/2014 07:50:11 PM) (Source: Datev.Framework.RemoteServiceModel.EnablerService) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. Datev.Framework.ConfigurationModel.ConfigurationException: Could not read or write configuration data of type 'Datev.Framework.PlugInModel.PlugInSetup'. ---> System.IO.FileNotFoundException: Die COM-Klassenfactory für die Komponente mit CLSID {86607BF8-8BC5-11D0-BA55-0080C74F0C94} konnte aufgrund des folgenden Fehlers nicht abgerufen werden: 8007007e Das angegebene Modul wurde nicht gefunden. (Ausnahme von HRESULT: 0x8007007E).
   bei System.Runtime.Remoting.RemotingServices.AllocateUninitializedObject(RuntimeType objectType)
   bei System.Runtime.Remoting.Activation.ActivationServices.CreateInstance(RuntimeType serverType)
   bei System.Runtime.Remoting.Activation.ActivationServices.IsCurrentContextOK(RuntimeType serverType, Object[] props, Boolean bNewObj)
   bei System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)
   bei System.RuntimeType.CreateInstanceSlow(Boolean public...


System errors:
=============
Error: (11/07/2014 04:54:00 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 16:52:58 unerwartet heruntergefahren.

Error: (11/07/2014 02:34:08 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:33:04 unerwartet heruntergefahren.

Error: (11/07/2014 02:28:45 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:26:37 unerwartet heruntergefahren.

Error: (11/07/2014 02:19:46 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎11.‎2014 um 14:14:35 unerwartet heruntergefahren.

Error: (11/07/2014 02:00:30 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎06.‎11.‎2014 um 22:19:28 unerwartet heruntergefahren.

Error: (11/06/2014 08:25:09 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎06.‎11.‎2014 um 20:23:04 unerwartet heruntergefahren.

Error: (11/06/2014 07:58:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎05.‎11.‎2014 um 22:24:35 unerwartet heruntergefahren.

Error: (11/05/2014 08:05:33 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎05.‎11.‎2014 um 19:59:05 unerwartet heruntergefahren.

Error: (11/03/2014 09:41:18 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎03.‎11.‎2014 um 21:39:29 unerwartet heruntergefahren.

Error: (11/03/2014 07:58:30 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252.


Microsoft Office Sessions:
=========================

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz
Percentage of memory in use: 36%
Total physical RAM: 4008.21 MB
Available physical RAM: 2536 MB
Total Pagefile: 8014.61 MB
Available Pagefile: 6280.03 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: (OS_Install) (Fixed) (Total:265.63 GB) (Free:220.61 GB) NTFS
Drive d: (Data) (Fixed) (Total:188.04 GB) (Free:186.33 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 3361844E)
Partition 1: (Not Active) - (Size=12 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453.7 GB) - (Type=OF Extended)

==================== End Of Log ============================
         

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-11-2014
Ran by M (administrator) on M-MSI on 07-11-2014 16:56:31
Running from C:\Users\M\Desktop
Loaded Profile: M (Available profiles: M)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\system32\audiodg.exe
() C:\Program Files (x86)\PHotkey\AsLdrSrv.exe
() C:\Program Files (x86)\PHotkey\GFNEXSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Pegatron Corporation) C:\Program Files (x86)\PHotkey\PHotkey.exe
() C:\Program Files (x86)\PHotkey\MsgTranAgt.exe
() C:\Program Files (x86)\PHotkey\MsgTranAgt64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
(DATEV e.G.) C:\DATEV\PROGRAMM\B0001364\DtvScSer.exe
(Intel Corporation) C:\Windows\system32\igfxtray.exe
(Intel Corporation) C:\Windows\system32\hkcmd.exe
(Intel Corporation) C:\Windows\system32\igfxpers.exe
(Sentelic Corporation) C:\Program Files\FSP\FspUip.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000398\SiPaHost.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000150\ScWTS\DVCCSAWTSSetEntryNTE.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardManager.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0001442\PSNTServ.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000150\ScServer\DVckService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(KOBIL Systems GmbH) C:\DATEV\PROGRAMM\B0000404\msdisrv.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardService.exe
(Datev eG) C:\DATEV\PROGRAMM\B0000398\SiPaHostService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(DATEV eG) C:\DATEV\PROGRAMM\B0001363\SCmIdentityScanner.exe
() C:\Program Files (x86)\PHotkey\PVDesktop.exe
() C:\Program Files (x86)\PHotkey\PVDAgent.exe
(Pegatron Corporation) C:\Program Files (x86)\PHotkey\MsOsd.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant systems, Inc.)
HKLM\...\Run: [fspuip] => C:\Program Files\FSP\fspuip.exe [4055552 2010-11-08] (Sentelic Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2462536 2014-10-16] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [NUSB3MON] => c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SiPaHost] => C:\DATEV\PROGRAMM\B0000398\SiPaHost.exe [595552 2011-05-09] (DATEV eG)
HKLM-x32\...\Run: [DVCCSAWTSSetEntryNTE] => C:\DATEV\PROGRAMM\B0000150\ScWTS\DVCCSAWTSSetEntryNTE.exe [549472 2011-06-28] (DATEV eG)
HKLM-x32\...\Run: [DATEV_SCardMan] => C:\DATEV\PROGRAMM\B0000347\ScMgmt\ScardManager.exe [368736 2010-09-22] (DATEV eG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-09-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\windows\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3339000988-519491333-1609533031-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-3339000988-519491333-1609533031-1001\...\MountPoints2: {0d5005de-c59d-11e0-b64c-e0699560c4f9} - F:\SETUP.EXE
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\windows\System32\SPReview\SPReview.exe [301568 2013-09-04] (Microsoft Corporation)
AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [156840 2014-10-16] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SkyUserDevmode-Update.lnk
ShortcutTarget: SkyUserDevmode-Update.lnk -> C:\DATEV\PROGRAMM\B0001401\UpdateDevmode.exe (DATEV eG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS PC Sound.lnk
ShortcutTarget: SRS PC Sound.lnk -> C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe (SRS Labs, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi.msn.com
BHO: DtvIePwdSafeBHO64 Class -> {557F4852-8868-44dd-B5E9-9890AC4B1FD5} -> C:\DATEV\PROGRAMM\B0000397\DtvIePwdSafe64.dll (DATEV eG)
BHO: No Name -> {6EF6B546-25FB-455B-801F-FDB3B3D39F9E} ->  No File
BHO: SCardBHOEvent Class -> {AF8CD625-E04A-4A8F-A90A-0C74846C2E30} -> C:\DATEV\SYSTEM\DVCCSASCardBHO64002.Dll (DATEV eG)
BHO-x32: No Name -> {557F4852-8868-44dd-B5E9-9890AC4B1FD5} ->  No File
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
BHO-x32: DtvIePwdSafeBHO Class -> {6EF6B546-25FB-455B-801F-FDB3B3D39F9E} -> C:\DATEV\PROGRAMM\B0000397\DtvIePwdSafe.dll (DATEV eG)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: SCardBHOEvent Class -> {AF8CD625-E04A-4A8F-A90A-0C74846C2E30} -> C:\DATEV\SYSTEM\DVCCSAScardBHO002.dll (DATEV eG)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: Avira Browser Safety - C:\Users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default\Extensions\abs@avira.com [2014-10-31]

Chrome: 
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 ASLDRService; C:\Program Files (x86)\PHotkey\ASLDRSrv.exe [104968 2010-12-10] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 DATEV Logon Service; C:\DATEV\PROGRAMM\B0001364\DtvScSer.exe [511072 2010-09-08] (DATEV e.G.)
S3 DATEV Update-Service; C:\DATEV\PROGRAMM\INSTALL\DvInesASDSvc.Exe [172640 2011-07-25] (DATEV eG)
S3 Datev.Database.Conserve; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S2 Datev.Framework.RemoteServiceModel.EnablerService; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S3 Datev.Framework.RemoteServices; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
S3 Datev.Framework.RemoteServices.Messaging.CentralMessagingService; C:\DATEV\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe [10848 2011-09-01] (DATEV eG)
R2 DatevPrintService; C:\DATEV\PROGRAMM\B0001442\PSNTSERV.EXE [79872 2011-12-09] (DATEV eG) [File not signed]
R2 DVckService; C:\DATEV\PROGRAMM\B0000150\ScServer\DVckService.exe [2409056 2011-06-28] (DATEV eG)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-16] (NVIDIA Corporation)
R2 GFNEXSrv; C:\Program Files (x86)\PHotkey\GFNEXSrv.exe [159752 2010-12-10] ()
R2 KOBIL_MSDI; C:\DATEV\PROGRAMM\B0000404\msdisrv.exe [194144 2010-08-25] (KOBIL Systems GmbH)
R2 msftesql$DATEV_CL_DE01; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe [91992 2010-03-26] (Microsoft Corporation)
R2 MSSQL$DATEV_CL_DE01; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-16] (NVIDIA Corporation)
R2 SCardService; C:\DATEV\PROGRAMM\B0000347\ScMgmt\SCardService.exe [292960 2010-09-22] (DATEV eG)
R2 Sicherheitspaket-Dienst; C:\DATEV\PROGRAMM\B0000398\SiPaHostService.exe [271456 2011-05-09] (Datev eG)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-09-24] (Avira Operations GmbH & Co. KG)
S3 FARMNTIO; c:\windows\system32\drivers\farmntio.sys [24152 2010-06-03] ()
S3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-01] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-10-16] (NVIDIA Corporation)
R2 PEGAGFN; C:\Program Files (x86)\PHotkey\PEGAGFN.sys [14344 2010-12-10] (PEGATRON)
R2 SC_SERV3D; C:\windows\system32\drivers\d3_kafm.sys [82488 2011-07-19] (Datev eG)
U0 dmboot; No ImagePath
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
S3 MGHwCtrl; \??\c:\Utility\Silent\MGHwCtrl.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-07 16:56 - 2014-11-07 16:58 - 00014462 _____ () C:\Users\M\Desktop\FRST.txt
2014-11-07 16:52 - 2014-11-07 16:52 - 02114560 _____ (Farbar) C:\Users\M\Desktop\FRST64.exe
2014-11-07 16:13 - 2014-11-07 16:14 - 16226500 _____ () C:\Users\M\Downloads\FoodStoragev2.rar
2014-11-07 15:30 - 2014-11-07 16:56 - 00000000 ____D () C:\FRST
2014-11-04 19:54 - 2014-11-04 19:54 - 00000000 ____D () C:\Users\M\Desktop\savegame2
2014-11-04 19:54 - 2014-11-04 19:54 - 00000000 ____D () C:\Users\M\Desktop\savegame1
2014-11-02 11:19 - 2014-11-02 11:19 - 00000000 ____D () C:\Users\M\Downloads\Leeremap_ls15
2014-11-02 11:17 - 2014-11-02 11:18 - 74449341 _____ () C:\Users\M\Downloads\Leeremap_ls15.zip
2014-11-01 22:40 - 2014-11-01 22:40 - 00000000 ____D () C:\Users\M\AppData\Local\GIANTSPackageRegistry
2014-11-01 22:40 - 2014-11-01 22:40 - 00000000 ____D () C:\Users\M\AppData\Local\GIANTS Editor 64bit 6.0.2
2014-11-01 14:32 - 2014-09-19 02:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-11-01 14:32 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-11-01 14:32 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-11-01 14:32 - 2014-07-08 23:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-11-01 14:32 - 2014-07-08 23:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-11-01 12:42 - 2014-11-01 12:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2014-11-01 12:42 - 2014-11-01 12:42 - 00000000 ____D () C:\Program Files (x86)\Geeks3D
2014-11-01 12:41 - 2014-11-01 12:41 - 00000000 ____D () C:\Users\M\Documents\CoreTemp64
2014-11-01 12:28 - 2014-11-01 12:28 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-01 12:28 - 2014-11-01 12:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-11-01 12:28 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-11-01 12:28 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-11-01 12:28 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-11-01 12:22 - 2014-07-22 10:00 - 04059136 _____ (Qualcomm Atheros Communications, Inc.) C:\windows\system32\Drivers\athrx.sys
2014-11-01 11:48 - 2014-11-01 11:48 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Samsung
2014-11-01 11:41 - 2014-11-01 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaninchen-Schau 3.3
2014-11-01 11:37 - 2014-11-01 11:37 - 00000000 __SHD () C:\Users\M\AppData\Local\EmieUserList
2014-11-01 11:37 - 2014-11-01 11:37 - 00000000 __SHD () C:\Users\M\AppData\Local\EmieSiteList
2014-11-01 02:26 - 2014-11-01 02:26 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-11-01 02:16 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2014-11-01 02:16 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2014-11-01 02:16 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2014-11-01 02:16 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2014-11-01 01:04 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-11-01 01:04 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-11-01 00:57 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-11-01 00:57 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-11-01 00:57 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-11-01 00:57 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-11-01 00:57 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-11-01 00:57 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-11-01 00:57 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-11-01 00:57 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-11-01 00:55 - 2014-11-01 00:55 - 00007627 _____ () C:\Users\M\AppData\Local\Resmon.ResmonCfg
2014-10-31 23:59 - 2014-11-01 00:02 - 294205928 _____ (GIANTS Software ) C:\Users\M\Downloads\FarmingSimulator2015Patch1.1DE.exe
2014-10-31 23:48 - 2014-10-31 23:48 - 00000000 ____D () C:\Users\M\AppData\Roaming\NVIDIA
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\Users\M\AppData\Roaming\Avira
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\ProgramData\Mozilla
2014-10-31 23:42 - 2014-10-31 23:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-31 23:41 - 2014-10-31 23:43 - 00000000 ____D () C:\Users\M\AppData\Local\NVIDIA
2014-10-31 23:41 - 2014-10-31 23:42 - 00000000 ____D () C:\Users\M\AppData\Local\NVIDIA Corporation
2014-10-31 23:41 - 2014-10-31 23:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-10-31 23:41 - 2014-10-16 17:54 - 02800296 _____ (NVIDIA Corporation) C:\windows\system32\nvspcap64.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 02197680 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvspcap.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 01715224 _____ (NVIDIA Corporation) C:\windows\system32\nvspbridge64.dll
2014-10-31 23:41 - 2014-10-16 17:54 - 01291280 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvspbridge.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\windows\system32\d3dx11_43.dll
2014-10-31 23:41 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx11_43.dll
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\windows\SysWOW64\NV
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\windows\system32\NV
2014-10-31 23:40 - 2014-10-31 23:40 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-10-31 23:39 - 2014-10-31 23:37 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avnetflt.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 31890064 _____ (NVIDIA Corporation) C:\windows\system32\nvoglv64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 24555840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglv32.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 20968040 _____ (NVIDIA Corporation) C:\windows\system32\nvwgf2umx.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 20922696 _____ (NVIDIA Corporation) C:\windows\system32\nvcompiler.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 19966856 _____ (NVIDIA Corporation) C:\windows\system32\nvd3dumx.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 18499648 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvwgf2um.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 17260864 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcompiler.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 16886168 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvd3dum.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 14029400 _____ (NVIDIA Corporation) C:\windows\system32\nvopencl.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 13942368 _____ (NVIDIA Corporation) C:\windows\system32\nvcuda.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 13190288 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvlddmkm.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 11395672 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvopencl.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 11333848 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuda.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 04289856 _____ (NVIDIA Corporation) C:\windows\system32\nvcuvid.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 04009672 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuvid.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 01876296 _____ (NVIDIA Corporation) C:\windows\system32\nvdispco6434448.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 01539272 _____ (NVIDIA Corporation) C:\windows\system32\nvdispgenco6434448.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00962376 _____ (NVIDIA Corporation) C:\windows\system32\NvIFR64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00931984 _____ (NVIDIA Corporation) C:\windows\system32\NvFBC64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00921928 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvIFR.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00895176 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvFBC.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00352016 _____ (NVIDIA Corporation) C:\windows\system32\nvoglshim64.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00303600 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvoglshim32.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00038048 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 00034976 _____ (NVIDIA Corporation) C:\windows\system32\nvaudcap64v.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00032416 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll
2014-10-31 23:36 - 2014-10-16 17:54 - 00030408 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvpciflt.sys
2014-10-31 23:36 - 2014-10-16 17:54 - 00027024 _____ () C:\windows\system32\nvinfo.pb
2014-10-31 23:36 - 2014-09-24 12:44 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avipbb.sys
2014-10-31 23:36 - 2014-09-24 12:44 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avgntflt.sys
2014-10-31 23:36 - 2014-09-24 12:44 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avkmgr.sys
2014-10-31 23:35 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\windows\system32\IEUDINIT.EXE
2014-10-31 23:34 - 2014-10-31 23:34 - 00000000 ____D () C:\NVIDIA
2014-10-31 23:32 - 2014-10-31 23:32 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-31 23:32 - 2014-10-31 23:32 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-31 23:32 - 2014-10-31 23:32 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-31 23:32 - 2014-10-31 23:32 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-31 23:32 - 2014-10-31 23:32 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-10-31 23:32 - 2014-10-31 23:32 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-10-31 23:32 - 2014-10-31 23:32 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-10-31 23:32 - 2014-10-31 23:32 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-10-31 23:32 - 2014-10-31 23:32 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-10-31 23:32 - 2014-10-31 23:32 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-10-31 23:32 - 2014-10-31 23:32 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-10-31 23:32 - 2014-10-31 23:32 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-10-31 23:32 - 2014-10-31 23:32 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\ProgramData\Avira
2014-10-31 23:30 - 2014-10-31 23:36 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-10-31 23:30 - 2014-10-31 23:30 - 04583464 _____ (Avira Operations GmbH & Co. KG) C:\Users\M\Downloads\avira_de_av___ws.exe
2014-10-31 23:30 - 2014-10-31 23:30 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00619520 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2014-10-31 23:30 - 2014-10-31 23:30 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-31 23:29 - 2014-10-31 23:34 - 306270552 _____ (NVIDIA Corporation) C:\Users\M\Downloads\344.48-notebook-win8-win7-64bit-international-whql.exe
2014-10-31 23:28 - 2014-10-31 23:35 - 00012001 _____ () C:\windows\IE11_main.log
2014-10-31 23:28 - 2014-10-31 23:28 - 02077392 _____ (Microsoft Corporation) C:\Users\M\Downloads\IE11-Windows6.1.exe
2014-10-31 19:29 - 2014-09-29 01:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-31 19:29 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-31 19:29 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-31 19:29 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-31 19:29 - 2014-04-25 03:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2014-10-31 19:29 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2014-10-31 19:29 - 2014-04-05 03:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2014-10-31 19:29 - 2014-04-05 03:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2014-10-31 19:29 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2014-10-31 19:29 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2014-10-31 19:29 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2014-10-31 19:29 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2014-10-31 19:29 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2014-10-31 19:29 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2014-10-31 19:29 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\windows\system32\msieftp.dll
2014-10-31 19:29 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msieftp.dll
2014-10-31 19:29 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll
2014-10-31 19:29 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll
2014-10-31 19:29 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2014-10-31 19:29 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2014-10-31 19:29 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2014-10-31 19:29 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2014-10-31 19:28 - 2014-10-10 03:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-31 19:28 - 2014-10-10 03:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-31 19:28 - 2014-10-10 03:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-31 19:28 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-31 19:28 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-31 19:28 - 2014-06-18 03:18 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\osk.exe
2014-10-31 19:28 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe
2014-10-31 19:28 - 2014-06-06 11:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-10-31 19:28 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-10-31 19:28 - 2014-05-30 07:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2014-10-31 19:28 - 2014-03-26 15:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2014-10-31 19:28 - 2014-03-26 15:44 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-10-31 19:28 - 2014-03-26 15:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2014-10-31 19:28 - 2014-03-26 15:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-10-31 19:28 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2014-10-31 19:28 - 2014-03-26 15:27 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-10-31 19:28 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2014-10-31 19:28 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\windows\system32\secproc.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\windows\system32\secproc_isv.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp_isv.dll
2014-10-31 19:28 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp.dll
2014-10-31 19:28 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\windows\system32\msdrm.dll
2014-10-31 19:28 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_isv.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\windows\system32\RMActivate.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp.exe
2014-10-31 19:28 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp_isv.exe
2014-10-31 19:28 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_isv.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp_isv.dll
2014-10-31 19:28 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp.dll
2014-10-31 19:28 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdrm.dll
2014-10-31 19:28 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_isv.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp.exe
2014-10-31 19:28 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp_isv.exe
2014-10-31 19:28 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2014-10-31 19:28 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2014-10-31 19:28 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2014-10-31 19:28 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\credui.dll
2014-10-31 19:28 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\drmk.sys
2014-10-31 19:28 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\windows\SysWOW64\SmartcardCredentialProvider.dll
2014-10-31 19:28 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\credui.dll
2014-10-31 19:28 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\portcls.sys
2014-10-31 19:28 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2014-10-31 19:28 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2014-10-31 19:28 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2014-10-31 19:28 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2014-10-31 19:28 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebClnt.dll
2014-10-31 19:28 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\davclnt.dll
2014-10-31 19:28 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2014-10-31 19:28 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbscan.sys
2014-10-31 19:28 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2014-10-31 19:28 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2014-10-31 19:28 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2014-10-31 19:28 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2014-10-31 19:28 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2014-10-31 19:28 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2014-10-31 19:28 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2014-10-31 19:28 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2014-10-31 19:28 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2014-10-31 19:28 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2014-10-31 19:28 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2014-10-31 19:28 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2014-10-31 19:28 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2014-10-31 19:27 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-31 19:27 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-31 19:27 - 2014-09-18 03:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-31 19:27 - 2014-09-18 02:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-31 19:27 - 2014-06-16 03:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-10-31 19:27 - 2014-06-03 11:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-10-31 19:27 - 2014-06-03 11:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-10-31 19:27 - 2014-06-03 11:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-10-31 19:27 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-10-31 19:27 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-10-31 19:27 - 2014-03-04 10:47 - 05550016 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2014-10-31 19:27 - 2014-03-04 10:44 - 00722944 _____ (Microsoft Corporation) C:\windows\system32\objsel.dll
2014-10-31 19:27 - 2014-03-04 10:44 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2014-10-31 19:27 - 2014-03-04 10:44 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\wincredprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\cngprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\adprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\capiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00052736 _____ (Microsoft Corporation) C:\windows\system32\dpapiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:43 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\dimsroam.dll
2014-10-31 19:27 - 2014-03-04 10:20 - 03969984 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2014-10-31 19:27 - 2014-03-04 10:20 - 03914176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2014-10-31 19:27 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\windows\SysWOW64\objsel.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\cngprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\adprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\capiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpapiprovider.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\dimsroam.dll
2014-10-31 19:27 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincredprovider.dll
2014-10-31 19:27 - 2014-03-04 10:16 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2014-10-31 19:27 - 2014-02-04 03:35 - 00274880 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msiscsi.sys
2014-10-31 19:27 - 2014-02-04 03:35 - 00190912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys
2014-10-31 19:27 - 2014-02-04 03:35 - 00027584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Diskdump.sys
2014-10-31 19:27 - 2014-02-04 03:28 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\iologmsg.dll
2014-10-31 19:27 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\iologmsg.dll
2014-10-31 19:27 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2014-10-31 19:27 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2014-10-31 19:27 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2014-10-31 19:27 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2014-10-31 19:27 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2014-10-31 19:27 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2014-10-31 19:26 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-10-31 19:26 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-10-31 19:26 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-31 19:26 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 03722240 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 01118720 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2014-10-31 19:26 - 2014-07-17 03:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-31 19:26 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-31 19:26 - 2014-07-17 03:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-31 19:26 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 03221504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2014-10-31 19:26 - 2014-07-17 02:39 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-31 19:26 - 2014-07-17 02:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-31 19:26 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-31 19:26 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-31 19:26 - 2014-07-07 03:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-31 19:26 - 2014-07-07 03:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-31 19:26 - 2014-07-07 02:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-31 19:26 - 2014-07-07 02:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-31 19:26 - 2014-07-07 02:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-31 19:26 - 2014-06-25 03:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-10-31 19:26 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-10-31 19:26 - 2014-05-30 09:08 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2014-10-31 19:26 - 2014-05-30 08:52 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2014-10-31 19:26 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-31 19:26 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-31 19:25 - 2014-09-13 02:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-31 19:25 - 2014-09-13 02:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-31 19:25 - 2014-08-23 03:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-10-31 19:25 - 2014-08-23 02:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-10-31 19:25 - 2014-04-12 03:22 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2014-10-31 19:25 - 2014-04-12 03:22 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2014-10-31 19:25 - 2014-04-12 03:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2014-10-31 19:25 - 2014-04-12 03:19 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2014-10-31 19:25 - 2014-04-12 03:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2014-10-31 19:25 - 2014-04-12 03:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 01163264 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2014-10-31 19:25 - 2014-03-04 10:44 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2014-10-31 19:25 - 2014-03-04 10:17 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2014-10-31 19:25 - 2014-03-04 10:16 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2014-10-31 19:25 - 2014-03-04 10:16 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2014-10-31 19:25 - 2014-03-04 10:16 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2014-10-31 19:25 - 2014-03-04 09:09 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2014-10-31 19:25 - 2014-03-04 09:09 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2014-10-31 19:25 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-10-31 19:25 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-10-31 19:25 - 2014-01-24 03:37 - 01684928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2014-10-31 19:25 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\windows\system32\wshom.ocx
2014-10-31 19:25 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\windows\system32\scrrun.dll
2014-10-31 19:25 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2014-10-31 19:25 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2014-10-31 19:25 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2014-10-31 19:25 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshom.ocx
2014-10-31 19:25 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2014-10-31 19:25 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrrun.dll
2014-10-31 19:25 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2014-10-31 19:25 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\wscript.exe
2014-10-31 19:25 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\windows\system32\cscript.exe
2014-10-31 19:25 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscript.exe
2014-10-31 19:25 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscript.exe
2014-10-31 19:25 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2014-10-31 19:25 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-10-31 19:25 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-10-31 19:25 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2014-10-31 19:24 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2014-10-31 19:20 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys
2014-10-31 19:18 - 2014-10-31 19:18 - 00000000 ____D () C:\Users\M\Documents\My Games
2014-10-31 19:17 - 2014-07-14 03:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-10-31 19:17 - 2014-07-14 02:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-10-31 19:13 - 2014-11-07 16:43 - 00001289 _____ () C:\Users\M\Desktop\Landwirtschafts Simulator 15 .lnk
2014-10-31 19:13 - 2014-11-07 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Landwirtschafts Simulator 2015
2014-10-31 19:13 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_7.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_7.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_5.dll
2014-10-31 19:13 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_5.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_43.dll
2014-10-31 19:13 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_43.dll
2014-10-31 19:13 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_7.dll
2014-10-31 19:13 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_7.dll
2014-10-31 19:13 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\windows\system32\xinput1_3.dll
2014-10-31 19:13 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\windows\SysWOW64\xinput1_3.dll
2014-10-31 19:12 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2014-10-31 19:12 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll
2014-10-31 19:08 - 2014-11-07 16:48 - 00000000 ____D () C:\Program Files (x86)\Landwirtschafts Simulator 2015
2014-10-31 19:03 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-10-31 19:03 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-10-31 19:03 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-10-31 19:03 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-10-31 19:03 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-10-31 19:03 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-10-31 19:03 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-10-31 19:03 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-10-31 19:03 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-10-31 19:03 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-07 16:54 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-07 16:54 - 2009-07-14 05:51 - 00048603 _____ () C:\windows\setupact.log
2014-11-07 16:54 - 2009-07-14 05:45 - 00015360 _____ () C:\windows\system32\umstartup.etl
2014-11-07 16:43 - 2011-08-02 12:48 - 00032198 _____ () C:\windows\DirectX.log
2014-11-07 15:05 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\rescache
2014-11-07 15:00 - 2011-03-24 05:03 - 01493862 _____ () C:\windows\WindowsUpdate.log
2014-11-07 14:42 - 2009-07-14 05:45 - 00018512 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-07 14:42 - 2009-07-14 05:45 - 00018512 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-07 14:34 - 2009-07-14 05:45 - 00021504 _____ () C:\windows\system32\umstartup000.etl
2014-11-02 10:08 - 2011-03-24 04:44 - 00808452 _____ () C:\windows\system32\perfh007.dat
2014-11-02 10:08 - 2011-03-24 04:44 - 00191860 _____ () C:\windows\system32\perfc007.dat
2014-11-02 10:08 - 2009-07-14 06:13 - 01899360 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-02 10:00 - 2009-07-14 05:45 - 00412576 _____ () C:\windows\system32\FNTCACHE.DAT
2014-11-01 22:55 - 2012-02-23 10:13 - 00000000 ____D () C:\Users\M\AppData\Local\CrashDumps
2014-11-01 21:36 - 2012-02-23 10:30 - 01873640 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-11-01 12:46 - 2011-08-03 08:38 - 00562718 _____ () C:\windows\PFRO.log
2014-11-01 12:18 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\NDF
2014-11-01 11:51 - 2011-03-24 05:44 - 00021416 _____ () C:\windows\DPINST.LOG
2014-11-01 11:50 - 2011-03-24 05:42 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-01 11:49 - 2011-08-02 12:52 - 00001058 __RSH () C:\windows\system32\VFsRegister
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\Users\M\AppData\Roaming\Samsung
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\ProgramData\Samsung
2014-11-01 11:48 - 2013-08-29 13:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2014-11-01 11:46 - 2011-03-24 05:54 - 00000000 ____D () C:\Program Files (x86)\msi
2014-11-01 11:46 - 2011-03-24 05:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2014-11-01 11:45 - 2012-02-23 11:36 - 00000107 _____ () C:\windows\KurusDeinstall.INI
2014-11-01 11:41 - 2011-08-13 13:18 - 00000000 ____D () C:\Kaninchen
2014-11-01 11:32 - 2011-08-02 12:56 - 00001431 _____ () C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-01 02:26 - 2009-07-14 08:45 - 00000000 ____D () C:\Program Files\Windows Journal
2014-11-01 02:26 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2014-11-01 02:26 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\system32\Dism
2014-11-01 02:25 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-11-01 01:02 - 2013-09-04 14:29 - 00000000 ____D () C:\windows\system32\MRT
2014-10-31 23:42 - 2011-08-13 13:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-31 23:42 - 2011-03-24 05:36 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-31 23:41 - 2011-03-24 05:36 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-31 23:41 - 2011-03-24 05:36 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-31 23:40 - 2011-03-24 05:37 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-31 18:57 - 2011-08-14 15:27 - 00000000 ____D () C:\Users\M\Tracing
2014-10-28 06:34 - 2011-08-13 12:29 - 00275080 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2014-10-16 17:54 - 2011-03-24 05:36 - 03237528 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 02849224 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvapi.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00987008 _____ (NVIDIA Corporation) C:\windows\system32\nvumdshimx.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00870112 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvumdshim.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00174856 _____ (NVIDIA Corporation) C:\windows\system32\nvinitx.dll
2014-10-16 17:54 - 2011-03-24 05:36 - 00156840 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvinit.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 06883136 _____ (NVIDIA Corporation) C:\windows\system32\nvcpl.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 03533632 _____ (NVIDIA Corporation) C:\windows\system32\nvsvc64.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 02559808 _____ (NVIDIA Corporation) C:\windows\system32\nvsvcr.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 01089736 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshext.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00933064 _____ (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
2014-10-16 15:11 - 2010-12-24 04:10 - 00384200 _____ (NVIDIA Corporation) C:\windows\system32\nvmctray.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00067072 _____ (NVIDIA Corporation) C:\windows\system32\nv3dappshextr.dll
2014-10-16 15:11 - 2010-12-24 04:10 - 00061640 _____ (NVIDIA Corporation) C:\windows\system32\nvshext.dll
2014-10-15 01:48 - 2010-12-24 04:10 - 04047877 _____ () C:\windows\system32\nvcoproc.bin

Some content of TEMP:
====================
C:\Users\M\AppData\Local\Temp\avgnt.exe
C:\Users\M\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe
C:\Users\M\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih_1.exe
C:\Users\M\AppData\Local\Temp\MSNC40B.exe
C:\Users\M\AppData\Local\Temp\Nv3DVStreaming.dll
C:\Users\M\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\M\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\M\AppData\Local\Temp\nvStInst.exe
C:\Users\M\AppData\Local\Temp\ose00000.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-05 20:38

==================== End Of Log ============================
         
--- --- ---

--- --- ---


Alt 07.11.2014, 17:03   #6
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Zitat:
Zitat von Murdok1983 Beitrag anzeigen
Naja bin halt n NOOB
Ist das auch deine Antwort auf meine Frage?
__________________
--> Weißer Bildschirm nach Start bei Win7 auf Laptop

Alt 07.11.2014, 17:12   #7
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Die Schnelligkeit ist gleich ... bloß auch im abgesicherten Modus gibt es den weißen Bildschirm ... komme nur wenn ich zu anfang f8 drücke über den debug Modus ohne weißen Bildschirm rein

Alt 07.11.2014, 17:20   #8
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Servus,


wenn möglich, ComboFix im normalen Modus ausführen. Wenn das nicht funktioniert, dann bitte im abgesicherten Modus mit Netzwerkunterstützung:

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
Grüße aus Bayern
M-K-D-B

______________________________________

Das Trojaner-Board unterstützen

Alt 07.11.2014, 17:42   #9
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Code:
ATTFilter
ComboFix 14-11-03.01 - M 07.11.2014  17:28:32.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.4008.2342 [GMT 1:00]
ausgeführt von:: c:\users\M\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Desktop *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Neuer Wiederherstellungspunkt wurde erstellt
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\M\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
c:\users\M\AppData\Local\Temp\EDD7.tmp
.
.
(((((((((((((((((((((((   Dateien erstellt von 2014-10-07 bis 2014-11-07  ))))))))))))))))))))))))))))))
.
.
2014-11-07 16:16 . 2014-11-07 16:20	--------	d-----w-	c:\program files (x86)\Landwirtschafts Simulator 2015
2014-11-07 14:30 . 2014-11-07 15:59	--------	d-----w-	C:\FRST
2014-11-01 21:40 . 2014-11-01 21:40	--------	d-----w-	c:\users\M\AppData\Local\GIANTS Editor 64bit 6.0.2
2014-11-01 21:40 . 2014-11-01 21:40	--------	d-----w-	c:\users\M\AppData\Local\GIANTSPackageRegistry
2014-11-01 13:32 . 2014-07-09 02:03	7168	----a-w-	c:\windows\system32\KBDYAK.DLL
2014-11-01 13:32 . 2014-07-09 02:03	7168	----a-w-	c:\windows\system32\KBDTAT.DLL
2014-11-01 13:32 . 2014-07-09 02:03	7168	----a-w-	c:\windows\system32\KBDRU1.DLL
2014-11-01 13:32 . 2014-07-09 02:03	6656	----a-w-	c:\windows\system32\KBDRU.DLL
2014-11-01 13:32 . 2014-07-09 02:03	7168	----a-w-	c:\windows\system32\KBDBASH.DLL
2014-11-01 13:32 . 2014-07-09 01:31	7168	----a-w-	c:\windows\SysWow64\KBDYAK.DLL
2014-11-01 13:32 . 2014-07-09 01:31	6656	----a-w-	c:\windows\SysWow64\KBDBASH.DLL
2014-11-01 13:32 . 2014-09-19 01:18	940032	----a-w-	c:\windows\system32\MsSpellCheckingFacility.exe
2014-11-01 11:42 . 2014-11-01 11:42	--------	d-----w-	c:\program files (x86)\Geeks3D
2014-11-01 11:28 . 2014-11-01 11:28	129752	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-11-01 11:28 . 2014-10-01 10:11	63704	----a-w-	c:\windows\system32\drivers\mwac.sys
2014-11-01 11:28 . 2014-10-01 10:11	93400	----a-w-	c:\windows\system32\drivers\mbamchameleon.sys
2014-11-01 11:28 . 2014-10-01 10:11	25816	----a-w-	c:\windows\system32\drivers\mbam.sys
2014-11-01 11:28 . 2014-11-01 11:28	--------	d-----w-	c:\program files (x86)\ Malwarebytes Anti-Malware 
2014-11-01 11:28 . 2014-11-01 11:28	--------	d-----w-	c:\programdata\Malwarebytes
2014-11-01 11:22 . 2014-07-22 09:00	4059136	----a-w-	c:\windows\system32\drivers\athrx.sys
2014-11-01 10:48 . 2014-11-01 10:48	--------	d-----w-	c:\users\UpdatusUser
2014-11-01 10:37 . 2014-11-01 10:37	--------	d-sh--w-	c:\users\M\AppData\Local\EmieUserList
2014-11-01 10:37 . 2014-11-01 10:37	--------	d-sh--w-	c:\users\M\AppData\Local\EmieSiteList
2014-11-01 01:26 . 2014-11-01 01:26	--------	d-s---w-	c:\windows\system32\CompatTel
2014-11-01 01:16 . 2013-05-10 04:30	167424	----a-w-	c:\program files\Windows Media Player\wmplayer.exe
2014-11-01 01:16 . 2013-05-10 03:48	164864	----a-w-	c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-11-01 01:16 . 2013-05-10 05:56	12625920	----a-w-	c:\windows\system32\wmploc.DLL
2014-11-01 01:16 . 2013-05-10 04:56	12625408	----a-w-	c:\windows\SysWow64\wmploc.DLL
2014-11-01 01:16 . 2013-05-10 05:56	14631424	----a-w-	c:\windows\system32\wmp.dll
2014-11-01 01:09 . 2014-11-01 01:09	--------	d-----w-	c:\windows\Migration
2014-11-01 00:04 . 2014-06-27 02:08	2777088	----a-w-	c:\windows\system32\msmpeg2vdec.dll
2014-11-01 00:04 . 2014-06-27 01:45	2285056	----a-w-	c:\windows\SysWow64\msmpeg2vdec.dll
2014-10-31 23:57 . 2014-03-09 21:48	171160	----a-w-	c:\windows\system32\infocardapi.dll
2014-10-31 23:57 . 2014-03-09 21:48	1389208	----a-w-	c:\windows\system32\icardagt.exe
2014-10-31 23:57 . 2014-03-09 21:47	99480	----a-w-	c:\windows\SysWow64\infocardapi.dll
2014-10-31 23:57 . 2014-03-09 21:47	619672	----a-w-	c:\windows\SysWow64\icardagt.exe
2014-10-31 23:57 . 2014-06-30 22:24	8856	----a-w-	c:\windows\system32\icardres.dll
2014-10-31 23:57 . 2014-06-30 22:14	8856	----a-w-	c:\windows\SysWow64\icardres.dll
2014-10-31 23:57 . 2014-06-06 06:16	35480	----a-w-	c:\windows\SysWow64\TsWpfWrp.exe
2014-10-31 23:57 . 2014-06-06 06:12	35480	----a-w-	c:\windows\system32\TsWpfWrp.exe
2014-10-31 22:48 . 2014-10-31 22:48	--------	d-----w-	c:\users\M\AppData\Roaming\NVIDIA
2014-10-31 22:42 . 2014-10-31 22:42	--------	d-----w-	c:\users\M\AppData\Roaming\Avira
2014-10-31 22:42 . 2014-10-31 22:42	--------	d-----w-	c:\program files (x86)\Mozilla Maintenance Service
2014-10-31 22:42 . 2014-10-31 22:42	626688	----a-w-	c:\program files (x86)\Mozilla Firefox\msvcr80.dll
2014-10-31 22:42 . 2014-10-31 22:42	588728	----a-w-	c:\program files (x86)\Mozilla Firefox\gkmedias.dll
2014-10-31 22:42 . 2014-10-31 22:42	548864	----a-w-	c:\program files (x86)\Mozilla Firefox\msvcp80.dll
2014-10-31 22:42 . 2014-10-31 22:42	479232	----a-w-	c:\program files (x86)\Mozilla Firefox\msvcm80.dll
2014-10-31 22:40 . 2014-10-31 22:40	--------	d-----w-	c:\program files (x86)\AGEIA Technologies
2014-10-31 22:40 . 2014-10-31 22:40	--------	d-----w-	c:\windows\SysWow64\NV
2014-10-31 22:40 . 2014-10-31 22:40	--------	d-----w-	c:\windows\system32\NV
2014-10-31 22:39 . 2014-10-31 22:37	43064	----a-w-	c:\windows\system32\drivers\avnetflt.sys
2014-10-31 22:35 . 2013-10-14 17:00	28368	----a-w-	c:\windows\system32\IEUDINIT.EXE
2014-10-31 22:34 . 2014-10-31 22:34	--------	d-----w-	C:\NVIDIA
2014-10-31 22:30 . 2014-10-31 22:36	--------	d-----w-	c:\program files (x86)\Avira
2014-10-31 22:30 . 2014-10-31 22:36	--------	d-----w-	c:\programdata\Avira
2014-10-31 22:30 . 2014-10-31 22:30	--------	d-----w-	c:\programdata\Package Cache
2014-10-31 22:30 . 2014-10-31 22:30	878080	----a-w-	c:\windows\system32\advapi32.dll
2014-10-31 22:30 . 2014-10-31 22:30	859648	----a-w-	c:\windows\system32\tdh.dll
2014-10-31 22:30 . 2014-10-31 22:30	640512	----a-w-	c:\windows\SysWow64\advapi32.dll
2014-10-31 22:30 . 2014-10-31 22:30	619520	----a-w-	c:\windows\SysWow64\tdh.dll
2014-10-31 22:30 . 2014-10-31 22:30	1732032	----a-w-	c:\windows\system32\ntdll.dll
2014-10-31 22:30 . 2014-10-31 22:30	1292192	----a-w-	c:\windows\SysWow64\ntdll.dll
2014-10-31 22:30 . 2014-10-31 22:30	327168	----a-w-	c:\windows\system32\mswsock.dll
2014-10-31 22:30 . 2014-10-31 22:30	231424	----a-w-	c:\windows\SysWow64\mswsock.dll
2014-10-31 18:28 . 2014-03-26 14:44	2002432	----a-w-	c:\windows\system32\msxml6.dll
2014-10-31 18:27 . 2014-03-04 09:47	5550016	----a-w-	c:\windows\system32\ntoskrnl.exe
2014-10-31 18:26 . 2014-09-09 22:11	2048	----a-w-	c:\windows\system32\tzres.dll
2014-10-31 18:25 . 2014-03-04 09:44	1163264	----a-w-	c:\windows\system32\kernel32.dll
2014-10-31 18:24 . 2013-08-28 01:12	461312	----a-w-	c:\windows\system32\scavengeui.dll
2014-10-31 18:20 . 2013-08-05 02:25	155584	----a-w-	c:\windows\system32\drivers\ataport.sys
2014-10-31 18:17 . 2014-07-14 02:02	1216000	----a-w-	c:\windows\system32\rpcrt4.dll
2014-10-31 18:17 . 2014-07-14 01:40	664064	----a-w-	c:\windows\SysWow64\rpcrt4.dll
2014-10-31 18:13 . 2010-06-02 03:55	77656	----a-w-	c:\windows\system32\XAPOFX1_5.dll
2014-10-31 18:13 . 2010-06-02 03:55	74072	----a-w-	c:\windows\SysWow64\XAPOFX1_5.dll
2014-10-31 18:13 . 2010-06-02 03:55	527192	----a-w-	c:\windows\SysWow64\XAudio2_7.dll
2014-10-31 18:13 . 2010-06-02 03:55	518488	----a-w-	c:\windows\system32\XAudio2_7.dll
2014-10-31 18:13 . 2010-05-26 10:41	2526056	----a-w-	c:\windows\system32\D3DCompiler_43.dll
2014-10-31 18:13 . 2010-05-26 10:41	2106216	----a-w-	c:\windows\SysWow64\D3DCompiler_43.dll
2014-10-31 18:13 . 2010-05-26 10:41	1998168	----a-w-	c:\windows\SysWow64\D3DX9_43.dll
2014-10-31 18:13 . 2010-05-26 10:41	2401112	----a-w-	c:\windows\system32\D3DX9_43.dll
2014-10-31 18:13 . 2010-02-04 09:01	24920	----a-w-	c:\windows\system32\X3DAudio1_7.dll
2014-10-31 18:13 . 2010-02-04 09:01	22360	----a-w-	c:\windows\SysWow64\X3DAudio1_7.dll
2014-10-31 18:13 . 2007-04-04 17:54	107368	----a-w-	c:\windows\system32\xinput1_3.dll
2014-10-31 18:13 . 2007-04-04 17:53	81768	----a-w-	c:\windows\SysWow64\xinput1_3.dll
2014-10-31 18:12 . 2013-07-26 02:24	197120	----a-w-	c:\windows\system32\shdocvw.dll
2014-10-31 18:08 . 2014-10-20 02:37	11627712	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{EE6C3C2F-AA9D-4474-A01F-543A605B1A1A}\mpengine.dll
2014-10-31 18:06 . 2014-10-31 18:06	--------	d-----w-	c:\users\M\AppData\Local\Programs
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-10-28 05:34 . 2011-08-13 11:29	275080	------w-	c:\windows\system32\MpSigStub.exe
2014-10-16 16:54 . 2011-03-24 04:36	987008	----a-w-	c:\windows\system32\nvumdshimx.dll
2014-10-16 16:54 . 2011-03-24 04:36	870112	----a-w-	c:\windows\SysWow64\nvumdshim.dll
2014-10-16 16:54 . 2011-03-24 04:36	174856	----a-w-	c:\windows\system32\nvinitx.dll
2014-10-16 16:54 . 2011-03-24 04:36	156840	----a-w-	c:\windows\SysWow64\nvinit.dll
2014-10-16 16:54 . 2011-03-24 04:36	3237528	----a-w-	c:\windows\system32\nvapi64.dll
2014-10-16 16:54 . 2011-03-24 04:36	2849224	----a-w-	c:\windows\SysWow64\nvapi.dll
2014-10-16 14:11 . 2010-12-24 03:10	6883136	----a-w-	c:\windows\system32\nvcpl.dll
2014-10-16 14:11 . 2010-12-24 03:10	3533632	----a-w-	c:\windows\system32\nvsvc64.dll
2014-10-16 14:11 . 2010-12-24 03:10	933064	----a-w-	c:\windows\system32\nvvsvc.exe
2014-10-16 14:11 . 2010-12-24 03:10	61640	----a-w-	c:\windows\system32\nvshext.dll
2014-10-16 14:11 . 2010-12-24 03:10	384200	----a-w-	c:\windows\system32\nvmctray.dll
2014-10-16 14:11 . 2010-12-24 03:10	2559808	----a-w-	c:\windows\system32\nvsvcr.dll
2014-10-16 14:11 . 2010-12-24 03:10	67072	----a-w-	c:\windows\system32\nv3dappshextr.dll
2014-10-16 14:11 . 2010-12-24 03:10	1089736	----a-w-	c:\windows\system32\nv3dappshext.dll
2014-10-15 00:48 . 2010-12-24 03:10	4047877	----a-w-	c:\windows\system32\nvcoproc.bin
2014-10-03 09:02 . 2013-09-04 13:29	103265616	----a-w-	c:\windows\system32\MRT.exe
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM"="c:\programdata\FLEXnet\Connect\11\ISUSPM.exe" [2009-05-05 222496]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
"Nuance PDF Reader-reminder"="c:\program files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" [2008-11-03 328992]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SiPaHost"="c:\datev\PROGRAMM\B0000398\SiPaHost.exe" [2011-05-09 595552]
"DVCCSAWTSSetEntryNTE"="c:\datev\PROGRAMM\B0000150\ScWTS\DVCCSAWTSSetEntryNTE.exe" [2011-06-28 549472]
"DATEV_SCardMan"="c:\datev\PROGRAMM\B0000347\ScMgmt\ScardManager.exe" [2010-09-22 368736]
"Avira Systray"="c:\program files (x86)\Avira\My Avira\Avira.OE.Systray.exe" [2014-10-22 124208]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2014-09-24 703736]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
SkyUserDevmode-Update.lnk - c:\datev\PROGRAMM\B0001401\UpdateDevmode.exe [2011-7-29 27744]
SRS PC Sound.lnk - c:\program files\SRS Labs\SRS Control Panel\SRSPanel_64.exe /h [2011-1-14 1939800]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Userinit"="userinit.exe"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll c:\windows\SysWOW64\nvinit.dll
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 Datev.Framework.RemoteServiceModel.EnablerService;DATEV DFL-Service-Manager;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServiceModel.EnablerService -SvcRunLevel=9999;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServiceModel.EnablerService -SvcRunLevel=9999 [x]
R3 DATEV Update-Service;DATEV Update-Service;c:\datev\PROGRAMM\INSTALL\DvInesASDSvc.Exe;c:\datev\PROGRAMM\INSTALL\DvInesASDSvc.Exe [x]
R3 Datev.Database.Conserve;DATEV Connection Service;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Database.Conserve SvcRunLevel=1000;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Database.Conserve SvcRunLevel=1000 [x]
R3 Datev.Framework.RemoteServices.Messaging.CentralMessagingService;DATEV Messaging-Service;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServices.Messaging.CentralMessagingService -SvcRunLevel=1000;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServices.Messaging.CentralMessagingService -SvcRunLevel=1000 [x]
R3 Datev.Framework.RemoteServices;DATEV DFL Infrastruktur-Dienst;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServices -SvcRunLevel=1000;c:\datev\SYSTEM\Datev.Framework.RemoteServiceModel.GenericService2010.exe Datev.Framework.RemoteServices -SvcRunLevel=1000 [x]
R3 FARMNTIO;FARMNTIO;c:\windows\system32\drivers\farmntio.sys;c:\windows\SYSNATIVE\drivers\farmntio.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 MGHwCtrl;MGHwCtrl;c:\utility\Silent\MGHwCtrl.sys;c:\utility\Silent\MGHwCtrl.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 Avira.OE.ServiceHost;Avira Service Host;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [x]
S2 CxAudMsg;Conexant Audio Message Service;c:\windows\system32\CxAudMsg64.exe;c:\windows\SYSNATIVE\CxAudMsg64.exe [x]
S2 DATEV Logon Service;DATEV Logon Service;c:\datev\PROGRAMM\B0001364\DtvScSer.exe;c:\datev\PROGRAMM\B0001364\DtvScSer.exe [x]
S2 DatevPrintService;DATEV Druckservice;c:\datev\PROGRAMM\B0001442\PSNTSERV.EXE;c:\datev\PROGRAMM\B0001442\PSNTSERV.EXE [x]
S2 DVckService;DVckService;c:\datev\PROGRAMM\B0000150\ScServer\DVckService.exe;c:\datev\PROGRAMM\B0000150\ScServer\DVckService.exe [x]
S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
S2 GFNEXSrv;GFNEX Service;c:\program files (x86)\PHotkey\GFNEXSrv.exe;c:\program files (x86)\PHotkey\GFNEXSrv.exe [x]
S2 KOBIL_MSDI;KOBIL_MSDI;c:\datev\PROGRAMM\B0000404\msdisrv.exe;c:\datev\PROGRAMM\B0000404\msdisrv.exe [x]
S2 msftesql$DATEV_CL_DE01;SQL Server-Volltextsuche (DATEV_CL_DE01);c:\program files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe;c:\program files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe [x]
S2 MSSQL$DATEV_CL_DE01;SQL Server (DATEV_CL_DE01);c:\program files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe;c:\program files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 PEGAGFN;PEGAGFN;c:\program files (x86)\PHotkey\PEGAGFN.sys;c:\program files (x86)\PHotkey\PEGAGFN.sys [x]
S2 SC_SERV3D;SC_SERV3D;c:\windows\system32\drivers\d3_kafm.sys;c:\windows\SYSNATIVE\drivers\d3_kafm.sys [x]
S2 SCardService;DATEV SmartCard Service;c:\datev\PROGRAMM\B0000347\ScMgmt\SCardService.exe;c:\datev\PROGRAMM\B0000347\ScMgmt\SCardService.exe [x]
S2 Sicherheitspaket-Dienst;Sicherheitspaket-Dienst;c:\datev\PROGRAMM\B0000398\SiPaHostService.exe;c:\datev\PROGRAMM\B0000398\SiPaHostService.exe [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 acpials;ALS Sensor Filter;c:\windows\system32\DRIVERS\acpials.sys;c:\windows\SYSNATIVE\DRIVERS\acpials.sys [x]
S3 fspad_wlh64;Finger Sensing Pad Driver for Windows 2000/XP/Vista/Win7_wlh64;c:\windows\system32\DRIVERS\fspad_wlh64.sys;c:\windows\SYSNATIVE\DRIVERS\fspad_wlh64.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{557F4852-8868-44dd-B5E9-9890AC4B1FD5}]
2011-06-01 07:44	763488	------w-	c:\datev\PROGRAMM\B0000397\DtvIePwdSafe64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-12-20 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-12-20 391704]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-12-20 418328]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-12-14 316032]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-10-16 2462536]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-10-16 2800296]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\system32\nvinitx.dll
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.de/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default\
FF - ExtSQL: 2014-10-31 23:31; abs@avira.com; c:\users\M\AppData\Roaming\Mozilla\Firefox\Profiles\8w8it3yo.default\extensions\abs@avira.com
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
BHO-{557F4852-8868-44dd-B5E9-9890AC4B1FD5} - (no file)
Toolbar-Locked - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
HKLM-Run-fspuip - c:\program files (x86)\FSP\fspuip.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\msftesql$DATEV_CL_DE01]
"ImagePath"="\"c:\program files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\msftesql.exe\" -s:MSSQL.1 -f:DATEV_CL_DE01"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\program files (x86)\PHotkey\ASLDRSrv.exe
c:\program files (x86)\PHotkey\PHotkey.exe
c:\program files (x86)\PHotkey\MsgTranAgt.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files (x86)\PHotkey\MsOsd.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2014-11-07  17:40:43 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2014-11-07 16:40
.
Vor Suchlauf: 13 Verzeichnis(se), 237.730.611.200 Bytes frei
Nach Suchlauf: 19 Verzeichnis(se), 238.448.578.560 Bytes frei
.
- - End Of File - - 8CF50CDD3AABACB88D60FA42A6FB46AB
         

Alt 07.11.2014, 17:49   #10
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Servus,





  • Lade Dir bitte Windows Repair - All in one von tweaking.com hier herunter und installiere es.
  • Deaktiviere bitte (wenn möglich) Dein Antivirusprogramm.
  • Bedenke, dass die einzelnen Reparaturen einige Zeit benötigen. Starte keine anderen Anwendungen in dieser Zeit.
  • Starte das Programm und führe die Punkte 1-5 durch. (Siehe Bildanleitung)
  • Achte darauf, dass bei Dir die Häkchen so gesetzt sind wie unter Punkt 4.
  • Setze auch ein Häkchen bei "Restart/Shutdown System" und klicke "Restart System" an bevor Du Punkt 5 durchführst.
__________________
Grüße aus Bayern
M-K-D-B

______________________________________

Das Trojaner-Board unterstützen

Alt 07.11.2014, 19:07   #11
Murdok1983
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Alles ausgeführt ... PC fährt hoch vor Windows Startbildschirm ist immernoch weiß aber Windows ist jetzt ohne weißen Bildschirm

und ie Fehlermeldung habe ich auch noch ....

Alt 07.11.2014, 22:20   #12
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Servus,


poste mir den genauen Wortlaut der Fehlermeldung bitte, evtl. auch ein kleines Bild dazu.


FRST bitte noch ausführen:
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.
__________________
Grüße aus Bayern
M-K-D-B

______________________________________

Das Trojaner-Board unterstützen

Alt 11.11.2014, 16:49   #13
M-K-D-B
/// TB-Ausbilder
 
Weißer Bildschirm nach Start bei Win7 auf Laptop - Standard

Weißer Bildschirm nach Start bei Win7 auf Laptop



Fehlende Rückmeldung
Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten.
PM an mich falls Du denoch weiter machen willst.

Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist.

Jeder andere bitte hier klicken und einen eigenen Thread erstellen!
__________________
Grüße aus Bayern
M-K-D-B

______________________________________

Das Trojaner-Board unterstützen

Antwort

Themen zu Weißer Bildschirm nach Start bei Win7 auf Laptop
.dll, arten, bildschirm, bildschirm weiß, hochfährt, laptop, nach start, neustarten, schonmal, sobald, start, starte, total, unwissend, weißer, weißer bildschirm, win, win7, windows



Ähnliche Themen: Weißer Bildschirm nach Start bei Win7 auf Laptop


  1. laptop, win7, nach start nur noch weißer desktop
    Log-Analyse und Auswertung - 14.12.2013 (1)
  2. Windows 7 - weißer Bildschirm nach Start
    Plagegeister aller Art und deren Bekämpfung - 16.10.2013 (1)
  3. weißer BIldschirm nach PC Start.
    Plagegeister aller Art und deren Bekämpfung - 13.10.2013 (14)
  4. Weißer Bildschirm nach Start
    Log-Analyse und Auswertung - 08.10.2013 (15)
  5. Weißer Bildschirm nach Start
    Log-Analyse und Auswertung - 06.10.2013 (3)
  6. Weißer Bildschirm nach Start Win7
    Log-Analyse und Auswertung - 14.09.2013 (5)
  7. weißer Bildschirm nach dem Start
    Log-Analyse und Auswertung - 25.08.2013 (6)
  8. Win7 weißer Bildschirm nach start
    Plagegeister aller Art und deren Bekämpfung - 14.08.2013 (3)
  9. Weißer Bildschirm nach Start von Windows 7
    Plagegeister aller Art und deren Bekämpfung - 29.06.2013 (46)
  10. Weißer Bildschirm nach Start
    Plagegeister aller Art und deren Bekämpfung - 26.06.2013 (11)
  11. Weißer Bildschirm nach Start Win XP
    Log-Analyse und Auswertung - 03.06.2013 (2)
  12. Weißer Bildschirm nach Start
    Plagegeister aller Art und deren Bekämpfung - 24.05.2013 (17)
  13. Laptop - weißer Bildschirm nach Start
    Plagegeister aller Art und deren Bekämpfung - 21.04.2013 (25)
  14. Weißer Bildschirm nach Start von Windows 7
    Plagegeister aller Art und deren Bekämpfung - 03.03.2013 (39)
  15. Weißer Bildschirm nach start. Win XP
    Plagegeister aller Art und deren Bekämpfung - 31.01.2013 (11)
  16. Weißer Bildschirm nach Start
    Log-Analyse und Auswertung - 12.09.2012 (13)
  17. Weißer Bildschirm nach Windows Start
    Log-Analyse und Auswertung - 10.09.2012 (26)

Zum Thema Weißer Bildschirm nach Start bei Win7 auf Laptop - Hi ich habe ein Laptop von msi A6405 Bei diesem wird sobald ich ihn starte wird der Bildschirm weiß, sollte ich es doch über zwanzig Mal Neustarten das er hochfährt - Weißer Bildschirm nach Start bei Win7 auf Laptop...
Archiv
Du betrachtest: Weißer Bildschirm nach Start bei Win7 auf Laptop auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.