Tut mir leid für die später Antwort x.x
Liege mit 40° im Bett und hab eig nur geschlafen
FRST Logfile:
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-03-2015 03
Ran by Julian (administrator) on JULIAN-PC on 08-03-2015 16:56:04
Running from C:\Users\Julian\Desktop
Loaded Profiles: Julian (Available profiles: Julian & Nostale & Gast)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(SANDBOXIE L.T.D) C:\Program Files\Sandboxie\SbieSvc.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Windows\System32\PnkBstrA.exe
(NVIDIA Corporation) C:\Windows\System32\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-09] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8120864 2009-12-22] (Realtek Semiconductor)
HKLM\...\Run: [Aeria Ignite] => C:\Program Files\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [127792 2015-02-12] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-2387073909-981941339-3964768359-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Julian\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about :blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about :blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll [2013-02-05] (McAfee, Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-09-17] (Oracle Corporation)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-09-17] (Oracle Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\MP3 Skype Recorder\Skype4COM.dll [2011-09-07] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\Julian\AppData\Roaming\Mozilla\Firefox\Profiles\njr71bvj.default-1402167148011
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll [2013-11-25] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/DTPlugin,version=10.40.2 -> C:\Windows\system32\npDeployJava1.dll [2013-09-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.40.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-09-17] (Oracle Corporation)
FF Plugin: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll [2013-02-05] (McAfee, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @nexon.com/NxGame -> C:\ProgramData\Nexon\NGM\npNxGame.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin: PDF Architect 2 -> C:\Program Files\PDF Architect 2\np-previewer.dll [2014-06-26] (pdfforge GmbH)
FF Plugin HKU\S-1-5-21-2387073909-981941339-3964768359-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Julian\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-02-20] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Julian\AppData\Roaming\Mozilla\Firefox\Profiles\njr71bvj.default-1402167148011\searchplugins\youtube-videosuche.xml [2015-02-27]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2013-10-01]
FF Extension: Battlefield Heroes Updater - C:\Users\Julian\AppData\Roaming\Mozilla\Firefox\Profiles\njr71bvj.default-1402167148011\Extensions\battlefieldheroespatcher@ea.com [2014-07-12]
FF Extension: Adblock Plus - C:\Users\Julian\AppData\Roaming\Mozilla\Firefox\Profiles\njr71bvj.default-1402167148011\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-07]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files\McAfee\SiteAdvisor [2012-08-18]
Chrome:
=======
CHR Profile: C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Docs) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-29]
CHR Extension: (Google Drive) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-29]
CHR Extension: (YouTube) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-29]
CHR Extension: (Google Search) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-29]
CHR Extension: (SiteAdvisor) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2013-03-29]
CHR Extension: (Gmail) - C:\Users\Julian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-29]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files\McAfee\SiteAdvisor\McChPlg.crx [2015-03-01]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [431920 2014-12-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-09] (Avira Operations GmbH & Co. KG)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [184056 2015-02-12] (Avira Operations GmbH & Co. KG)
R2 McAfee SiteAdvisor Service; c:\Program Files\McAfee\SiteAdvisor\McSACore.exe [132160 2015-02-19] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 PDF Architect 2; C:\Program Files\PDF Architect 2\ws.exe [1771560 2014-06-26] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files\PDF Architect 2\crash-handler-ws.exe [861736 2014-06-26] (pdfforge GmbH)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2014-07-13] ()
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [85776 2012-12-16] (SANDBOXIE L.T.D)
R2 Stereo Service; C:\Windows\System32\nvSCPAPISvr.exe [239208 2009-12-11] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [98160 2014-10-01] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [37664 2013-06-26] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2014-10-01] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
S3 drvr; C:\Windows\system32\drivers\drvr.sys [8704 2010-03-09] () [File not signed]
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [157776 2012-12-16] (SANDBOXIE L.T.D)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]
S3 XDva398; \??\C:\Windows\system32\XDva398.sys [X]
S3 XDva399; \??\C:\Windows\system32\XDva399.sys [X]
S3 XDva400; \??\C:\Windows\system32\XDva400.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]
S3 XDva402; \??\C:\Windows\system32\XDva402.sys [X]
S3 XDva404; \??\C:\Windows\system32\XDva404.sys [X]
S3 XDva405; \??\C:\Windows\system32\XDva405.sys [X]
S3 XDva407; \??\C:\Windows\system32\XDva407.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-05 23:23 - 2015-03-05 23:23 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-04 12:29 - 2015-03-04 12:29 - 00000000 ____D () C:\Users\Julian\Desktop\Originals
2015-03-03 21:08 - 2015-03-03 21:08 - 02347384 _____ (ESET) C:\Users\Julian\Downloads\esetsmartinstaller_deu.exe
2015-03-03 20:34 - 2015-03-03 20:35 - 00036597 _____ () C:\Users\Julian\Desktop\Addition.txt
2015-03-03 20:32 - 2015-03-08 16:56 - 00012935 _____ () C:\Users\Julian\Desktop\FRST.txt
2015-03-03 20:32 - 2015-03-08 16:55 - 00000000 ____D () C:\Users\Julian\Desktop\FRST-OlderVersion
2015-03-03 08:43 - 2015-03-03 08:43 - 00000000 ____D () C:\Users\Julian\Desktop\Malware
2015-03-02 17:24 - 2015-03-08 16:37 - 00000000 ____D () C:\Users\Julian\Downloads\Gameforge Live
2015-03-02 17:24 - 2015-03-02 17:24 - 00000765 _____ () C:\Users\Public\Desktop\Elsword.lnk
2015-03-02 17:24 - 2015-03-02 17:24 - 00000682 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk
2015-03-02 17:24 - 2015-03-02 17:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2015-03-02 17:22 - 2015-03-02 17:23 - 20215568 _____ (Gameforge ) C:\Users\Julian\Downloads\Elsword_GameforgeLiveSetup.exe
2015-03-01 19:59 - 2015-03-01 19:59 - 00002104 _____ () C:\Users\Julian\Desktop\HTC Sync - CHIP Downloader.lnk
2015-03-01 15:41 - 2015-03-01 15:46 - 129529359 _____ () C:\Users\Julian\Desktop\187_Strassenbande-Der_Sampler_3-2015-CannaPower.rar
2015-02-28 18:36 - 2015-02-28 18:36 - 00000373 _____ () C:\Users\Julian\Desktop\mbam.txt
2015-02-27 20:36 - 2015-03-03 08:34 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-27 20:36 - 2015-02-27 20:36 - 00001062 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-02-27 20:36 - 2015-02-27 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2015-02-27 20:35 - 2015-02-27 20:36 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware
2015-02-27 20:35 - 2015-02-27 20:35 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-27 20:35 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-27 20:35 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-02-27 20:35 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-02-27 20:30 - 2015-02-27 21:30 - 00000000 ____D () C:\Users\Julian\Desktop\AdwCleaner
2015-02-27 20:20 - 2015-02-27 20:22 - 00000000 ____D () C:\AdwCleaner
2015-02-27 20:16 - 2015-03-01 15:47 - 00000000 ____D () C:\Users\Julian\Desktop\Neuer Ordner
2015-02-25 22:19 - 2015-02-25 22:19 - 00258258 _____ () C:\Windows\msxml4-KB2758694-enu.LOG
2015-02-25 16:11 - 2015-02-25 16:11 - 00000967 _____ () C:\Users\Julian\Desktop\CCleaner.lnk
2015-02-25 15:59 - 2015-02-25 15:59 - 00160552 _____ () C:\Windows\Minidump\022515-26613-01.dmp
2015-02-25 15:51 - 2015-02-25 15:51 - 00160504 _____ () C:\Windows\Minidump\022515-17284-01.dmp
2015-02-24 21:03 - 2015-02-24 21:03 - 00160504 _____ () C:\Windows\Minidump\022415-17316-01.dmp
2015-02-24 20:57 - 2015-02-24 20:57 - 00160504 _____ () C:\Windows\Minidump\022415-18532-01.dmp
2015-02-24 20:18 - 2015-03-08 16:56 - 00000000 ____D () C:\FRST
2015-02-24 20:16 - 2015-03-08 16:55 - 01134592 _____ (Farbar) C:\Users\Julian\Desktop\FRST.exe
2015-02-24 20:14 - 2015-02-24 20:14 - 00160504 _____ () C:\Windows\Minidump\022415-16707-01.dmp
2015-02-24 19:59 - 2015-02-24 19:59 - 00160504 _____ () C:\Windows\Minidump\022415-23571-01.dmp
2015-02-24 19:53 - 2015-02-24 19:53 - 00139920 _____ () C:\Windows\Minidump\022415-23680-01.dmp
2015-02-24 19:49 - 2015-02-24 19:49 - 00000000 _____ () C:\Windows\Minidump\022415-18595-01.dmp
2015-02-24 19:02 - 2015-02-24 19:34 - 00000000 ____D () C:\Users\Julian\Desktop\blueee
2015-02-24 19:02 - 2015-02-24 19:00 - 00067310 _____ () C:\Users\Julian\Desktop\bluescreenview_v1.55.zip
2015-02-24 18:56 - 2015-02-24 18:56 - 00000000 ____D () C:\Users\Julian\Desktop\blue
2015-02-24 18:55 - 2015-02-24 18:55 - 00160504 _____ () C:\Windows\Minidump\022415-17986-01.dmp
2015-02-24 18:53 - 2015-02-24 18:54 - 00139968 _____ () C:\Windows\Minidump\022415-24913-01.dmp
2015-02-24 15:13 - 2015-02-24 15:13 - 00000000 _____ () C:\Windows\Minidump\022415-18064-01.dmp
2015-02-24 15:12 - 2015-02-24 15:12 - 00160552 _____ () C:\Windows\Minidump\022415-25116-01.dmp
2015-02-24 13:39 - 2015-02-24 13:39 - 00139968 _____ () C:\Windows\Minidump\022415-19390-01.dmp
2015-02-24 13:38 - 2015-02-24 13:38 - 00000000 _____ () C:\Windows\Minidump\022415-18891-01.dmp
2015-02-24 13:36 - 2015-02-24 13:36 - 00000000 _____ () C:\Windows\Minidump\022415-19375-01.dmp
2015-02-24 07:19 - 2015-02-24 07:19 - 00139968 _____ () C:\Windows\Minidump\022415-13634-01.dmp
2015-02-24 07:18 - 2015-02-24 07:18 - 00000000 _____ () C:\Windows\Minidump\022415-20311-01.dmp
2015-02-24 07:17 - 2015-02-24 07:17 - 00160552 _____ () C:\Windows\Minidump\022415-13837-01.dmp
2015-02-24 07:16 - 2015-02-24 07:16 - 00000000 _____ () C:\Windows\Minidump\022415-23836-01.dmp
2015-02-23 19:15 - 2015-02-25 16:21 - 00000000 ____D () C:\Users\Julian\AppData\Local\Downloaded Installations
2015-02-23 19:15 - 2015-02-23 19:15 - 00012828 _____ () C:\Windows\DPINST.LOG
2015-02-23 19:15 - 2015-02-23 19:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC
2015-02-23 19:14 - 2015-02-25 16:21 - 00000000 ____D () C:\Program Files\HTC
2015-02-23 19:14 - 2015-02-23 19:14 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2015-02-23 19:14 - 2015-02-23 19:14 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2015-02-23 19:14 - 2015-02-23 19:14 - 00000000 ____D () C:\Program Files\Spirent Communications
2015-02-23 19:14 - 2015-02-23 19:14 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2015-02-23 19:13 - 2015-02-23 19:13 - 00000000 ____D () C:\Program Files\MSXML 4.0
2015-02-23 19:03 - 2015-02-23 19:03 - 01203488 _____ () C:\Users\Julian\Downloads\HTC Sync - CHIP-Installer.exe
2015-02-12 12:48 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 12:48 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-11 15:00 - 2015-01-15 08:46 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 15:00 - 2015-01-15 08:46 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 15:00 - 2015-01-15 08:43 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 15:00 - 2015-01-15 08:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 15:00 - 2015-01-15 08:42 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 15:00 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 15:00 - 2015-01-15 08:42 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 15:00 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 15:00 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 15:00 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 15:00 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 15:00 - 2015-01-15 05:21 - 00369968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 15:00 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-02-11 15:00 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 15:00 - 2015-01-09 02:45 - 02380288 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 14:59 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 14:59 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 14:59 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 14:59 - 2015-01-12 03:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:59 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 14:59 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 14:59 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:59 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:59 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 14:59 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 14:59 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 14:59 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 14:59 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 14:59 - 2015-01-12 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:59 - 2015-01-12 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:59 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 14:59 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:59 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 14:59 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 14:59 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 14:59 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 14:59 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 14:59 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 14:59 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:59 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 14:59 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 14:59 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 14:59 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 14:59 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 14:58 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 14:57 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-08 16:47 - 2014-01-07 18:02 - 00000000 ____D () C:\Users\Julian\AppData\Roaming\Skype
2015-03-08 16:40 - 2013-03-12 13:17 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-08 15:06 - 2009-07-14 05:34 - 00016944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-08 15:06 - 2009-07-14 05:34 - 00016944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-08 14:58 - 2013-03-12 13:17 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-08 14:57 - 2014-03-08 09:08 - 01778192 _____ () C:\Windows\PFRO.log
2015-03-08 14:57 - 2014-03-03 08:27 - 00086561 _____ () C:\Windows\setupact.log
2015-03-08 14:57 - 2012-07-02 20:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-08 14:57 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-08 14:20 - 2012-08-18 17:02 - 01233236 _____ () C:\Windows\WindowsUpdate.log
2015-03-06 09:07 - 2012-09-13 09:58 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-03-05 10:26 - 2013-05-02 10:32 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-05 10:26 - 2012-11-02 14:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-03-05 10:25 - 2012-11-02 14:38 - 00000000 ____D () C:\Program Files\Avira
2015-03-04 12:29 - 2014-01-03 17:24 - 09287168 ___SH () C:\Users\Julian\Desktop\Thumbs.db
2015-03-04 12:28 - 2012-11-01 14:28 - 00015360 ____H () C:\Users\Julian\Desktop\photothumb.db
2015-03-03 16:18 - 2009-07-14 05:53 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-02 15:44 - 2012-08-25 18:00 - 00000000 ____D () C:\Users\Julian\AppData\Local\Akamai
2015-03-02 08:01 - 2012-08-18 22:38 - 00000000 ____D () C:\Program Files\McAfee
2015-03-01 13:03 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-02-28 09:26 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help
2015-02-27 21:23 - 2013-09-03 17:42 - 00000000 ____D () C:\Users\Julian\AppData\Local\DM
2015-02-27 21:23 - 2013-06-29 17:48 - 00000000 ____D () C:\Program Files\Chromer
2015-02-27 20:22 - 2013-03-29 16:11 - 00001152 _____ () C:\Users\Julian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-25 20:59 - 2014-03-07 23:15 - 00000000 ____D () C:\Users\Julian\AppData\Roaming\tor
2015-02-25 15:59 - 2012-07-02 20:03 - 00000000 ____D () C:\Windows\Minidump
2015-02-24 03:23 - 2012-07-02 19:16 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-23 19:14 - 2014-05-11 07:43 - 00000000 ____D () C:\Program Files\Adobe
2015-02-23 19:14 - 2013-11-25 15:26 - 00000000 ____D () C:\Users\Julian\AppData\Local\Adobe
2015-02-23 19:14 - 2012-08-18 20:18 - 00000000 ____D () C:\ProgramData\Adobe
2015-02-23 19:14 - 2012-07-02 19:08 - 00000000 ____D () C:\Users\Julian\AppData\Roaming\Adobe
2015-02-22 17:05 - 2014-08-11 14:30 - 00000000 ____D () C:\Program Files\osu!
2015-02-17 17:23 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2015-02-11 19:02 - 2009-07-14 05:33 - 00427984 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-11 19:00 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2015-02-11 16:12 - 2013-07-22 14:05 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-11 16:02 - 2012-08-25 15:00 - 113756392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Files in the root of some directories =======
2013-06-26 20:20 - 2013-06-26 20:21 - 0003716 _____ () C:\Program Files\Mozilla Firefoxavg-secure-search.xml
2014-07-12 22:08 - 2014-07-12 22:08 - 0138056 _____ () C:\Users\Julian\AppData\Roaming\PnkBstrK.sys
2013-08-29 10:04 - 2013-08-29 10:04 - 0000218 _____ () C:\Users\Julian\AppData\Local\recently-used.xbel
2012-08-25 13:39 - 2013-06-18 14:04 - 0007600 _____ () C:\Users\Julian\AppData\Local\Resmon.ResmonCfg
2012-09-16 17:45 - 2012-09-16 17:45 - 0877747 ____N () C:\Users\Julian\AppData\Local\Tempmusic.ogg
2014-01-07 18:15 - 2014-01-07 18:15 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
Some content of TEMP:
====================
C:\Users\Julian\AppData\Local\Temp\avgnt.exe
C:\Users\Julian\AppData\Local\Temp\Quarantine.exe
C:\Users\Julian\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-03-05 21:28
==================== End Of Log ============================
--- --- ---