Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Alles rund um Windows (https://www.trojaner-board.de/alles-rund-um-windows/)
-   -   Internetverbindung bricht zusammen bei Downloads (https://www.trojaner-board.de/159103-internetverbindung-bricht-zusammen-downloads.html)

netlogger 25.09.2014 21:43

Internetverbindung bricht zusammen bei Downloads
 
Ich habe das Problem -das wenn ich etwas downloade meine Internetverbindung zusammenbricht !!
Das äußert sich dadurch das Seiten entweder langsam oder gar nicht geöffnet werden können.

Hardware und MiniToolBox Berichte sind im Anhang :D

Router ist ein Arris -TM602B Kabelmodem von Kabel Deutschland
und
TP-Link - WR541G/542G Wlan- Router

Hier noch mein Speedtest Ergebnis:
http://www.speedtest.net/result/3787271602.png Ich bedanke mich für Eure Hilfe :dankeschoen:

:applaus: MFG Netlogger :applaus:

Alois S 26.09.2014 06:02

Hallo netlogger,

es wäre wichtig zu wissen, seit wann dieser Fehler auftritt, ob du im fraglichen Zeitraum etwas installiert oder an der Konfiguration geändert hast und welche Sicherheitssoftware auf deinem System aktiv ist (bitte alles anführen).
Und: Hast du schon versucht, den Router zu resetten?

Liebe Grüße, Alois

Post © Alois 2014 – Alle Rechte vorbehalten – kein Teil darf in irgendeiner Form ohne schriftliche Genehmigung des Autors kritisiert werden! :aufsmaul:

netlogger 26.09.2014 11:00

Guten Tag;

Als Sicherheits-Software habe ich MSE und die Windows Firewall .

Beide Router habe ich resettet (mehrmals )

Das Problem besteht eigentlich seit der Windows Installation.

Als Browser nutze ich Google Chrome mit Adblock Plus ( test-weise schon deaktiviert und gelöscht ) .

Hier mal ne Liste welche Programme ich auf den PC habe :
Code:

AIDA64 Extreme Edition v2.60        FinalWire Ltd.        07.06.2014        25,1 MB        2.60
Apple Application Support        Apple Inc.        17.09.2014        93,4 MB        3.0.6
Apple Mobile Device Support        Apple Inc.        17.09.2014        21,6 MB        8.0.0.23
Apple Software Update        Apple Inc.        04.07.2014        2,38 MB        2.1.3.127
ASIO4ALL        Michael Tippach        24.06.2014                2.11 Beta2
Audacity 2.0.5        Audacity Team        24.06.2014        45,5 MB        2.0.5
Audacity Recovery Utility        Markus Meyer        24.06.2014               
Battlefield 3™        Electronic Arts        22.06.2014                1.6.0.0
Battlelog Web Plugins        EA Digital Illusions CE AB        24.06.2014                2.4.0
Bonjour        Apple Inc.        04.07.2014        2,00 MB        3.0.0.10
CCleaner        Piriform        17.09.2014                4.17
CPUID CPU-Z 1.69.2                17.06.2014        3,51 MB       
CrystalDiskInfo 6.1.14        Crystal Dew World        17.06.2014        5,54 MB        6.1.14
Entity Framework 6.1.0 Tools  for Visual Studio 2013        Microsoft Corporation        25.07.2014        141 MB        12.0.30228.0
Erforderliche Komponenten für SSDT        Microsoft Corporation        25.07.2014        8,11 MB        11.1.3000.0
FileZilla Client 3.8.1        Tim Kosse        22.06.2014        18,1 MB        3.8.1
Google Chrome        Google Inc.        24.07.2014                37.0.2062.124
Half-Life                24.09.2014               
HDClone 4.2 Professional Edition        Miray Software AG        20.09.2014                4.2
Heaven Benchmark version 4.0        Unigine Corp.        24.09.2014        274 MB        4.0
HP Support Solutions Framework        Hewlett-Packard Company        25.09.2014        7,32 MB        11.51.0027
iCloud        Apple Inc.        18.09.2014        90,3 MB        4.0.3.56
IIS 8.0 Express        Microsoft Corporation        25.07.2014        34,9 MB        8.0.1557
IIS Express Application Compatibility Database for x64                25.07.2014               
IIS Express Application Compatibility Database for x86                25.07.2014               
iTunes        Apple Inc.        17.09.2014        219 MB        11.4.0.18
Java 7 Update 60        Oracle        17.06.2014        118 MB        7.0.600
Java 8 Update 20        Oracle Corporation        18.09.2014        77,0 MB        8.0.200
Java 8 Update 20 (64-bit)        Oracle Corporation        18.09.2014        88,8 MB        8.0.200
Java SE Development Kit 8 Update 11 (64-bit)        Oracle Corporation        23.07.2014        248 MB        8.0.110
Malwarebytes Anti-Malware Version 2.0.2.1012        Malwarebytes Corporation        21.06.2014        53,1 MB        2.0.2.1012
Microsoft .NET Framework 4 Multi-Targeting Pack        Microsoft Corporation        25.07.2014        83,5 MB        4.0.30319
Microsoft .NET Framework 4.5 Multi-Targeting Pack        Microsoft Corporation        25.07.2014        41,8 MB        4.5.50710
Microsoft .NET Framework 4.5 SDK        Microsoft Corporation        25.07.2014        18,5 MB        4.5.50710
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack        Microsoft Corporation        25.07.2014        3,58 MB        4.5.50710
Microsoft .NET Framework 4.5.1        Microsoft Corporation        10.06.2014        38,8 MB        4.5.50938
Microsoft .NET Framework 4.5.1 (Deutsch)        Microsoft Corporation        11.06.2014        2,93 MB        4.5.50938
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack        Microsoft Corporation        25.07.2014        49,3 MB        4.5.50932
Microsoft .NET Framework 4.5.1 SDK        Microsoft Corporation        25.07.2014        19,4 MB        4.5.51641
Microsoft .NET Framework 4.5.1 SDK (Deutsch)        Microsoft Corporation        25.07.2014        3,55 MB        4.5.51641
Microsoft Help Viewer 1.0 Language Pack - DEU        Microsoft Corporation        26.06.2014        1,95 MB        1.0.30319
Microsoft Help Viewer 1.1        Microsoft Corporation        28.06.2014        3,97 MB        1.1.40219
Microsoft Help Viewer 1.1 Language Pack - DEU        Microsoft Corporation        28.06.2014        1,95 MB        1.1.40219
Microsoft Help Viewer 2.1        Microsoft Corporation        25.07.2014        12,1 MB        2.1.21005
Microsoft Help Viewer 2.1 Sprachpaket - DEU        Microsoft Corporation        25.07.2014        1,95 MB        2.1.21005
Microsoft OneDrive        Microsoft Corporation        25.09.2014        29,3 MB        17.3.1229.0918
Microsoft Security Essentials        Microsoft Corporation        15.09.2014                4.6.305.0
Microsoft Silverlight        Microsoft Corporation        28.07.2014        77,3 MB        5.1.30514.0
Microsoft Silverlight 5 SDK - DEU        Microsoft Corporation        25.07.2014        77,4 MB        5.0.61118.0
Microsoft SQL Server 2008 (64-bit)        Microsoft Corporation        26.06.2014               
Microsoft SQL Server 2008 Browser        Microsoft Corporation        27.06.2014        8,03 MB        10.3.5500.0
Microsoft SQL Server 2008 Native Client        Microsoft Corporation        27.06.2014        7,11 MB        10.3.5500.0
Microsoft SQL Server 2008 R2 Management Objects        Microsoft Corporation        28.06.2014        14,4 MB        10.50.1750.9
Microsoft SQL Server 2008 Setup Support Files        Microsoft Corporation        15.09.2014        57,2 MB        10.3.5520.0
Microsoft SQL Server 2012 Command Line Utilities        Microsoft Corporation        25.07.2014        960 KB        11.1.3000.0
Microsoft SQL Server 2012 Data-Tier App Framework        Microsoft Corporation        25.07.2014        11,7 MB        11.1.2902.0
Microsoft SQL Server 2012 Data-Tier App Framework  (x64)        Microsoft Corporation        25.07.2014        11,7 MB        11.1.2902.0
Microsoft SQL Server 2012 Express LocalDB        Microsoft Corporation        25.07.2014        162 MB        11.1.3000.0
Microsoft SQL Server 2012 Management Objects        Microsoft Corporation        25.07.2014        26,8 MB        11.1.3000.0
Microsoft SQL Server 2012 Management Objects (x64)        Microsoft Corporation        25.07.2014        17,9 MB        11.1.3000.0
Microsoft SQL Server 2012 Native Client        Microsoft Corporation        25.07.2014        7,97 MB        11.1.3000.0
Microsoft SQL Server 2012 T-SQL-Sprachdienst        Microsoft Corporation        25.07.2014        6,21 MB        11.1.3000.0
Microsoft SQL Server 2012 Transact-SQL ScriptDom        Microsoft Corporation        25.07.2014        4,60 MB        11.1.3000.0
Microsoft SQL Server Compact 3.5 SP2 DEU        Microsoft Corporation        26.06.2014        3,68 MB        3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 DEU        Microsoft Corporation        26.06.2014        4,81 MB        3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 DEU        Microsoft Corporation        25.07.2014        23,7 MB        4.0.8876.1
Microsoft SQL Server Data Tools - DEU (12.0.30919.1)        Microsoft Corporation        25.07.2014        18,7 MB        12.0.30919.1
Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1)        Microsoft Corporation        25.07.2014        2,24 MB        12.0.30919.1
Microsoft SQL Server System CLR Types        Microsoft Corporation        28.06.2014        951 KB        10.50.1750.9
Microsoft SQL Server System CLR Types (x64)        Microsoft Corporation        25.07.2014        500 KB        10.50.1600.1
Microsoft SQL Server VSS Writer        Microsoft Corporation        27.06.2014        4,02 MB        10.3.5500.0
Microsoft Visual Basic 2010 Express - DEU        Microsoft Corporation        28.06.2014                10.0.40219
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022        Microsoft Corporation        23.07.2014        2,24 MB        9.0.21022
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161        Microsoft Corporation        24.07.2014        788 KB        9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022        Microsoft Corporation        23.07.2014        1,42 MB        9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17        Microsoft Corporation        22.06.2014        596 KB        9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161        Microsoft Corporation        23.06.2014        600 KB        9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219        Microsoft Corporation        15.09.2014        13,8 MB        10.0.40219
Microsoft Visual C++ 2010  x64 Runtime - 10.0.40219        Microsoft Corporation        28.06.2014        20,5 MB        10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219        Microsoft Corporation        15.09.2014        15,0 MB        10.0.40219
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219        Microsoft Corporation        28.06.2014        15,9 MB        10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610        Microsoft Corporation        14.07.2014        20,5 MB        11.0.60610.1
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610        Microsoft Corporation        16.09.2014                11.0.60610.1
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610        Microsoft Corporation        14.07.2014        17,3 MB        11.0.60610.1
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610        Microsoft Corporation        16.09.2014                11.0.60610.1
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools        Microsoft Corporation        28.06.2014        36,0 MB        10.0.40219
Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU        Microsoft Corporation        28.06.2014        21,6 MB        10.0.40219
Microsoft Visual Studio 2010 Service Pack 1        Microsoft Corporation        28.06.2014        75,9 MB        10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)        Microsoft Corporation        15.09.2014                10.0.50701
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU        Microsoft Corporation        15.09.2014                10.0.50701
Microsoft Visual Studio Ultimate 2013        Microsoft Corporation        25.07.2014        9,00 GB        12.0.30501
Microsoft Web Deploy 3.5        Microsoft Corporation        25.07.2014        6,46 MB        3.1237.1762
Microsoft-System-CLR-Typen für SQL Server 2012        Microsoft Corporation        25.07.2014        1,66 MB        11.1.3366.16
Microsoft-System-CLR-Typen für SQL Server 2012 (x64)        Microsoft Corporation        25.07.2014        1,48 MB        11.1.3366.16
NirSoft BlueScreenView                09.07.2014               
Notepad++        Notepad++ Team        21.06.2014                6.6.6
NVIDIA 3D Vision Controller-Treiber 337.88        NVIDIA Corporation        22.07.2014                337.88
NVIDIA 3D Vision Treiber 340.52        NVIDIA Corporation        15.09.2014                340.52
NVIDIA Grafiktreiber 340.52        NVIDIA Corporation        15.09.2014                340.52
NVIDIA PhysX-Systemsoftware 9.13.1220        NVIDIA Corporation        07.06.2014                9.13.1220
Origin        Electronic Arts, Inc.        22.06.2014                9.4.10.297
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch)        Microsoft Corporation        25.07.2014        79,1 MB        4.5.50932
Performance Tools for Visual Studio 14 CTP        Microsoft Corporation        13.07.2014        56,4 MB        14.0.21730.1
QuickPar 0.9        Peter B. Clements        05.07.2014                0.9
QuickTime 7        Apple Inc.        18.07.2014        70,2 MB        7.75.80.95
Realtek High Definition Audio Driver        Realtek Semiconductor Corp.        09.07.2014                6.0.1.6196
Revo Uninstaller 1.95        VS Revo Group        16.09.2014                1.95
SpeedFan (remove only)                26.06.2014               
System Requirements Lab CYRI        Husdawg, LLC        22.06.2014        618 KB        6.0.12.5
System Requirements Lab for Intel        Husdawg, LLC        17.06.2014        1,12 MB        4.5.24.0
TeamViewer 9        TeamViewer        15.09.2014                9.0.32494
The Sims 2: Ultimate Collection        Electronic Arts        25.07.2014        12,5 GB        1.0.0.0
Universal Extractor 1.6.1        Jared Breland        24.06.2014        11,8 MB        1.6.1
UseNeXT by Tangysoft        Tangysoft Ltd.        29.06.2014        7,83 MB       
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU        Microsoft Corporation        26.06.2014        11,1 MB        4.0.8080.0
VLC media player 2.1.4        VideoLAN        19.07.2014                2.1.4
WCF RIA Services V1.0 SP2        Microsoft Corporation        25.07.2014        6,91 MB        4.1.62812.0
WinRAR 5.10 (64-Bit)        win.rar GmbH        29.06.2014                5.10.0
WMI        WMI        24.07.2014                1.0.0.0

Ich habe die Vermutung das es ein Hardware Problem sein könnte ( Router-Modem-Onboard Netzwerkkarte )



Ach und bevor ich es vergesse :applaus: Danke für die Antwort ;)


MFG Netlogger :abklatsch:

JFrosch 26.09.2014 11:03

Zitat:

Zitat von netlogger (Beitrag 1364729)
das wenn ich etwas downloade meine Internetverbindung zusammenbricht !!
Router ist ein Arris -TM602B Kabelmodem von Kabel Deutschland
und
TP-Link - WR541G/542G Wlan- Router

Hallo Netlogger,

ergänzend zu den Hinweisen von Alois S , hast Du noch andere Geräte wie Smartphone, Laptop oder PC im Haushalt und tritt der Fehler bei diesen auch auf?
Weiterer Tipp:
Könntest Du den PC direkt mit dem Ethernet Anschluss vom Kabelmodem über ein Lan Kabel mit deinem PC verbinden aber vorher die Drahtlosverbindung deaktivieren/trennen und die Verbindung erneut testen?


Danke für die Anlage *.zip -> Zu dieser eine ganz persönliche Anmerkung meinerseits.
Es steht etwas zu viel über Dein Betriebssystem in dem PC Logfile. :heulen:
Nehme am besten HWinfo32 oder 64 Bit das erzählt nicht ganz so viel.....

Ansonsten zu den Einträgen für die Netzwerkadapter ist mir nichts suspektes aufgefallen.

Lieben Gruß JF.

netlogger 26.09.2014 11:15

Huhu @JFrosch :rofl:

Es sind eigentlich keine weiteren Geräte verbunden -nur mein Iphone ;)

Der Fehler tritt nur am PC auf (denke am Iphone würde ich es auch nicht merken )

Habe den Roter auch schon direkt mit den Kabelmodem verbunden und das Symptom bleibt bestehen.

Der Wlan Adapter ist standardmäßig deaktiviert, die Karte habe ich nur zu Testzwecken eingebaut ;)

Danke auch Dir für die Antwort :applaus::applaus:


MFG Netlogger:singsing::singsing:

JFrosch 26.09.2014 11:32

Zitat:

Zitat von netlogger (Beitrag 1364828)
-nur mein Iphone ;)
Der Fehler tritt nur am PC auf (denke am Iphone würde ich es auch nicht merken )

Hallo,

danke für die Rückmeldung, dann probiere mal am Iphone einen HD Stream von Youtube aus oder aus irgendeiner Mediathek....sollte schon auf dem Iphone zu erkennen sein, wenn es an der Verbindung liegt.

In dem Gerätemanager für den PC sind keine gelben Ausrufezeichen aufgeführt und die Systemperformance (Windows Leistungsindes) ist auch okay?
Mit den Hinweisen von Dir würde ich dich eher an die Logfile-Auswerte oder Plagegeister Spezialisten "überweisen" wollen.

Lese Dir Bitte in den FQA die Durchführung eines FRST Scan deines PC durch.
Edit:
War diese Version noch Freeware von AIDA64 Extreme Edition v2.60? oder schon eine Kaufversion?

Viel Erfolgt. JF

netlogger 26.09.2014 11:50

Habe das jetz mal getestet :wtf:

Wenn ich gleichzeitig Youtube auf den Iphone laufen lasse -nen Radiostream auf dem PC und etwas downloade bricht die Internetverbindung zusammen :wtf:

Es ist mir dann nicht möglich einen Speedtest auszuführen.

Die Verbindung bricht sowohl am Iphone sowie am PC zusammen und es geht nichts mehr :confused::confused:

Ich glaube das der Roter oder das Modem einen weg hat :killpc:

Aida64 ist ne Kaufversion.

Den FRST Scan werde ich jetzt mal in Angriff nehmen ;)


MFG Netlogger :D

JFrosch 26.09.2014 12:02

Zitat:

Zitat von netlogger (Beitrag 1364836)
Wenn ich gleichzeitig Youtube auf den Iphone laufen lasse -nen Radiostream auf dem PC und etwas downloade bricht die Internetverbindung zusammen :wtf:
Ich glaube das der Roter oder das Modem einen weg hat :killpc:

Hallo,

meine Idee war eher nur das Iphone und nichts am PC machen...
Beschreibe mal bitte den Aufbau deiner Internetverbindung:
Arris -TM602B Kabelmodem -> TP-Link - WR541G/542G Wlan- Router?
Laut den Bildern aus dem Internet besitzt das Kabelmodem TM602B einen Lan Anschluss, ist es dort nicht möglich, direkt den PC anzuschliessen und eine Internetverbindung ohne den Wlan-Router einzurichten/herzustellen?

Mit dem FRST machmal, kann nie schaden...:daumenhoc
Viel Erfolg. Lg JF

netlogger 26.09.2014 12:20

Also die Verbindung ist normalerweise so :
Arris -TM602B Kabelmodem -> TP-Link - WR541G/542G Wlan- Router

Jedoch habe ich den PC auch schon direkt mit dem Arris -TM602B Kabelmodem verbunden und hatte das gleiche Problem ;)

Hier mal die FRST.txt :

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014
Ran by SYSTEM on MININT-O6VKQCI on 26-09-2014 13:06:30
Running from G:\
Platform: Windows 7 Professional (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKU\Default\...\Run: [HPAdvisorDock] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
HKU\Default User\...\Run: [HPAdvisorDock] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
HKU\Gast\...\Run: [HPAdvisorDock] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
HKU\Gast\...\Run: [GoogleChromeAutoLaunch_BB36B386FC91F3D4CC09C0FCB27081F3] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [852808 2014-09-23] (Google Inc.)

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-19] (Microsoft Corporation)
S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89352 2014-09-15] (Hewlett-Packard Company)
S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [22768 2014-04-17] (Microsoft Corporation)
S2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
S2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [58387104 2014-07-12] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [441504 2014-07-12] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation)
S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87736 2014-04-30] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2014-09-26] (REALiX(tm))
S3 MirayVirtualDisk; C:\Windows\System32\DRIVERS\mvd.sys [108184 2013-01-29] (Miray)
S0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
S2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 RTCore64; \??\D:\rmclock_230_bin\RTCore64.sys [X]
S3 WinRing0_1_2_0; \??\C:\ProTemp\ProTemp.sys [X]

========================== Drivers MD5 =======================

C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit
C:\Windows\system32\drivers\afd.sys FA886682CFC5D36718D3E436AACF10B9
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\amdppm.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49
C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\drivers\amdxata.sys 540DAF1CEA6094886D72126FD7C33048
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\system32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\athrx.sys 2532FB9BD2BF6C175E4D55755E5D7406
C:\Windows\system32\DRIVERS\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys EBF28856F69CF094A902F884CF989706
C:\Windows\system32\DRIVERS\compbatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\csc.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\disk.sys ==> MD5 is legit
C:\Windows\system32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\drivers\dxgkrnl.sys 87CE5C8965E101CCCED1F4675557E868
C:\Windows\system32\DRIVERS\evbda.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys 8E98D21EE06192492A5671A6144D092F
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\System32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\HECIx64.sys B6AC71AAA2B10848F57FC49D55A651AF
C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\system32\drivers\HWiNFO64A.SYS F1601B4A883F183B0D3413C37CD3A384
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\system32\drivers\i8042prt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\iaStor.sys ABBF174CB394F5C437410A788B7E404A
C:\Windows\System32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit
C:\Windows\System32\drivers\RTKVHD64.sys 3C4B4EE54FEBB09F7E9F58776DE96DCA
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys 96BB922A0981BC7432C8CF52B5410FE6
C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\ksecdd.sys 353009DEDF918B2A51414F330CF72DEC
C:\Windows\System32\Drivers\ksecpkg.sys 1C2D8E18AA8FD50CD04C15CC27F7F5AB
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mvd.sys AA43EB9530D55EBF2D6F3719C4983B9C
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\MpFilter.sys 6439D1E559D08BD8A1465A8943357053
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mrxdav.sys 1A4F75E63C9FB84B85DFFC6B63FD5404
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\system32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\Windows\System32\drivers\ndis.sys 760E38053BF56E501D562B70AD796B88
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netaapl64.sys EE00C544C025958AF50C7B199F3C8595
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\NisDrvWFP.sys F9EEFFC65C68A45001D1349E652B8B6F
C:\Windows\System32\Drivers\Npfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys 1A29A59A4C5BA6F8C85062A613B7E2B2
C:\Windows\System32\Drivers\Null.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nvlddmkm.sys 2232AE1BB51A96A7381A2CA17DF12E24
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\System32\drivers\nvvad64v.sys 75034A4D7C02327D150B617571D4196A
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpdr.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpvideominiport.sys 313F68E1A3E6345A4F47A36B07062F34
C:\Windows\System32\Drivers\RDPWD.sys E61608AA35E98999AF9AAEEEA6114B0A
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RsFx0105.sys C9FE05A63C500ABE3AFA5786504C4D36
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Rt64win7.sys ABCB5A38A0D85BDF69B7877E1AD1EED5
C:\Windows\system32\drivers\vms3cap.sys ==> MD5 is legit
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serenum.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serial.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\SysWow64\speedfan.sys 0FFE35F0B0CD5A324BBE22F02569AE3B
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit
C:\Windows\System32\drivers\vmstorfl.sys ==> MD5 is legit
C:\Windows\system32\drivers\storvsc.sys ==> MD5 is legit
C:\Windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\Windows\System32\drivers\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\DRIVERS\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys 4CE278FC9671BA81A138D70823FCAA09
C:\Windows\System32\drivers\tsusbflt.sys E9981ECE8D894CEF7038FD1D040EB426
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 is legit
C:\Windows\System32\Drivers\usbaapl64.sys 5C3BE22E485B9BF11FCEFDC676C728D0
C:\Windows\System32\DRIVERS\usbccgp.sys DCA68B0943D6FA415F0C56C92158A83A
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\System32\DRIVERS\usbehci.sys 18A85013A3E0F7E1755365D287443965
C:\Windows\System32\DRIVERS\usbhub.sys 8D1196CFBB223621F2C67D45710F25BA
C:\Windows\system32\drivers\usbohci.sys 765A92D428A8DB88B960DA5A8D6089DC
C:\Windows\system32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys DD253AFC3BC6CBA412342DE60C3647F3
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\vmbus.sys ==> MD5 is legit
C:\Windows\system32\drivers\VMBusHID.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwifibus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwififlt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wd.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWOW64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-26 13:06 - 2014-09-26 13:06 - 00000000 ____D () C:\FRST
2014-09-26 11:57 - 2014-09-26 11:57 - 02108928 _____ (Farbar) C:\Users\Asus\Desktop\FRST64.exe
2014-09-26 11:33 - 2014-09-26 11:33 - 00027552 _____ (REALiX(tm)) C:\Windows\System32\Drivers\HWiNFO64A.SYS
2014-09-26 11:32 - 2014-09-26 11:32 - 00000000 ____D () C:\Program Files\HWiNFO64
2014-09-26 03:01 - 2014-09-26 03:06 - 00000000 ____D () C:\Users\Asus\Downloads\WindowsApplication1
2014-09-26 03:01 - 2014-09-26 03:01 - 00030800 _____ () C:\Users\Asus\Downloads\WindowsApplication1.7z
2014-09-26 02:26 - 2014-09-26 02:26 - 00151552 _____ () C:\Windows\SysWOW64\nvRegDev.dll
2014-09-26 02:26 - 2014-09-26 02:26 - 00053248 _____ () C:\Windows\SysWOW64\nvTextureToolsUtil.dll
2014-09-26 02:26 - 2014-09-26 02:26 - 00040960 _____ () C:\Windows\SysWOW64\nvISWOW64.dll
2014-09-25 23:25 - 2014-09-25 23:25 - 00000000 ____D () C:\SAVE
2014-09-25 23:06 - 2014-09-26 10:32 - 00000168 _____ () C:\Windows\setupact.log
2014-09-25 23:06 - 2014-09-26 01:34 - 00000858 _____ () C:\Windows\PFRO.log
2014-09-25 23:06 - 2014-09-25 23:06 - 00297136 _____ () C:\Windows\System32\FNTCACHE.DAT
2014-09-25 23:06 - 2014-09-25 23:06 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-25 22:00 - 2014-09-25 22:00 - 00000000 ___HD () C:\OneDriveTemp
2014-09-25 21:08 - 2014-09-26 03:15 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\NVIDIA
2014-09-25 19:46 - 2014-09-25 19:46 - 00064224 _____ () C:\Users\Asus\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-25 19:40 - 2014-09-26 12:02 - 00055247 _____ () C:\Windows\WindowsUpdate.log
2014-09-25 19:33 - 2014-09-25 19:43 - 00000000 ____D () C:\AdwCleaner
2014-09-25 19:17 - 2014-09-25 19:17 - 00000000 ____D () C:\Windows\Options
2014-09-25 19:17 - 2014-09-25 19:17 - 00000000 ____D () C:\Program Files (x86)\Atheros
2014-09-25 19:17 - 2014-02-20 23:49 - 04044800 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\System32\Drivers\athrx.sys
2014-09-25 19:16 - 2014-09-25 19:16 - 00000000 ____D () C:\ProgramData\Qualcomm Atheros
2014-09-25 19:16 - 2014-09-25 19:16 - 00000000 ____D () C:\drivertemp
2014-09-25 19:09 - 2014-09-25 19:29 - 00000288 _____ () C:\Windows\Tasks\AdvancedDriverUpdater_UPDATES.job
2014-09-25 19:09 - 2014-09-25 19:10 - 00003156 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdaterRunAtStartup
2014-09-25 19:09 - 2014-09-25 19:09 - 00003026 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdater_UPDATES
2014-09-25 19:02 - 2014-09-25 19:02 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-09-25 06:18 - 2014-09-25 06:18 - 00001007 _____ () C:\Users\Gast\Desktop\RightMark CPU Clock Utility.lnk
2014-09-24 14:22 - 2014-09-24 14:22 - 00002810 _____ () C:\Users\Asus\Unigine_Heaven_Benchmark_4.0_20140924_1522.html
2014-09-24 14:15 - 2014-09-24 14:18 - 00000000 ____D () C:\Users\Asus\Heaven
2014-09-24 14:14 - 2014-09-24 14:17 - 01065984 _____ () C:\Users\Asus\AppData\Local\file__0.localstorage
2014-09-24 14:13 - 2014-09-24 14:13 - 00000000 ____D () C:\Program Files (x86)\Unigine
2014-09-24 09:03 - 2014-09-24 09:03 - 00001540 _____ () C:\Users\Gast\Desktop\Half-Life.lnk
2014-09-24 09:03 - 2014-09-24 09:03 - 00000097 _____ () C:\Windows\sierra.ini
2014-09-24 09:01 - 2014-09-24 09:01 - 00000000 ____D () C:\Sierra
2014-09-23 22:30 - 2014-09-24 07:03 - 00000000 ____D () C:\Users\Asus\Desktop\Webradio
2014-09-23 22:30 - 2014-09-23 22:30 - 00000000 ____D () C:\Users\Asus\AppData\Local\Programmier-Felix
2014-09-23 22:18 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\tzres.dll
2014-09-23 22:18 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-23 22:00 - 2014-09-23 22:15 - 00000000 ____D () C:\Users\Asus\AppData\Local\Temporary Projects
2014-09-23 18:51 - 2014-09-25 06:31 - 00000000 ____D () C:\ProTemp
2014-09-23 18:44 - 2014-09-23 18:44 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft FxCop
2014-09-22 16:53 - 2014-09-22 16:53 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\HDDHealth
2014-09-20 02:55 - 2014-09-20 02:55 - 00000000 ____D () C:\Program Files (x86)\Miray Virtual Disk 1.2
2014-09-20 02:55 - 2014-09-20 02:55 - 00000000 ____D () C:\Program Files (x86)\HDClone 4.2 Professional Edition
2014-09-20 00:50 - 2014-09-20 00:50 - 00000000 ____D () C:\Users\Asus\Downloads\openhardwaremonitor-v0.6.0-beta
2014-09-20 00:27 - 2014-09-20 00:27 - 00000000 ____D () C:\Users\Asus\Downloads\Kassenprogramm Copyright by K. Rübner
2014-09-19 20:41 - 2014-09-19 20:42 - 00001908 _____ () C:\Windows\diagwrn.xml
2014-09-19 20:41 - 2014-09-19 20:42 - 00001908 _____ () C:\Windows\diagerr.xml
2014-09-19 18:44 - 2014-09-19 18:44 - 00000448 __RSH () C:\ProgramData\ntuser.pol
2014-09-19 10:06 - 2014-09-19 10:06 - 00154112 _____ () C:\Users\Asus\Downloads\Bildschirmauflösung.exe
2014-09-19 09:40 - 2014-09-25 23:05 - 00000000 ___RD () C:\Users\Asus\OneDrive
2014-09-19 09:40 - 2014-09-19 09:40 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-09-19 09:40 - 2014-09-19 09:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive
2014-09-18 14:48 - 2014-09-18 14:51 - 00000000 ____D () C:\Users\Asus\AppData\Local\Apple Inc
2014-09-18 04:39 - 2014-09-18 04:39 - 00000000 ____D () C:\Users\Asus\Downloads\Wlan-Akt--Deakt
2014-09-17 21:53 - 2014-09-17 21:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-09-17 21:53 - 2014-09-17 21:54 - 00000000 ____D () C:\Program Files\iTunes
2014-09-17 21:53 - 2014-09-17 21:54 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-09-17 21:53 - 2014-09-17 21:53 - 00000000 ____D () C:\Program Files\iPod
2014-09-16 20:08 - 2014-09-16 20:08 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-09-15 22:45 - 2014-09-15 22:45 - 00000000 ____D () C:\Neuer Ordner
2014-09-15 22:15 - 2014-07-08 23:38 - 00419992 _____ () C:\Windows\System32\locale.nls
2014-09-15 22:15 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls
2014-09-15 22:14 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDYAK.DLL
2014-09-15 22:14 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDTAT.DLL
2014-09-15 22:14 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU1.DLL
2014-09-15 22:14 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDBASH.DLL
2014-09-15 22:14 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU.DLL
2014-09-15 22:14 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2014-09-15 22:14 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2014-09-15 22:14 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2014-09-15 22:14 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2014-09-15 22:14 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2014-09-15 21:36 - 2014-08-18 23:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2014-09-15 21:36 - 2014-08-18 23:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollectorres.dll
2014-09-15 21:36 - 2014-08-18 23:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll
2014-09-15 21:36 - 2014-08-18 23:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2014-09-15 21:36 - 2014-08-18 23:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2014-09-15 21:36 - 2014-08-18 23:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll
2014-09-15 21:36 - 2014-08-18 22:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-15 21:36 - 2014-08-18 22:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-09-15 21:36 - 2014-08-18 22:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-15 21:36 - 2014-08-18 22:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-15 21:35 - 2014-08-19 19:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2014-09-15 21:35 - 2014-08-19 18:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-15 21:35 - 2014-08-19 00:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2014-09-15 21:35 - 2014-08-18 23:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-15 21:35 - 2014-08-18 23:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2014-09-15 21:35 - 2014-08-18 23:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2014-09-15 21:35 - 2014-08-18 23:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2014-09-15 21:35 - 2014-08-18 23:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2014-09-15 21:35 - 2014-08-18 23:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\ieetwproxystub.dll
2014-09-15 21:35 - 2014-08-18 23:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-15 21:35 - 2014-08-18 23:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2014-09-15 21:35 - 2014-08-18 23:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2014-09-15 21:35 - 2014-08-18 23:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe
2014-09-15 21:35 - 2014-08-18 22:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
2014-09-15 21:35 - 2014-08-18 22:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2014-09-15 21:35 - 2014-08-18 22:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-15 21:35 - 2014-08-18 22:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-15 21:35 - 2014-08-18 22:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-15 21:35 - 2014-08-18 22:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-15 21:35 - 2014-08-18 22:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll
2014-09-15 21:35 - 2014-08-18 22:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2014-09-15 21:35 - 2014-08-18 22:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-15 21:35 - 2014-08-18 22:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-15 21:35 - 2014-08-18 22:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2014-09-15 21:35 - 2014-08-18 22:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-15 21:35 - 2014-08-18 22:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-15 21:35 - 2014-08-18 22:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-15 21:35 - 2014-08-18 22:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2014-09-15 21:35 - 2014-08-18 22:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2014-09-15 21:35 - 2014-08-18 22:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2014-09-15 21:35 - 2014-08-18 22:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll
2014-09-15 21:35 - 2014-08-18 22:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-15 21:35 - 2014-08-18 22:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-15 21:35 - 2014-08-18 22:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-15 21:35 - 2014-08-18 22:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-15 21:35 - 2014-08-18 22:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2014-09-15 21:35 - 2014-08-18 22:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-15 21:35 - 2014-08-18 22:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2014-09-15 21:35 - 2014-08-18 22:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-15 21:35 - 2014-08-18 22:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-15 21:35 - 2014-08-18 22:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-15 21:35 - 2014-08-18 21:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2014-09-15 21:35 - 2014-08-18 21:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-15 21:35 - 2014-08-18 21:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-15 21:35 - 2014-08-18 21:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2014-09-15 21:35 - 2014-08-18 21:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-15 18:10 - 2014-07-02 18:44 - 00609240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-09-15 17:59 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll
2014-09-15 17:59 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-15 17:56 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\System32\icardres.dll
2014-09-15 17:56 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-09-15 17:56 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\System32\icardagt.exe
2014-09-15 17:56 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\System32\infocardapi.dll
2014-09-15 17:56 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-09-15 17:56 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-09-15 17:55 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-09-15 17:55 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe
2014-09-15 17:53 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\System32\TSWorkspace.dll
2014-09-15 17:53 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-15 17:53 - 2014-07-07 03:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2014-09-15 17:53 - 2014-07-07 03:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2014-09-15 17:53 - 2014-07-07 02:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-15 17:53 - 2014-07-07 02:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-15 17:53 - 2014-07-07 02:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-15 17:51 - 2014-06-03 11:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll
2014-09-15 17:51 - 2014-06-03 11:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2014-09-15 17:51 - 2014-06-03 11:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\System32\msihnd.dll
2014-09-15 17:51 - 2014-06-03 11:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe
2014-09-15 17:51 - 2014-06-03 10:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-09-15 17:51 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-09-15 17:51 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-09-15 17:50 - 2014-09-05 03:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2014-09-15 17:50 - 2014-09-05 03:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2014-09-15 17:50 - 2014-06-25 03:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2014-09-15 17:50 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-09-15 17:50 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2014-09-15 17:50 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-15 17:50 - 2014-06-16 03:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2014-09-15 17:46 - 2014-08-23 03:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\System32\gdi32.dll
2014-09-15 17:46 - 2014-08-23 02:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-09-15 17:46 - 2014-08-23 01:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2014-09-15 17:46 - 2014-07-14 03:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll
2014-09-15 17:46 - 2014-07-14 02:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2014-09-15 16:23 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2014-09-15 16:23 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-09-15 16:23 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2014-09-15 16:23 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2014-09-15 16:23 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-09-15 16:22 - 2014-05-14 08:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2014-09-15 16:22 - 2014-05-14 08:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-09-15 16:22 - 2014-05-14 08:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2014-09-15 16:22 - 2014-05-14 08:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-26 12:02 - 2009-07-14 18:58 - 00765264 _____ () C:\Windows\System32\perfh007.dat
2014-09-26 12:02 - 2009-07-14 18:58 - 00174494 _____ () C:\Windows\System32\perfc007.dat
2014-09-26 12:02 - 2009-07-14 06:13 - 01806010 _____ () C:\Windows\System32\PerfStringBackup.INI
2014-09-26 11:26 - 2014-07-24 20:20 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-26 11:17 - 2014-06-21 12:00 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\MBAMSwissArmy.sys
2014-09-26 10:40 - 2009-07-14 05:45 - 00025392 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-26 10:40 - 2009-07-14 05:45 - 00025392 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-26 10:33 - 2014-07-24 20:20 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-26 10:32 - 2014-06-07 22:27 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-09-26 10:32 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-26 02:28 - 2014-06-18 11:48 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-26 01:07 - 2014-07-05 13:48 - 00000000 ____D () C:\Users\Asus\Desktop\Anwendungennnn
2014-09-26 00:57 - 2014-06-07 16:18 - 00000000 ____D () C:\Users\Asus\AppData\Local\VirtualStore
2014-09-25 23:06 - 2014-06-24 06:31 - 00000000 ____D () C:\Windows\pss
2014-09-25 19:44 - 2014-06-21 11:58 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Notepad++
2014-09-25 19:40 - 2014-07-08 23:14 - 00000000 ____D () C:\Windows\Minidump
2014-09-25 19:26 - 2014-07-23 19:04 - 00000000 ____D () C:\Program Files (x86)\Android
2014-09-25 19:16 - 2014-06-29 19:07 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\UseNeXT
2014-09-25 19:10 - 2014-06-29 19:07 - 00000000 ____D () C:\Users\Asus\Documents\UseNeXT
2014-09-25 15:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-09-25 10:14 - 2014-07-25 10:57 - 00000000 ____D () C:\Users\Asus\Documents\Visual Studio 2013
2014-09-25 05:28 - 2014-07-24 20:21 - 00002135 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-24 14:22 - 2014-06-07 16:17 - 00000000 ____D () C:\users\Asus
2014-09-24 13:03 - 2014-06-26 16:19 - 00000000 ____D () C:\Program Files (x86)\SpeedFan
2014-09-23 22:00 - 2014-06-26 19:58 - 00000000 ____D () C:\Users\Asus\Documents\Visual Studio 2010
2014-09-22 07:42 - 2014-06-07 14:25 - 00278152 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2014-09-20 01:05 - 2014-06-17 21:30 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\TeamViewer
2014-09-19 18:44 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\System32\GroupPolicy
2014-09-19 18:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-09-19 06:41 - 2014-07-04 10:35 - 00000000 ____D () C:\Users\Asus\AppData\Local\Apple Computer
2014-09-18 19:49 - 2014-06-22 19:17 - 00000000 ____D () C:\ProgramData\Origin
2014-09-18 19:47 - 2014-06-22 19:17 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-09-18 14:48 - 2014-07-04 10:35 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Apple Computer
2014-09-18 03:54 - 2014-07-22 16:02 - 00000000 ____D () C:\Users\Asus\AppData\Local\NVIDIA Corporation
2014-09-18 03:54 - 2014-06-07 22:27 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-09-18 03:54 - 2014-06-07 15:17 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-09-18 03:54 - 2014-06-07 15:17 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-09-18 00:34 - 2014-06-08 12:33 - 00000000 ____D () C:\ProgramData\Oracle
2014-09-18 00:33 - 2014-07-23 19:01 - 00319912 _____ (Oracle Corporation) C:\Windows\System32\javaws.exe
2014-09-18 00:33 - 2014-07-23 19:00 - 00191400 _____ (Oracle Corporation) C:\Windows\System32\javaw.exe
2014-09-18 00:33 - 2014-07-23 19:00 - 00190888 _____ (Oracle Corporation) C:\Windows\System32\java.exe
2014-09-18 00:33 - 2014-07-23 19:00 - 00111016 _____ (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll
2014-09-18 00:32 - 2014-07-23 18:59 - 00000000 ____D () C:\Program Files\Java
2014-09-18 00:32 - 2014-07-18 09:46 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-09-18 00:31 - 2014-06-08 12:32 - 00000000 ____D () C:\Program Files (x86)\Java
2014-09-17 14:31 - 2014-06-13 09:28 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-16 13:57 - 2014-07-15 21:36 - 00000000 ____D () C:\Users\Asus\AppData\Local\Microsoft_Corporation
2014-09-16 00:05 - 2014-07-28 15:45 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-09-15 23:57 - 2014-06-18 11:48 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-09-15 23:57 - 2014-06-08 12:24 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-15 21:59 - 2014-07-04 12:25 - 00007607 _____ () C:\Users\Asus\AppData\Local\Resmon.ResmonCfg
2014-09-15 18:40 - 2014-06-10 01:51 - 00000000 ___SD () C:\Windows\System32\CompatTel
2014-09-15 18:40 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-09-15 18:35 - 2014-06-26 20:01 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-09-15 18:35 - 2014-06-26 19:58 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-09-15 18:13 - 2014-06-09 23:50 - 01779354 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-15 18:11 - 2014-06-07 14:24 - 00001912 _____ () C:\Windows\epplauncher.mif
2014-09-15 18:11 - 2014-06-07 14:24 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-09-15 18:11 - 2014-06-07 14:24 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-09-15 18:04 - 2014-06-07 15:14 - 00000000 ____D () C:\Windows\System32\MRT
2014-08-29 12:01 - 2014-06-07 15:14 - 101694776 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points  =========================

Restore point made on: 2014-09-20 01:57:55
Restore point made on: 2014-09-20 02:56:11
Restore point made on: 2014-09-20 02:57:52
Restore point made on: 2014-09-22 16:50:26
Restore point made on: 2014-09-23 22:18:55
Restore point made on: 2014-09-24 12:01:00
Restore point made on: 2014-09-25 19:01:54
Restore point made on: 2014-09-25 19:16:10
Restore point made on: 2014-09-26 02:28:34
Restore point made on: 2014-09-26 02:37:46

==================== BCD ================================

Windows-Start-Manager
---------------------
Bezeichner              {bootmgr}
device                  partition=D:
description            Windows Boot Manager
locale                  de-DE
inherit                {globalsettings}
default                {default}
resumeobject            {9ee41840-ee4d-11e3-aea1-bc9f68f163aa}
displayorder            {default}
toolsdisplayorder      {memdiag}
timeout                30

Windows-Startladeprogramm
-------------------------
Bezeichner              {default}
device                  partition=C:
path                    \Windows\system32\winload.exe
description            Windows 7
locale                  de-DE
inherit                {bootloadersettings}
recoverysequence        {current}
recoveryenabled        Yes
osdevice                partition=C:
systemroot              \Windows
resumeobject            {9ee41840-ee4d-11e3-aea1-bc9f68f163aa}
nx                      OptIn
usefirmwarepcisettings  No
bootlog                Yes

Windows-Startladeprogramm
-------------------------
Bezeichner              {current}
device                  ramdisk=[C:]\Recovery\9ee41842-ee4d-11e3-aea1-bc9f68f163aa\Winre.wim,{9ee41843-ee4d-11e3-aea1-bc9f68f163aa}
path                    \windows\system32\winload.exe
description            Windows Recovery Environment
inherit                {bootloadersettings}
osdevice                ramdisk=[C:]\Recovery\9ee41842-ee4d-11e3-aea1-bc9f68f163aa\Winre.wim,{9ee41843-ee4d-11e3-aea1-bc9f68f163aa}
systemroot              \windows
nx                      OptIn
winpe                  Yes

Wiederaufnahme aus dem Ruhezustand
----------------------------------
Bezeichner              {9ee41840-ee4d-11e3-aea1-bc9f68f163aa}
device                  partition=C:
path                    \Windows\system32\winresume.exe
description            Windows Resume Application
locale                  de-DE
inherit                {resumeloadersettings}
filedevice              partition=C:
filepath                \hiberfil.sys
debugoptionenabled      No

Windows-Speichertestprogramm
----------------------------
Bezeichner              {memdiag}
device                  partition=D:
path                    \boot\memtest.exe
description            Windows-Speicherdiagnose
locale                  de-DE
inherit                {globalsettings}
badmemoryaccess        Yes

EMS-Einstellungen
-----------------
Bezeichner              {emssettings}
bootems                Yes

Debuggereinstellungen
---------------------
Bezeichner              {dbgsettings}
debugtype              Serial
debugport              1
baudrate                115200

RAM-Defekte
-----------
Bezeichner              {badmemory}

Globale Einstellungen
---------------------
Bezeichner              {globalsettings}
inherit                {dbgsettings}
                        {emssettings}
                        {badmemory}

Startladeprogramm-Einstellungen
-------------------------------
Bezeichner              {bootloadersettings}
inherit                {globalsettings}
                        {hypervisorsettings}

Hypervisoreinstellungen
-------------------
Bezeichner              {hypervisorsettings}
hypervisordebugtype    Serial
hypervisordebugport    1
hypervisorbaudrate      115200

Einstellungen zur Ladeprogrammfortsetzung
-----------------------------------------
Bezeichner              {resumeloadersettings}
inherit                {globalsettings}

Ger„teoptionen
--------------
Bezeichner              {9ee41843-ee4d-11e3-aea1-bc9f68f163aa}
description            Ramdisk Options
ramdisksdidevice        partition=C:
ramdisksdipath          \Recovery\9ee41842-ee4d-11e3-aea1-bc9f68f163aa\boot.sdi


==================== Memory info ===========================

Percentage of memory in use: 17%
Total physical RAM: 3959.08 MB
Available physical RAM: 3272.46 MB
Total Pagefile: 3957.23 MB
Available Pagefile: 3257.59 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:372.51 GB) (Free:236.98 GB) NTFS
Drive d: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (Volume) (Fixed) (Total:931.51 GB) (Free:931.39 GB) NTFS
Drive g: (WINSETUP) (Removable) (Total:0.23 GB) (Free:0.23 GB) FAT
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (Volume) (Fixed) (Total:74.53 GB) (Free:74.44 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 74.5 GB) (Disk ID: 709B18B2)
Partition 1: (Not Active) - (Size=74.5 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 372.6 GB) (Disk ID: 29EE208B)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=372.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: CA01EC50)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 241.8 MB) (Disk ID: 0036427C)
Partition 1: (Active) - (Size=234 MB) - (Type=06)
Partition 4: (Not Active) - (Size=39 MB) - (Type=00)


LastRegBack: 2014-09-18 13:07

==================== End Of Log ============================

--- --- ---

--- --- ---


MFG Netlogger :singsing:

Alois S 26.09.2014 13:52

Hallo netlogger,

bitte stelle deine Anfrage noch einmal im Malwarebereich, wie oben erwähnt, ja? - ich darf diese Logfiles nämlich nicht auswerten und mein Vorredner vermutlich auch nicht. :D

Liebe Grüße, Alois

JFrosch 26.09.2014 14:37

[QUOTE=Alois S;1364910]
bitte stelle deine Anfrage noch einmal im Malwarebereich, wie oben erwähnt, ja? - ich darf diese Logfiles nämlich nicht auswerten und mein Vorredner vermutlich auch nicht. :D
/QUOTE]

Hallo Alios S,

völlig richtig Dein Hinweis /Anmerkung zur Auswertung der Logfile, aber wir können Ihm ja den Hinweis geben nicht im Recovery Modus und mit dem FRST den Test zu machen.
Windows starte ja im normalen Betrieb.

Lieben Gruss Jörg.:abklatsch:

netlogger 27.09.2014 21:23

Ok werde ich machen :D

Danke Euch beiden für die Hilfe ;)

MFG Netlogger :D

Alois S 27.09.2014 22:48

Gern geschehen und viel Erfolg! :)

Liebe Grüße, Alois


Alle Zeitangaben in WEZ +1. Es ist jetzt 20:48 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131