JanThe12 | 25.09.2013 16:55 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-09-2013
Ran by JanThe12 (administrator) on JANTHE12-PC on 25-09-2013 15:19:32
Running from C:\Users\JanThe12\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
() d:\Program Files (x86)\CPUCooL\CooLSrv.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Dropbox, Inc.) C:\Users\JanThe12\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Boingo Wireless, Inc.) C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(DivX, LLC) C:\Program Files (x86)\DivX\DivX Plus Web Player\DDMService.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Windows\AsScrPro.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(asus) C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\update.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exe
(Avira Operations GmbH & Co. KG) c:\program files (x86)\avira\antivir desktop\avscan.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ASUS WebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324608 2010-01-18] (Alcor Micro Corp.)
HKLM\...\Run: [Setwallpaper] - c:\programdata\SetWallpaper.cmd
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11369576 2010-08-10] (Realtek Semiconductor)
HKCU\...\Run: [uTorrent] - D:\Users\uTorrent.exe [1051984 2013-04-15] (BitTorrent Inc.)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\JanThe12\AppData\Local\Akamai\netsession_win.exe [4441920 2012-10-09] (Akamai Technologies, Inc.)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-11-18] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKLM-x32\...\Run: [UpdateLBPShortCut] - C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Boingo Wi-Fi] - C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2429 2010-11-18] ()
HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912 2010-02-05] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-01-05] (ASUS)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440 2010-07-02] ()
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1226608 2010-12-09] ()
HKLM-x32\...\Run: [DivX Download Manager] - C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe [63360 2010-12-08] (DivX, LLC)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-03] (CyberLink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUS Screen Saver Protector] - C:\Windows\AsScrPro.exe [3054136 2010-11-18] (ASUS)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
Startup: C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPUCooL.lnk
ShortcutTarget: CPUCooL.lnk -> D:\Program Files (x86)\CPUCooL\CPUCooL.exe ()
Startup: C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\JanThe12\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll No File
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
Toolbar: HKLM - No Name - !{120A8821-2BEE-4C29-BCDA-62C577781992} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll No File
Toolbar: HKLM-x32 - No Name - !{120A8821-2BEE-4C29-BCDA-62C577781992} - No File
Toolbar: HKLM-x32 - No Name - !{872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 01 %SystemRoot%\System32\mswsock.dll [232448] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\JanThe12\AppData\Roaming\Mozilla\Firefox\Profiles\p9slhnqa.default
FF NewTab: user_pref("browser.newtab.url", "");
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX OVS Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/JavaPlugin - F:\meine sachen 2\scheisse 2\bin\plugin2\npjp2.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\JanThe12\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Amazon-Icon - C:\Users\JanThe12\AppData\Roaming\Mozilla\Firefox\Profiles\p9slhnqa.default\Extensions\amazon-icon@winload.de
FF Extension: Recorder Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\{10743931-94DF-476f-A987-4391233C17A2}
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll ()
CHR Plugin: (Java Deployment Toolkit 6.0.230.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Mozilla Firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (DivX OVS Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Unity Player) - C:\Users\JanThe12\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Extension: (Google Docs) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (DivX HiQ) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_1
CHR Extension: (Skype Click to Call) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.2.0.10687_1
CHR Extension: (Amazon-Icon) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg\1.0_1
CHR Extension: (Chrome In-App Payments service) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_1
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.0.900_1
CHR Extension: (Gmail) - C:\Users\JanThe12\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [ccbgjfdieajmokelnlapbedknchgenne] - C:\Users\JanThe12\AppData\Local\Temp\ccex.crx
CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\JanThe12\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx
==================== Services (Whitelisted) =================
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-31] (Akamai Technologies, Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2011-07-28] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 CPUCooLServer; d:\Program Files (x86)\CPUCooL\CooLSrv.exe [743936 2011-12-01] ()
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 npggsvc; C:\Windows\SysWow64\GameMon.des [4023760 2010-11-30] (INCA Internet Co., Ltd.)
S4 RemoteAccess; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S2 Hamachi2Svc; "F:\meine sachen 2\scheisse 2\hamachi-2.exe" -s [x]
==================== Drivers (Whitelisted) ====================
R2 AODDriver4.01; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55424 2011-06-24] (Advanced Micro Devices)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-08] (Avira Operations GmbH & Co. KG)
S3 AX88772; C:\Windows\System32\DRIVERS\ax88772.sys [79360 2011-06-01] (ASIX Electronics Corp.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [279616 2011-12-22] (DT Soft Ltd)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 NPPTNT2; C:\Windows\SysWow64\npptNT2.sys [4682 2004-12-30] (INCA Internet Co., Ltd.)
R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] ()
S3 s1018bus; C:\Windows\System32\DRIVERS\s1018bus.sys [113704 2009-03-25] (MCCI Corporation)
S3 s1018mdfl; C:\Windows\System32\DRIVERS\s1018mdfl.sys [19496 2009-03-25] (MCCI Corporation)
S3 s1018mdm; C:\Windows\System32\DRIVERS\s1018mdm.sys [153128 2009-03-25] (MCCI Corporation)
S3 s1018mgmt; C:\Windows\System32\DRIVERS\s1018mgmt.sys [133160 2009-03-25] (MCCI Corporation)
S3 s1018nd5; C:\Windows\System32\DRIVERS\s1018nd5.sys [34856 2009-03-25] (MCCI Corporation)
S3 s1018obex; C:\Windows\System32\DRIVERS\s1018obex.sys [128552 2009-03-25] (MCCI Corporation)
S3 s1018unic; C:\Windows\System32\DRIVERS\s1018unic.sys [146472 2009-03-25] (MCCI Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800192 2009-08-20] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [526392 2011-10-16] ()
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 dump_wmimmc; \??\D:\Program Files\gPotato.eu\Rappelz\GameGuard\dump_wmimmc.sys [x]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [x]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [x]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [x]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [x]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [x]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [x]
S3 NPPTNT2; \??\C:\Windows\system32\npptNT2.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-25 15:19 - 2013-09-25 15:19 - 97729025 _____ C:\Windows\SysWOW64\▕ೞḼ¤
2013-09-24 18:36 - 2013-09-24 18:36 - 00062638 _____ C:\Users\JanThe12\Downloads\FRST.txt
2013-09-24 18:32 - 2013-09-24 18:32 - 01955802 _____ (Farbar) C:\Users\JanThe12\Desktop\FRST64.exe
2013-09-24 18:24 - 2013-09-24 18:25 - 00891144 _____ C:\Users\JanThe12\Desktop\SecurityCheck.exe
2013-09-24 16:04 - 2013-09-24 16:04 - 97531747 _____ C:\Windows\SysWOW64\悞槗Ḽ¡
2013-09-23 20:59 - 2013-09-23 20:59 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (2).exe
2013-09-23 19:58 - 2013-09-23 19:58 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (1).exe
2013-09-23 19:21 - 2013-09-23 19:21 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\CyberLink
2013-09-23 18:41 - 2013-09-23 18:41 - 98674763 _____ C:\Windows\SysWOW64\�ꀶḼW
2013-09-23 18:18 - 2013-09-23 18:18 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu.exe
2013-09-23 18:18 - 2013-09-23 18:18 - 00000000 ____D C:\Program Files (x86)\ESET
2013-09-22 21:57 - 2013-09-22 21:57 - 00026251 _____ C:\Users\JanThe12\Desktop\JRT.txt
2013-09-22 21:36 - 2013-09-22 21:36 - 00000000 ____D C:\Windows\ERUNT
2013-09-22 21:32 - 2013-09-22 21:32 - 01030038 _____ (Thisisu) C:\Users\JanThe12\Desktop\JRT.exe
2013-09-22 21:21 - 2013-09-22 21:24 - 00000000 ____D C:\AdwCleaner
2013-09-22 21:20 - 2013-09-22 21:21 - 01039554 _____ C:\Users\JanThe12\Desktop\adwcleaner.exe
2013-09-22 20:54 - 2013-09-22 20:54 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Malwarebytes
2013-09-22 20:53 - 2013-09-22 20:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-22 20:53 - 2013-09-22 20:53 - 00001075 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-22 20:53 - 2013-09-22 20:53 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-22 20:53 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-09-22 20:51 - 2013-09-22 20:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\JanThe12\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-22 15:47 - 2013-09-22 15:47 - 00032130 _____ C:\ComboFix.txt
2013-09-22 15:36 - 2013-09-22 21:13 - 00010806 _____ C:\Windows\PFRO.log
2013-09-22 15:17 - 2013-09-24 18:23 - 00089584 _____ C:\Windows\WindowsUpdate.log
2013-09-22 09:12 - 2013-09-22 09:12 - 05128554 _____ (Swearware) C:\Users\JanThe12\Downloads\ComboFix (1).exe
2013-09-22 00:41 - 2013-09-22 00:41 - 00000000 ___HD C:\Windows\PIF
2013-09-21 23:06 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-09-21 23:06 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-09-21 23:06 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-09-21 23:06 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-09-21 23:03 - 2013-09-22 15:47 - 00000000 ____D C:\Qoobox
2013-09-21 23:03 - 2013-09-22 15:42 - 00000000 ____D C:\Windows\erdnt
2013-09-21 22:35 - 2013-09-21 22:36 - 05128554 ____R (Swearware) C:\Users\JanThe12\Downloads\ComboFix.exe
2013-09-21 21:57 - 2013-09-21 21:58 - 00035127 _____ C:\Users\JanThe12\Downloads\Addition.txt
2013-09-21 21:53 - 2013-09-24 20:49 - 00000000 ____D C:\FRST
2013-09-21 21:16 - 2013-09-22 21:32 - 00000800 _____ C:\Users\JanThe12\Desktop\jj.txt
2013-09-21 21:16 - 2013-09-21 21:16 - 00003220 _____ C:\Users\JanThe12\Documents\Ereignisse.txt
2013-09-21 21:03 - 2013-09-21 21:03 - 00002898 _____ C:\Users\JanThe12\Desktop\Ereignisse2.txt
2013-09-21 20:55 - 2013-09-21 20:55 - 00126938 _____ C:\Users\JanThe12\Desktop\Ereignisse.txt
2013-09-21 19:50 - 2013-09-21 19:50 - 00602112 _____ (OldTimer Tools) C:\Users\JanThe12\Downloads\OTL.exe
2013-09-21 19:18 - 2013-09-21 19:18 - 00000704 _____ C:\Users\JanThe12\Desktop\CPUCooL.lnk
2013-09-21 19:18 - 2013-09-21 19:18 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CPUCooL
2013-09-21 19:05 - 2013-09-21 19:06 - 04200348 _____ C:\Users\JanThe12\Downloads\CPUCOOL9.EXE
2013-09-21 18:50 - 2013-09-24 18:13 - 00000672 _____ C:\Windows\setupact.log
2013-09-21 18:50 - 2013-09-21 18:50 - 00000000 _____ C:\Windows\setuperr.log
2013-09-21 15:58 - 2013-09-21 15:58 - 00000022 _____ C:\Users\JanThe12\Desktop\Neuer ZIP-komprimierter Ordner.zip
2013-09-21 15:29 - 2013-09-21 15:29 - 98547399 _____ C:\Windows\SysWOW64\ꮾ껴Ḽ™
2013-09-21 12:35 - 2013-09-21 12:35 - 00014274 _____ C:\Users\JanThe12\Downloads\21F75A164209ABBDD4BF05E363189B84D1947FB9.torrent
2013-09-21 09:29 - 2013-09-21 09:29 - 98498750 _____ C:\Windows\SysWOW64\㴛ᆈḼA
2013-09-20 17:46 - 2013-09-20 17:46 - 00000000 ____D C:\Users\JanThe12\Documents\Games for Windows - LIVE Demos
2013-09-20 17:44 - 2013-09-20 17:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-09-20 17:44 - 2013-09-20 17:44 - 00000000 ____D C:\Windows\SysWOW64\xlive
2013-09-20 17:40 - 2013-09-20 17:41 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-09-19 15:16 - 2013-09-19 15:16 - 00000000 ____D C:\Users\JanThe12\Documents\My Cheat Tables
2013-09-18 20:36 - 2013-08-27 02:52 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Game Dev Tycoon
2013-09-18 20:35 - 2013-09-18 20:36 - 00000000 ____D C:\Program Files (x86)\Game Dev Tycoon
2013-09-18 01:30 - 2013-09-18 01:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 01:30 - 2013-09-18 01:30 - 00000000 ____D C:\ProgramData\Mozilla
2013-09-17 19:55 - 24753-01-26 06:13 - 3199631360 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-17 16:14 - 2013-09-17 18:30 - 1404459941 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It) (1).7z
2013-09-16 17:37 - 2013-09-16 19:59 - 1199253032 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-16 15:40 - 24753-01-26 06:13 - 3148382208 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-16 13:23 - 2013-09-16 15:38 - 1415234514 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-15 15:31 - 2013-09-15 20:55 - 2003530963 _____ C:\Users\JanThe12\Downloads\Need for Speed - Underground 2 (Europe) (En,Fr,De,Es,It,Nl,Sv,Da).7z
2013-09-15 13:03 - 2013-09-15 13:03 - 00933417 _____ C:\Users\JanThe12\Downloads\WarGear V6.zip
2013-09-14 19:14 - 2013-09-14 19:14 - 00000000 ____D C:\Users\JanThe12\Documents\PCSX2
2013-09-13 17:51 - 2013-09-13 22:16 - 2372181055 _____ C:\Users\JanThe12\Downloads\Buzz! Hollywood (Europe) (Es,Pt).7z
2013-09-13 17:43 - 2013-09-13 18:43 - 392259125 _____ C:\Users\JanThe12\Downloads\Crash Bandicoot (E) (EDC) [SCES-00344].7z
2013-09-13 17:16 - 2013-09-13 17:17 - 11355145 _____ C:\Users\JanThe12\Downloads\ePSXe_1.8.0.rar
2013-09-13 15:03 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-09-13 15:03 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-09-13 15:03 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-09-13 15:03 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-09-13 15:03 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-09-13 15:03 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-09-13 15:03 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-09-13 15:03 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-09-13 15:03 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-09-13 15:03 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-09-13 15:03 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-09-13 15:02 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-09-13 14:36 - 2013-09-13 14:36 - 02994265 _____ C:\Users\JanThe12\Downloads\a_galaxy_divided_v11.1.rar
2013-09-13 14:33 - 2013-09-13 14:33 - 00850069 _____ C:\Users\JanThe12\Downloads\spacewarinland.rar
2013-09-13 14:27 - 2013-09-13 14:27 - 00071386 _____ C:\Users\JanThe12\Downloads\1vs1_critical_distance_by_soong.zip
2013-09-13 13:12 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-13 13:12 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-13 13:12 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-13 13:12 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-13 13:12 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-13 13:12 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-13 13:12 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 13:12 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-13 13:11 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-13 13:11 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-13 13:11 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-13 13:11 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-13 13:11 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-13 13:11 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-13 13:11 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-13 13:11 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-12 13:06 - 2013-09-12 13:06 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LucasArts
2013-09-12 12:32 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-12 12:32 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-09-12 12:32 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-09-12 12:32 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-09-12 12:32 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2013-09-12 12:32 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-12 12:32 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2013-09-12 12:32 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-12 12:32 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-09-12 12:32 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-09-12 12:32 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2013-09-12 12:32 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-12 12:32 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-09-12 12:32 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-09-12 12:32 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-09-12 12:32 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 12:32 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-12 12:32 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-12 12:31 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-12 12:31 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-09-12 12:31 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-09-11 19:08 - 2013-09-11 19:08 - 05926929 _____ C:\Users\JanThe12\Downloads\eawmapeditor.zip
2013-09-07 19:47 - 2013-09-07 19:53 - 00000000 ____D C:\Users\JanThe12\Documents\Stronghold 2
2013-09-02 22:02 - 2013-09-02 22:02 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Unity
2013-09-02 22:01 - 2013-09-02 22:01 - 00648240 _____ (Unity Technologies ApS) C:\Users\JanThe12\Downloads\UnityWebPlayer.exe
2013-09-02 15:44 - 2013-09-02 15:44 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Ston bricker (1.6) - Kopie
2013-08-31 14:03 - 2013-08-31 14:03 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon Backups
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03.zip
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03 (1).zip
2013-08-30 13:53 - 2013-08-30 13:53 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27 (1).zip
2013-08-30 13:52 - 2013-08-30 13:52 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27.zip
2013-08-29 23:44 - 2013-08-29 23:44 - 00012191 _____ C:\Users\JanThe12\Downloads\[kickass.to]need.for.speed.most.wanted.pc.cd.iso.torrent
2013-08-28 18:23 - 2013-08-28 18:23 - 00002403 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger.zip
2013-08-28 17:57 - 2013-09-21 15:45 - 00000000 ____D C:\Windows\Minidump
2013-08-28 17:29 - 2013-08-28 17:29 - 00002124 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger_ger2eng-steve.zip
2013-08-28 17:26 - 2013-08-31 14:37 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon
2013-08-28 17:20 - 2013-08-28 17:20 - 02394295 _____ C:\Users\JanThe12\Downloads\vty-nsc4.rar
2013-08-28 16:19 - 2013-08-28 16:21 - 08904704 _____ C:\Users\JanThe12\Downloads\nfsc.exe
2013-08-27 19:43 - 2013-08-27 19:43 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (2).torrent
2013-08-27 19:36 - 2013-08-27 19:36 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (1).torrent
2013-08-27 19:08 - 2013-08-27 19:08 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t.torrent
2013-08-27 18:55 - 2013-09-21 15:47 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\DAEMON Tools Lite
2013-08-27 16:35 - 2013-09-20 13:46 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\.minecraft
2013-08-27 10:08 - 2013-09-13 13:11 - 00000000 ____D C:\Windows\system32\MRT
==================== One Month Modified Files and Folders =======
24753-01-26 06:13 - 2013-09-17 19:55 - 3199631360 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
24753-01-26 06:13 - 2013-09-16 15:40 - 3148382208 ____N C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).iso
2013-09-25 15:19 - 2013-09-25 15:19 - 97729025 _____ C:\Windows\SysWOW64\▕ೞḼ¤
2013-09-25 15:18 - 2013-09-22 15:17 - 00089584 _____ C:\Windows\WindowsUpdate.log
2013-09-25 15:18 - 2012-05-25 22:43 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-25 15:18 - 2012-01-01 14:15 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Skype
2013-09-25 15:18 - 2010-11-18 03:24 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-25 15:18 - 2010-11-18 03:24 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-24 20:49 - 2013-09-21 21:53 - 00000000 ____D C:\FRST
2013-09-24 19:11 - 2012-05-25 22:43 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-09-24 19:11 - 2012-05-25 22:43 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-24 19:11 - 2012-05-25 22:43 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-09-24 18:36 - 2013-09-24 18:36 - 00062638 _____ C:\Users\JanThe12\Downloads\FRST.txt
2013-09-24 18:32 - 2013-09-24 18:32 - 01955802 _____ (Farbar) C:\Users\JanThe12\Desktop\FRST64.exe
2013-09-24 18:28 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-24 18:28 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-24 18:25 - 2013-09-24 18:24 - 00891144 _____ C:\Users\JanThe12\Desktop\SecurityCheck.exe
2013-09-24 18:17 - 2011-12-19 23:37 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\uTorrent
2013-09-24 18:16 - 2011-10-30 18:00 - 00000439 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2013-09-24 18:15 - 2013-02-11 21:13 - 00000000 ___RD C:\Users\JanThe12\Dropbox
2013-09-24 18:15 - 2013-02-11 21:07 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Dropbox
2013-09-24 18:13 - 2013-09-21 18:50 - 00000672 _____ C:\Windows\setupact.log
2013-09-24 18:13 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-24 17:19 - 2009-07-14 07:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-24 16:04 - 2013-09-24 16:04 - 97531747 _____ C:\Windows\SysWOW64\悞槗Ḽ¡
2013-09-23 20:59 - 2013-09-23 20:59 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (2).exe
2013-09-23 19:58 - 2013-09-23 19:58 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu (1).exe
2013-09-23 19:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-09-23 19:21 - 2013-09-23 19:21 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\CyberLink
2013-09-23 18:41 - 2013-09-23 18:41 - 98674763 _____ C:\Windows\SysWOW64\�ꀶḼW
2013-09-23 18:18 - 2013-09-23 18:18 - 02347384 _____ (ESET) C:\Users\JanThe12\Downloads\esetsmartinstaller_enu.exe
2013-09-23 18:18 - 2013-09-23 18:18 - 00000000 ____D C:\Program Files (x86)\ESET
2013-09-22 21:57 - 2013-09-22 21:57 - 00026251 _____ C:\Users\JanThe12\Desktop\JRT.txt
2013-09-22 21:36 - 2013-09-22 21:36 - 00000000 ____D C:\Windows\ERUNT
2013-09-22 21:32 - 2013-09-22 21:32 - 01030038 _____ (Thisisu) C:\Users\JanThe12\Desktop\JRT.exe
2013-09-22 21:32 - 2013-09-21 21:16 - 00000800 _____ C:\Users\JanThe12\Desktop\jj.txt
2013-09-22 21:24 - 2013-09-22 21:21 - 00000000 ____D C:\AdwCleaner
2013-09-22 21:24 - 2013-04-13 13:27 - 00001252 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-09-22 21:24 - 2013-01-28 00:29 - 00001003 _____ C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-09-22 21:21 - 2013-09-22 21:20 - 01039554 _____ C:\Users\JanThe12\Desktop\adwcleaner.exe
2013-09-22 21:13 - 2013-09-22 15:36 - 00010806 _____ C:\Windows\PFRO.log
2013-09-22 21:13 - 2011-01-01 19:17 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2013-09-22 20:54 - 2013-09-22 20:54 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Malwarebytes
2013-09-22 20:54 - 2013-09-22 20:53 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-22 20:53 - 2013-09-22 20:53 - 00001075 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-22 20:53 - 2013-09-22 20:53 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-22 20:52 - 2013-09-22 20:51 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\JanThe12\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-22 15:47 - 2013-09-22 15:47 - 00032130 _____ C:\ComboFix.txt
2013-09-22 15:47 - 2013-09-21 23:03 - 00000000 ____D C:\Qoobox
2013-09-22 15:47 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default
2013-09-22 15:42 - 2013-09-21 23:03 - 00000000 ____D C:\Windows\erdnt
2013-09-22 15:39 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-09-22 15:12 - 2011-01-25 21:04 - 00000000 ____D C:\Users\JanThe12\Tracing
2013-09-22 09:12 - 2013-09-22 09:12 - 05128554 _____ (Swearware) C:\Users\JanThe12\Downloads\ComboFix (1).exe
2013-09-22 00:41 - 2013-09-22 00:41 - 00000000 ___HD C:\Windows\PIF
2013-09-21 22:36 - 2013-09-21 22:35 - 05128554 ____R (Swearware) C:\Users\JanThe12\Downloads\ComboFix.exe
2013-09-21 21:58 - 2013-09-21 21:57 - 00035127 _____ C:\Users\JanThe12\Downloads\Addition.txt
2013-09-21 21:16 - 2013-09-21 21:16 - 00003220 _____ C:\Users\JanThe12\Documents\Ereignisse.txt
2013-09-21 21:03 - 2013-09-21 21:03 - 00002898 _____ C:\Users\JanThe12\Desktop\Ereignisse2.txt
2013-09-21 20:55 - 2013-09-21 20:55 - 00126938 _____ C:\Users\JanThe12\Desktop\Ereignisse.txt
2013-09-21 19:50 - 2013-09-21 19:50 - 00602112 _____ (OldTimer Tools) C:\Users\JanThe12\Downloads\OTL.exe
2013-09-21 19:19 - 2011-01-01 19:23 - 00000000 ___RD C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-09-21 19:18 - 2013-09-21 19:18 - 00000704 _____ C:\Users\JanThe12\Desktop\CPUCooL.lnk
2013-09-21 19:18 - 2013-09-21 19:18 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CPUCooL
2013-09-21 19:06 - 2013-09-21 19:05 - 04200348 _____ C:\Users\JanThe12\Downloads\CPUCOOL9.EXE
2013-09-21 18:50 - 2013-09-21 18:50 - 00000000 _____ C:\Windows\setuperr.log
2013-09-21 16:19 - 2011-01-02 19:27 - 00000000 __RHD C:\Users\JanThe12\Desktop\meine sachen
2013-09-21 16:01 - 2010-11-18 03:24 - 00000000 ____D C:\Program Files (x86)\Google
2013-09-21 15:58 - 2013-09-21 15:58 - 00000022 _____ C:\Users\JanThe12\Desktop\Neuer ZIP-komprimierter Ordner.zip
2013-09-21 15:47 - 2013-08-27 18:55 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\DAEMON Tools Lite
2013-09-21 15:47 - 2011-12-01 17:49 - 00000000 ____D C:\Users\JanThe12\AppData\Local\LogMeIn Hamachi
2013-09-21 15:45 - 2013-08-28 17:57 - 00000000 ____D C:\Windows\Minidump
2013-09-21 15:45 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther
2013-09-21 15:29 - 2013-09-21 15:29 - 98547399 _____ C:\Windows\SysWOW64\ꮾ껴Ḽ™
2013-09-21 12:35 - 2013-09-21 12:35 - 00014274 _____ C:\Users\JanThe12\Downloads\21F75A164209ABBDD4BF05E363189B84D1947FB9.torrent
2013-09-21 12:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-09-21 11:58 - 2011-01-01 23:58 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Google
2013-09-21 09:29 - 2013-09-21 09:29 - 98498750 _____ C:\Windows\SysWOW64\㴛ᆈḼA
2013-09-20 17:47 - 2012-07-16 14:10 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft Games
2013-09-20 17:46 - 2013-09-20 17:46 - 00000000 ____D C:\Users\JanThe12\Documents\Games for Windows - LIVE Demos
2013-09-20 17:45 - 2013-09-20 17:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-09-20 17:44 - 2013-09-20 17:44 - 00000000 ____D C:\Windows\SysWOW64\xlive
2013-09-20 17:41 - 2013-09-20 17:40 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-09-20 13:46 - 2013-08-27 16:35 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\.minecraft
2013-09-19 15:16 - 2013-09-19 15:16 - 00000000 ____D C:\Users\JanThe12\Documents\My Cheat Tables
2013-09-18 20:36 - 2013-09-18 20:35 - 00000000 ____D C:\Program Files (x86)\Game Dev Tycoon
2013-09-18 20:17 - 2013-03-29 16:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-18 01:31 - 2013-09-18 01:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 01:30 - 2013-09-18 01:30 - 00000000 ____D C:\ProgramData\Mozilla
2013-09-17 18:30 - 2013-09-17 16:14 - 1404459941 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It) (1).7z
2013-09-16 19:59 - 2013-09-16 17:37 - 1199253032 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 3 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-16 15:38 - 2013-09-16 13:23 - 1415234514 _____ C:\Users\JanThe12\Downloads\DragonBall Z - Budokai Tenkaichi 2 (Europe, Australia) (En,Ja,Fr,De,Es,It).7z
2013-09-15 20:55 - 2013-09-15 15:31 - 2003530963 _____ C:\Users\JanThe12\Downloads\Need for Speed - Underground 2 (Europe) (En,Fr,De,Es,It,Nl,Sv,Da).7z
2013-09-15 16:42 - 2011-01-01 19:23 - 00000000 ___RD C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-09-15 16:35 - 2009-07-14 06:45 - 00323584 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-15 13:03 - 2013-09-15 13:03 - 00933417 _____ C:\Users\JanThe12\Downloads\WarGear V6.zip
2013-09-14 19:14 - 2013-09-14 19:14 - 00000000 ____D C:\Users\JanThe12\Documents\PCSX2
2013-09-14 12:36 - 2009-08-04 11:51 - 00708494 _____ C:\Windows\system32\perfh007.dat
2013-09-14 12:36 - 2009-08-04 11:51 - 00152098 _____ C:\Windows\system32\perfc007.dat
2013-09-14 12:36 - 2009-07-14 07:13 - 01666092 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-13 22:16 - 2013-09-13 17:51 - 2372181055 _____ C:\Users\JanThe12\Downloads\Buzz! Hollywood (Europe) (Es,Pt).7z
2013-09-13 18:43 - 2013-09-13 17:43 - 392259125 _____ C:\Users\JanThe12\Downloads\Crash Bandicoot (E) (EDC) [SCES-00344].7z
2013-09-13 17:17 - 2013-09-13 17:16 - 11355145 _____ C:\Users\JanThe12\Downloads\ePSXe_1.8.0.rar
2013-09-13 14:36 - 2013-09-13 14:36 - 02994265 _____ C:\Users\JanThe12\Downloads\a_galaxy_divided_v11.1.rar
2013-09-13 14:33 - 2013-09-13 14:33 - 00850069 _____ C:\Users\JanThe12\Downloads\spacewarinland.rar
2013-09-13 14:27 - 2013-09-13 14:27 - 00071386 _____ C:\Users\JanThe12\Downloads\1vs1_critical_distance_by_soong.zip
2013-09-13 13:11 - 2013-08-27 10:08 - 00000000 ____D C:\Windows\system32\MRT
2013-09-13 13:04 - 2011-03-28 21:11 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-12 13:06 - 2013-09-12 13:06 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LucasArts
2013-09-12 13:03 - 2013-08-03 18:51 - 00000000 ____D C:\Program Files (x86)\LucasArts
2013-09-11 19:08 - 2013-09-11 19:08 - 05926929 _____ C:\Users\JanThe12\Downloads\eawmapeditor.zip
2013-09-07 19:53 - 2013-09-07 19:47 - 00000000 ____D C:\Users\JanThe12\Documents\Stronghold 2
2013-09-06 01:14 - 2011-01-01 19:17 - 00070336 _____ C:\Users\JanThe12\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-05 14:01 - 2013-08-24 17:55 - 00000328 _____ C:\Users\JanThe12\Desktop\Neues Textdokument.txt
2013-09-03 12:45 - 2013-08-13 17:21 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-09-03 12:45 - 2013-08-13 17:16 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-09-03 12:45 - 2013-08-13 17:16 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-09-02 22:02 - 2013-09-02 22:02 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Unity
2013-09-02 22:01 - 2013-09-02 22:01 - 00648240 _____ (Unity Technologies ApS) C:\Users\JanThe12\Downloads\UnityWebPlayer.exe
2013-09-02 15:44 - 2013-09-02 15:44 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Ston bricker (1.6) - Kopie
2013-08-31 14:37 - 2013-08-28 17:26 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon
2013-08-31 14:03 - 2013-08-31 14:03 - 00000000 ____D C:\Users\JanThe12\Documents\NFS Carbon Backups
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03.zip
2013-08-31 14:01 - 2013-08-31 14:01 - 01785370 _____ C:\Users\JanThe12\Downloads\carbonpanel_1.03 (1).zip
2013-08-30 13:53 - 2013-08-30 13:53 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27 (1).zip
2013-08-30 13:52 - 2013-08-30 13:52 - 00106341 _____ C:\Users\JanThe12\Downloads\saveeditor_1.27.zip
2013-08-29 23:44 - 2013-08-29 23:44 - 00012191 _____ C:\Users\JanThe12\Downloads\[kickass.to]need.for.speed.most.wanted.pc.cd.iso.torrent
2013-08-28 18:23 - 2013-08-28 18:23 - 00002403 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger.zip
2013-08-28 17:56 - 2011-08-01 14:31 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2013-08-28 17:29 - 2013-08-28 17:29 - 00002124 _____ C:\Users\JanThe12\Downloads\nfsc_eng2ger_ger2eng-steve.zip
2013-08-28 17:20 - 2013-08-28 17:20 - 02394295 _____ C:\Users\JanThe12\Downloads\vty-nsc4.rar
2013-08-28 16:53 - 2011-01-01 21:35 - 00000000 ____D C:\Users\JanThe12\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-08-28 16:21 - 2013-08-28 16:19 - 08904704 _____ C:\Users\JanThe12\Downloads\nfsc.exe
2013-08-27 19:43 - 2013-08-27 19:43 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (2).torrent
2013-08-27 19:36 - 2013-08-27 19:36 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t (1).torrent
2013-08-27 19:08 - 2013-08-27 19:08 - 00023015 _____ C:\Users\JanThe12\Downloads\NeedForSpeedCarbonPCh33t.torrent
2013-08-27 10:07 - 2011-08-04 23:16 - 01621994 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-08-27 02:52 - 2013-09-18 20:36 - 00000000 ____D C:\Users\JanThe12\AppData\Local\Game Dev Tycoon
Some content of TEMP:
====================
C:\Users\JanThe12\AppData\Local\Temp\Quarantine.exe
C:\Users\JanThe12\AppData\Local\Temp\utt114E.tmp.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-01 21:04
==================== End Of Log ============================ --- --- ---
--- --- ---
Ich glaub der Virus ist weg bis jetzt ist mein pc nicht aufgehenckt und Avira hat heute noch keine Meldung gezeigt^^ hoffe das der Virus würglich weg ist :D |