Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   "search.ueep.com" und "Antivirus Security Pro" entfernen (https://www.trojaner-board.de/143546-search-ueep-com-antivirus-security-pro-entfernen.html)

hemmy 29.10.2013 21:59

ja ich habe alles in der beschriebenen Reihenfolge gemacht :s
Aber immernoch alles wie vorher :(

schrauber 30.10.2013 12:57

MBAM updaten, Scan, alles löschen lassen. AdwCleaner löschen, neu laden. Scannen, löschen lassen.

Dann FRST fix wiederholen, dann frisches FRST log bitte.

hemmy 30.10.2013 18:28

Fixlog:
Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 30-10-2013
Ran by User at 2013-10-30 18:25:55 Run:3
Running from C:\Users\User\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = search.ueep.com
SearchScopes: HKCU - DefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - URL hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - BrowserMngrDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
CHR HomePage: search.ueep.com
CHR RestoreOnStartup: "search.ueep.com"
CHR DefaultSearchURL: (Web) - hxxp://search.ueep.com/?q={searchTerms}
CHR DefaultSuggestURL: (Web) -      "suggest_url": "",
S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [x]
S3 X6va013; \??\C:\Windows\SysWOW64\Drivers\X6va013 [x]
S3 X6va014; \??\C:\Windows\SysWOW64\Drivers\X6va014 [x]
FF Homepage: search.ueep.com
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\pvkyw8oi.default\user.js
       
*****************

HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => Value not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\BrowserMngr Start Page => Value not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\BrowserMngrDefaultScope => Value not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} => Key not found.
HKCR\CLSID\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} => Key not found.
CHR HomePage: search.ueep.com ==> The Chrome "Settings" can be used to fix the entry.
CHR RestoreOnStartup: "search.ueep.com" ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSearchURL: (Web) - hxxp://search.ueep.com/?q={searchTerms} ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSuggestURL: (Web) -      "suggest_url": "", ==> The Chrome "Settings" can be used to fix the entry.
X6va012 => Service not found.
X6va013 => Service not found.
X6va014 => Service not found.
Firefox homepage deleted successfully.
Firefox Keyword.URL deleted successfully.
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\pvkyw8oi.default\user.js not found.

==== End of Fixlog ====


FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-10-2013
Ran by User (administrator) on USER-PC on 30-10-2013 18:26:45
Running from C:\Users\User\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
() C:\Users\User\AppData\Roaming\HPP\wupdte.exe
(Apple Inc.) I:\Programme\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2011-08-16] (Realtek Semiconductor)
HKLM\...\Run: [MedionReminder] - C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKCU\...\Run: [UeepDefender] - C:\Users\User\AppData\Roaming\UeepDefender.exe [999936 2013-10-10] (Microsoft)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - I:\Programme\iTunes\iTunesHelper.exe [152392 2013-10-19] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
AppInit_DLLs:  [129 2009-10-23] ()

==================== Internet (Whitelisted) ====================

StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\pvkyw8oi.default
FF Homepage: google.de
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - I:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\pvkyw8oi.default\searchplugins\Search the Web.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml

Chrome:
=======
CHR HomePage: search.ueep.com
CHR RestoreOnStartup: "search.ueep.com"
CHR DefaultSearchURL: (Web) - hxxp://search.ueep.com/?q={searchTerms}
CHR DefaultSuggestURL: (Web) -      "suggest_url": "",
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java(TM) Platform SE 7 U2) - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll No File
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File
CHR Extension: (Kaspersky URL Advisor) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0
CHR Extension: (Virtual Keyboard) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0
CHR Extension: (DVDVideoSoft) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.2.3.3_0

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-05-28] (Avira Operations GmbH & Co. KG)
R3 KovaPlusFltr; C:\Windows\System32\drivers\KovaPlusFltr.sys [15104 2010-01-25] (ROCCAT Development, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz135; \??\C:\Users\User\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files\NewBlue
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-10-30 17:32 - 2013-10-30 17:32 - 01956614 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-29 23:14 - 2013-10-29 23:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-28 22:07 - 2013-10-30 17:34 - 00001183 _____ C:\Users\User\Desktop\Mozilla Firefox.lnk
2013-10-28 21:45 - 2013-10-18 02:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-28 21:45 - 2013-10-18 02:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-28 21:45 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-10-28 21:45 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-10-28 21:38 - 2013-10-30 16:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-10-28 21:12 - 2013-10-28 21:13 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:06 - 2013-10-28 21:10 - 00000496 _____ C:\Users\User\Desktop\sadasdf.txt
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:39 - 2013-10-28 14:30 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:34 - 2013-10-27 12:35 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:29 - 2013-10-30 18:24 - 00000000 ____D C:\AdwCleaner
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:11 - 2013-10-26 21:19 - 00000000 ____D C:\ComboFix
2013-10-26 21:06 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-10-26 21:06 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-10-26 21:06 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-10-26 20:58 - 2013-10-26 21:19 - 00000000 ____D C:\Qoobox
2013-10-26 20:58 - 2013-10-26 21:18 - 00000000 ____D C:\Windows\erdnt
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-23 15:57 - 2012-08-21 12:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:47 - 2013-10-23 15:52 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-23 11:53 - 2013-10-08 20:14 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-23 11:53 - 2013-09-09 00:15 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help
2013-10-23 11:53 - 2011-12-01 22:26 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia
2013-10-23 11:53 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-23 11:53 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-23 11:50 - 2013-10-16 01:48 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-23 11:50 - 2013-10-16 01:48 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-23 11:50 - 2013-09-28 00:01 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2013-10-23 11:50 - 2013-06-16 13:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2013-10-23 11:50 - 2013-06-16 13:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-12 17:44 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-26 21:22 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-10 20:16 - 2013-10-10 20:52 - 00999936 _____ (Microsoft) C:\Users\User\AppData\Roaming\UeepDefender.exe
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-09 18:16 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-09 18:16 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-09 18:16 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-09 18:16 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 18:16 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-09 15:25 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 15:25 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 15:25 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 15:25 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 15:25 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 15:25 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 15:25 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 15:25 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 15:25 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 15:25 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 15:25 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 15:25 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 15:25 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 15:25 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-09 15:25 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 15:25 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 15:25 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 15:25 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 15:25 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 15:25 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 15:25 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 15:25 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 15:25 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-03 12:59 - 2013-10-03 13:08 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

==================== One Month Modified Files and Folders =======

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files\NewBlue
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-10-30 18:25 - 2013-04-12 11:54 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-30 18:25 - 2012-01-24 17:36 - 00043321 _____ C:\Windows\setupact.log
2013-10-30 18:25 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-30 18:25 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-30 18:24 - 2013-10-27 12:29 - 00000000 ____D C:\AdwCleaner
2013-10-30 18:24 - 2013-04-12 11:52 - 01756049 _____ C:\Windows\WindowsUpdate.log
2013-10-30 18:08 - 2013-05-28 18:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-30 17:37 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-30 17:37 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-30 17:35 - 2013-04-12 11:54 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-30 17:35 - 2011-05-16 15:04 - 00696848 _____ C:\Windows\system32\perfh007.dat
2013-10-30 17:35 - 2011-05-16 15:04 - 00148144 _____ C:\Windows\system32\perfc007.dat
2013-10-30 17:35 - 2009-07-14 06:13 - 01613412 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-30 17:34 - 2013-10-28 22:07 - 00001183 _____ C:\Users\User\Desktop\Mozilla Firefox.lnk
2013-10-30 17:32 - 2013-10-30 17:32 - 01956614 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 16:17 - 2013-10-28 21:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-29 23:14 - 2013-10-29 23:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-29 22:24 - 2013-09-10 15:52 - 00000000 ____D C:\Users\User\Documents\Outlook-Dateien
2013-10-29 10:26 - 2010-11-21 04:47 - 00060160 _____ C:\Windows\PFRO.log
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-10-28 21:38 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Roaming\Mozilla
2013-10-28 21:13 - 2013-10-28 21:12 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:10 - 2013-10-28 21:06 - 00000496 _____ C:\Users\User\Desktop\sadasdf.txt
2013-10-28 21:04 - 2013-05-31 20:42 - 00000000 ____D C:\Users\User\AppData\Local\Adobe
2013-10-28 21:04 - 2013-05-28 18:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-28 21:04 - 2013-05-28 18:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-28 21:04 - 2011-12-01 22:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:30 - 2013-10-28 14:39 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:35 - 2013-10-27 12:34 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:30 - 2013-04-12 11:58 - 00000997 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-26 21:22 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:19 - 2013-10-26 21:11 - 00000000 ____D C:\ComboFix
2013-10-26 21:19 - 2013-10-26 20:58 - 00000000 ____D C:\Qoobox
2013-10-26 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-10-26 21:18 - 2013-10-26 20:58 - 00000000 ____D C:\Windows\erdnt
2013-10-26 21:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-24 19:16 - 2013-09-01 21:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype
2013-10-24 12:07 - 2013-06-13 17:53 - 01590370 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-23 15:59 - 2013-07-23 09:29 - 00000000 ____D C:\Users\User\AppData\Roaming\Apple Computer
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:57 - 2013-09-03 19:37 - 00000000 ____D C:\Users\User\AppData\Local\Apple Computer
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:56 - 2013-07-22 21:25 - 00000000 ____D C:\ProgramData\Apple Computer
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:55 - 2013-07-22 21:24 - 00000000 ____D C:\ProgramData\Apple
2013-10-23 15:52 - 2013-10-23 15:47 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-21 12:45 - 2013-07-18 22:33 - 00000000 ____D C:\Users\User\.gimp-2.8
2013-10-18 02:36 - 2013-10-28 21:45 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-18 02:36 - 2013-10-28 21:45 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-16 01:48 - 2013-10-23 11:50 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 00023287 _____ C:\Windows\system32\nvinfo.pb
2013-10-15 22:47 - 2012-01-24 00:22 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-10-15 22:47 - 2012-01-24 00:22 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-10-15 18:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-15 14:30 - 2013-04-12 11:54 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-15 14:30 - 2013-04-12 11:54 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:52 - 2013-10-10 20:16 - 00999936 _____ (Microsoft) C:\Users\User\AppData\Roaming\UeepDefender.exe
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-10 13:00 - 2009-07-14 05:45 - 00505816 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-09 18:17 - 2013-09-08 18:00 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 18:13 - 2013-08-24 10:56 - 00000000 ____D C:\Windows\system32\MRT
2013-10-09 18:12 - 2011-07-18 21:31 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-08 20:14 - 2013-10-23 11:53 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-03 16:32 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Local\Mozilla
2013-10-03 13:08 - 2013-10-03 12:59 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-28 00:17

==================== End Of Log ============================

--- --- ---


Leider immernoch alles beim alten :s
Zum Glück haben Aldi pc's eine Recovery Disk...werde ich wohl in Erwägung ziehen müssen, sollten die die Ideen ausgehen...

schrauber 31.10.2013 10:01

Sieht eigentlich schon viel besser aus. Chrome und Firefox nochmal mit Revo deinstallierne, wirklich keine Daten behalten, dann neu installierne.
nochmal frisches FRST log bitte.

hemmy 31.10.2013 18:59

Schön:)
Was ist Revo? JRT?

schrauber 01.11.2013 11:30

Revo Uninstaller - Download - Filepony
Damit beide browser deinstallieren, keine Daten behalten, Reste entfernen lassen, dan neu installieren.

Dann einen frischen Scan mit FRST machen.

hemmy 01.11.2013 16:57

gesagt, getan.

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by User (administrator) on USER-PC on 01-11-2013 16:55:38
Running from C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2SHX7P6J
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) I:\Programme\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\User\AppData\Roaming\HPP\wupdte.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\system32\msiexec.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2011-08-16] (Realtek Semiconductor)
HKLM\...\Run: [MedionReminder] - C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKCU\...\Run: [UeepDefender] - C:\Users\User\AppData\Roaming\UeepDefender.exe [999936 2013-10-10] (Microsoft)
HKCU\...\Run: [Google Update] - C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-11-01] (Google Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - I:\Programme\iTunes\iTunesHelper.exe [152392 2013-10-19] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
AppInit_DLLs:  [129 2009-10-23] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = search.ueep.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - URL hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - BrowserMngrDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\user.js
FF DefaultSearchEngine:  */Search the Web
FF SelectedSearchEngine: Search the Web
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF Homepage: search.ueep.com");user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.blocklist.enabled', false);user_pref("browser.startup.page", "search.ueep.com");user_pref("params", "Search the Web
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - I:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\searchplugins\Search the Web.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml

Chrome:
=======
CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (DVDVideoSoft) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.2.3.3_0
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-05-28] (Avira Operations GmbH & Co. KG)
R3 KovaPlusFltr; C:\Windows\System32\drivers\KovaPlusFltr.sys [15104 2010-01-25] (ROCCAT Development, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz135; \??\C:\Users\User\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files\NewBlue
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-01 16:54 - 2013-11-01 16:55 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:53 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00003872 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-01 16:53 - 2013-11-01 16:53 - 00003476 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 16:53 - 2013-11-01 16:53 - 00000904 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-01 16:53 - 2013-11-01 16:53 - 00000852 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:52 - 2013-11-01 16:53 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-11-01 16:41 - 2013-11-01 16:41 - 104535026 _____ C:\Windows\SysWOW64\劔쉇7
2013-10-30 18:27 - 2013-10-30 18:27 - 00049298 _____ C:\Users\User\Desktop\FRST.txt
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-28 21:45 - 2013-10-18 02:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-28 21:45 - 2013-10-18 02:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-28 21:45 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-10-28 21:45 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-10-28 21:12 - 2013-10-28 21:13 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:06 - 2013-11-01 16:49 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:39 - 2013-10-28 14:30 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:34 - 2013-10-27 12:35 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:29 - 2013-10-30 18:24 - 00000000 ____D C:\AdwCleaner
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:11 - 2013-10-26 21:19 - 00000000 ____D C:\ComboFix
2013-10-26 21:06 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-10-26 21:06 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-10-26 21:06 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-10-26 20:58 - 2013-10-26 21:19 - 00000000 ____D C:\Qoobox
2013-10-26 20:58 - 2013-10-26 21:18 - 00000000 ____D C:\Windows\erdnt
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-23 15:57 - 2012-08-21 12:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:47 - 2013-10-23 15:52 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-23 11:53 - 2013-10-08 20:14 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-23 11:53 - 2013-09-09 00:15 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help
2013-10-23 11:53 - 2011-12-01 22:26 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia
2013-10-23 11:53 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-23 11:53 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-23 11:50 - 2013-10-16 01:48 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-23 11:50 - 2013-10-16 01:48 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-23 11:50 - 2013-09-28 00:01 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2013-10-23 11:50 - 2013-06-16 13:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2013-10-23 11:50 - 2013-06-16 13:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-12 17:44 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-26 21:22 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-10 20:16 - 2013-10-10 20:52 - 00999936 _____ (Microsoft) C:\Users\User\AppData\Roaming\UeepDefender.exe
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-09 18:16 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-09 18:16 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-09 18:16 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-09 18:16 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 18:16 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-09 15:25 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 15:25 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 15:25 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 15:25 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 15:25 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 15:25 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 15:25 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 15:25 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 15:25 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 15:25 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 15:25 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 15:25 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 15:25 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 15:25 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-09 15:25 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 15:25 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 15:25 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 15:25 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 15:25 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 15:25 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 15:25 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 15:25 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 15:25 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-03 12:59 - 2013-10-03 13:08 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

==================== One Month Modified Files and Folders =======

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files\NewBlue
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-01 16:55 - 2013-11-01 16:54 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:54 - 2013-11-01 16:53 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00003872 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-01 16:53 - 2013-11-01 16:53 - 00003476 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 16:53 - 2013-11-01 16:53 - 00000904 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-01 16:53 - 2013-11-01 16:53 - 00000852 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:53 - 2013-11-01 16:52 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:53 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Roaming\Mozilla
2013-11-01 16:49 - 2013-10-28 21:06 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-11-01 16:48 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-01 16:48 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-01 16:46 - 2013-04-12 11:54 - 00000000 ____D C:\Program Files (x86)\Google
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:45 - 2011-05-16 15:04 - 00696848 _____ C:\Windows\system32\perfh007.dat
2013-11-01 16:45 - 2011-05-16 15:04 - 00148144 _____ C:\Windows\system32\perfc007.dat
2013-11-01 16:45 - 2009-07-14 06:13 - 01613412 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-11-01 16:41 - 2013-11-01 16:41 - 104535026 _____ C:\Windows\SysWOW64\劔쉇7
2013-11-01 16:40 - 2012-01-24 17:36 - 00044049 _____ C:\Windows\setupact.log
2013-11-01 16:40 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA
2013-11-01 16:40 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-31 20:03 - 2013-04-12 11:52 - 01845061 _____ C:\Windows\WindowsUpdate.log
2013-10-31 19:08 - 2013-05-28 18:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-30 20:25 - 2013-09-01 21:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype
2013-10-30 19:26 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-30 18:27 - 2013-10-30 18:27 - 00049298 _____ C:\Users\User\Desktop\FRST.txt
2013-10-30 18:24 - 2013-10-27 12:29 - 00000000 ____D C:\AdwCleaner
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-29 22:24 - 2013-09-10 15:52 - 00000000 ____D C:\Users\User\Documents\Outlook-Dateien
2013-10-29 10:26 - 2010-11-21 04:47 - 00060160 _____ C:\Windows\PFRO.log
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-10-28 21:13 - 2013-10-28 21:12 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:04 - 2013-05-31 20:42 - 00000000 ____D C:\Users\User\AppData\Local\Adobe
2013-10-28 21:04 - 2013-05-28 18:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-28 21:04 - 2013-05-28 18:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-28 21:04 - 2011-12-01 22:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:30 - 2013-10-28 14:39 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:35 - 2013-10-27 12:34 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:30 - 2013-04-12 11:58 - 00000997 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-26 21:22 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:19 - 2013-10-26 21:11 - 00000000 ____D C:\ComboFix
2013-10-26 21:19 - 2013-10-26 20:58 - 00000000 ____D C:\Qoobox
2013-10-26 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-10-26 21:18 - 2013-10-26 20:58 - 00000000 ____D C:\Windows\erdnt
2013-10-26 21:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-24 12:07 - 2013-06-13 17:53 - 01590370 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-23 15:59 - 2013-07-23 09:29 - 00000000 ____D C:\Users\User\AppData\Roaming\Apple Computer
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:57 - 2013-09-03 19:37 - 00000000 ____D C:\Users\User\AppData\Local\Apple Computer
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:56 - 2013-07-22 21:25 - 00000000 ____D C:\ProgramData\Apple Computer
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:55 - 2013-07-22 21:24 - 00000000 ____D C:\ProgramData\Apple
2013-10-23 15:52 - 2013-10-23 15:47 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-21 12:45 - 2013-07-18 22:33 - 00000000 ____D C:\Users\User\.gimp-2.8
2013-10-18 02:36 - 2013-10-28 21:45 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-18 02:36 - 2013-10-28 21:45 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-16 01:48 - 2013-10-23 11:50 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 00023287 _____ C:\Windows\system32\nvinfo.pb
2013-10-15 22:47 - 2012-01-24 00:22 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-10-15 22:47 - 2012-01-24 00:22 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-10-15 18:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:52 - 2013-10-10 20:16 - 00999936 _____ (Microsoft) C:\Users\User\AppData\Roaming\UeepDefender.exe
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-10 13:00 - 2009-07-14 05:45 - 00505816 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-09 18:17 - 2013-09-08 18:00 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 18:13 - 2013-08-24 10:56 - 00000000 ____D C:\Windows\system32\MRT
2013-10-09 18:12 - 2011-07-18 21:31 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-08 20:14 - 2013-10-23 11:53 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-03 16:32 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Local\Mozilla
2013-10-03 13:08 - 2013-10-03 12:59 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-28 00:17

==================== End Of Log ============================

--- --- ---

schrauber 02.11.2013 11:27

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKCU\...\Run: [UeepDefender] - C:\Users\User\AppData\Roaming\UeepDefender.exe [999936 2013-10-10] (Microsoft)
C:\Users\User\AppData\Roaming\UeepDefender.exe
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = search.ueep.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - URL hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - BrowserMngrDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF Homepage: search.ueep.com");user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.blocklist.enabled', false);user_pref("browser.startup.page", "search.ueep.com");user_pref("params", "Search the Web


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.



Frisches FRST log bitte.

hemmy 02.11.2013 13:01

Fixlog:
Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 31-10-2013
Ran by User at 2013-11-02 13:00:19 Run:4
Running from C:\Users\User\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKCU\...\Run: [UeepDefender] - C:\Users\User\AppData\Roaming\UeepDefender.exe [999936 2013-10-10] (Microsoft)
C:\Users\User\AppData\Roaming\UeepDefender.exe
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = search.ueep.com
HKCU\Software\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = search.ueep.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - URL hxxp://search.ueep.com/?q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - BrowserMngrDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL = hxxp://search.ueep.com/?q={searchTerms}
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF Homepage: search.ueep.com");user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.blocklist.enabled', false);user_pref("browser.startup.page", "search.ueep.com");user_pref("params", "Search the Web
       
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ShadowPlay => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\UeepDefender => Value deleted successfully.
C:\Users\User\AppData\Roaming\UeepDefender.exe => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\BrowserMngr Start Page => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\BrowserMngrDefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} => Key deleted successfully.
HKCR\CLSID\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} => Key not found.
Firefox Keyword.URL deleted successfully.
Firefox homepage deleted successfully.

==== End of Fixlog ====


FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by User (administrator) on USER-PC on 02-11-2013 13:00:30
Running from C:\Users\User\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) I:\Programme\iTunes\iTunesHelper.exe
() C:\Users\User\AppData\Roaming\HPP\wupdte.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() I:\Programme\GameforgeLive\S.K.I.L.L\gfl_client.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2011-08-16] (Realtek Semiconductor)
HKLM\...\Run: [MedionReminder] - C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKCU\...\Run: [Google Update] - C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-11-01] (Google Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - I:\Programme\iTunes\iTunesHelper.exe [152392 2013-10-19] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
AppInit_DLLs:  [129 2009-10-23] ()

==================== Internet (Whitelisted) ====================

StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\user.js
FF DefaultSearchEngine:  */Search the Web
FF SelectedSearchEngine: Search the Web
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF Homepage: search.ueep.com");user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);user_pref('extensions.blocklist.enabled', false);user_pref("browser.startup.page", "search.ueep.com
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - I:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\searchplugins\Search the Web.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml

Chrome:
=======
CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (DVDVideoSoft) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.2.3.3_0
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-05-28] (Avira Operations GmbH & Co. KG)
R3 KovaPlusFltr; C:\Windows\System32\drivers\KovaPlusFltr.sys [15104 2010-01-25] (ROCCAT Development, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz135; \??\C:\Users\User\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files\NewBlue
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-02 12:59 - 2013-11-02 12:59 - 01957098 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-11-01 23:49 - 2013-11-02 10:43 - 00000000 _____ C:\dfu.log
2013-11-01 23:49 - 2013-11-01 23:49 - 00000951 _____ C:\Users\Public\Desktop\S.K.I.L.L. - Special Force 2.lnk
2013-11-01 23:48 - 2013-11-01 23:49 - 00000000 ____D C:\Users\User\Downloads\Gameforge Live
2013-11-01 23:48 - 2013-11-01 23:48 - 00000839 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2013-11-01 23:48 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\AppData\Local\Gameforge4d
2013-11-01 23:47 - 2013-11-01 23:47 - 19368272 _____ (Gameforge                                                  ) C:\Users\User\Downloads\SKILL_GameforgeLiveSetup.exe
2013-11-01 16:54 - 2013-11-02 13:00 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:53 - 2013-11-02 12:07 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-01 16:53 - 2013-11-02 00:07 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-01 16:53 - 2013-11-02 00:02 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-01 16:53 - 2013-11-02 00:02 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 16:53 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:52 - 2013-11-01 16:53 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-28 21:45 - 2013-10-18 02:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-28 21:45 - 2013-10-18 02:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-28 21:45 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-10-28 21:45 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-10-28 21:12 - 2013-10-28 21:13 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:06 - 2013-11-01 16:49 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:39 - 2013-10-28 14:30 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:34 - 2013-10-27 12:35 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:29 - 2013-10-30 18:24 - 00000000 ____D C:\AdwCleaner
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:11 - 2013-10-26 21:19 - 00000000 ____D C:\ComboFix
2013-10-26 21:06 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-10-26 21:06 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-10-26 21:06 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-10-26 20:58 - 2013-10-26 21:19 - 00000000 ____D C:\Qoobox
2013-10-26 20:58 - 2013-10-26 21:18 - 00000000 ____D C:\Windows\erdnt
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-23 15:57 - 2012-08-21 12:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:47 - 2013-10-23 15:52 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-23 11:53 - 2013-10-08 20:14 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-23 11:53 - 2013-09-09 00:15 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help
2013-10-23 11:53 - 2011-12-01 22:26 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia
2013-10-23 11:53 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-23 11:53 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-23 11:50 - 2013-10-16 01:48 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-23 11:50 - 2013-10-16 01:48 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-23 11:50 - 2013-09-28 00:01 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2013-10-23 11:50 - 2013-06-16 13:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2013-10-23 11:50 - 2013-06-16 13:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-12 17:44 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-26 21:22 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-09 18:16 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-09 18:16 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-09 18:16 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-09 18:16 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 18:16 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-09 15:25 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 15:25 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 15:25 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 15:25 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 15:25 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 15:25 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 15:25 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 15:25 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 15:25 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 15:25 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 15:25 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 15:25 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 15:25 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 15:25 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-09 15:25 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 15:25 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 15:25 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 15:25 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 15:25 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 15:25 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 15:25 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 15:25 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 15:25 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-03 12:59 - 2013-10-03 13:08 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

==================== One Month Modified Files and Folders =======

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files\NewBlue
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-02 13:00 - 2013-11-01 16:54 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-02 12:59 - 2013-11-02 12:59 - 01957098 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-11-02 12:08 - 2013-05-28 18:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-02 12:07 - 2013-11-01 16:53 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-02 11:41 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-02 11:41 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-02 10:43 - 2013-11-01 23:49 - 00000000 _____ C:\dfu.log
2013-11-02 10:43 - 2013-09-10 15:52 - 00000000 ____D C:\Users\User\Documents\Outlook-Dateien
2013-11-02 10:43 - 2011-05-16 15:04 - 00696848 _____ C:\Windows\system32\perfh007.dat
2013-11-02 10:43 - 2011-05-16 15:04 - 00148144 _____ C:\Windows\system32\perfc007.dat
2013-11-02 10:43 - 2009-07-14 06:13 - 01613412 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-02 10:39 - 2012-01-24 17:36 - 00044609 _____ C:\Windows\setupact.log
2013-11-02 10:39 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA
2013-11-02 10:39 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-02 04:05 - 2013-04-12 11:52 - 01927734 _____ C:\Windows\WindowsUpdate.log
2013-11-02 00:07 - 2013-11-01 16:53 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-02 00:02 - 2013-11-01 16:53 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-02 00:02 - 2013-11-01 16:53 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 23:49 - 2013-11-01 23:49 - 00000951 _____ C:\Users\Public\Desktop\S.K.I.L.L. - Special Force 2.lnk
2013-11-01 23:49 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\Downloads\Gameforge Live
2013-11-01 23:48 - 2013-11-01 23:48 - 00000839 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2013-11-01 23:48 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\AppData\Local\Gameforge4d
2013-11-01 23:47 - 2013-11-01 23:47 - 19368272 _____ (Gameforge                                                  ) C:\Users\User\Downloads\SKILL_GameforgeLiveSetup.exe
2013-11-01 21:28 - 2010-11-21 04:47 - 00060486 _____ C:\Windows\PFRO.log
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:54 - 2013-11-01 16:53 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:53 - 2013-11-01 16:52 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:53 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Roaming\Mozilla
2013-11-01 16:49 - 2013-10-28 21:06 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-11-01 16:46 - 2013-04-12 11:54 - 00000000 ____D C:\Program Files (x86)\Google
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-10-30 20:25 - 2013-09-01 21:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype
2013-10-30 19:26 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-30 18:24 - 2013-10-27 12:29 - 00000000 ____D C:\AdwCleaner
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-10-28 21:13 - 2013-10-28 21:12 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:04 - 2013-05-31 20:42 - 00000000 ____D C:\Users\User\AppData\Local\Adobe
2013-10-28 21:04 - 2013-05-28 18:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-28 21:04 - 2013-05-28 18:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-28 21:04 - 2011-12-01 22:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:30 - 2013-10-28 14:39 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:35 - 2013-10-27 12:34 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:30 - 2013-04-12 11:58 - 00000997 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-26 21:22 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:19 - 2013-10-26 21:11 - 00000000 ____D C:\ComboFix
2013-10-26 21:19 - 2013-10-26 20:58 - 00000000 ____D C:\Qoobox
2013-10-26 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-10-26 21:18 - 2013-10-26 20:58 - 00000000 ____D C:\Windows\erdnt
2013-10-26 21:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-24 12:07 - 2013-06-13 17:53 - 01590370 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-23 15:59 - 2013-07-23 09:29 - 00000000 ____D C:\Users\User\AppData\Roaming\Apple Computer
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:57 - 2013-09-03 19:37 - 00000000 ____D C:\Users\User\AppData\Local\Apple Computer
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:56 - 2013-07-22 21:25 - 00000000 ____D C:\ProgramData\Apple Computer
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:55 - 2013-07-22 21:24 - 00000000 ____D C:\ProgramData\Apple
2013-10-23 15:52 - 2013-10-23 15:47 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-21 12:45 - 2013-07-18 22:33 - 00000000 ____D C:\Users\User\.gimp-2.8
2013-10-18 02:36 - 2013-10-28 21:45 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-18 02:36 - 2013-10-28 21:45 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-16 01:48 - 2013-10-23 11:50 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 00023287 _____ C:\Windows\system32\nvinfo.pb
2013-10-15 22:47 - 2012-01-24 00:22 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-10-15 22:47 - 2012-01-24 00:22 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-10-15 18:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-10 13:00 - 2009-07-14 05:45 - 00505816 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-09 18:17 - 2013-09-08 18:00 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 18:13 - 2013-08-24 10:56 - 00000000 ____D C:\Windows\system32\MRT
2013-10-09 18:12 - 2011-07-18 21:31 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-08 20:14 - 2013-10-23 11:53 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-03 16:32 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Local\Mozilla
2013-10-03 13:08 - 2013-10-03 12:59 - 00000638 _____ C:\Users\User\Desktop\Bday.txt

Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\36dc5ba470445643ecc5dce5db03c6cc.dll
C:\Users\User\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-28 00:17

==================== End Of Log ============================

--- --- ---

schrauber 02.11.2013 19:09

Was machen die Probleme?

hemmy 03.11.2013 01:25

immernoch da :s
die startseite will und will sich nicht ändern lassen:(

schrauber 03.11.2013 08:20

Zum Mäuse melken :D

Lade SystemLook von jpshortstuff von einem der folgenden Spiegel herunter und speichere das Tool auf dem Desktop.
SystemLook (64 bit)
  • Doppelklicke auf die SystemLook_x64.exe, um das Tool zu starten.
  • Kopiere den Inhalt der folgenden Codebox in das Textfeld des Tools:
    Code:

    :regfind
    search.ueep

  • Klicke nun auf den Button Look, um den Scan zu starten.
  • Der Suchlauf kann einige Zeit dauern.
  • Wenn der Suchlauf beendet ist, wird sich Dein Editor mit den Ergebnissen öffnen, poste diese in deinen Thread.
  • Die Ergebnisse werden auf dem Desktop als SystemLook.txt gespeichert.

hemmy 03.11.2013 17:03

ging recht fix, keine 10 Sekunden:)

Code:

SystemLook 30.07.11 by jpshortstuff
Log created at 17:02 on 03/11/2013 by User
Administrator - Elevation successful

========== regfind ==========

Searching for "search.ueep"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="search.ueep.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="search.ueep.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"="search.ueep.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"BrowserMngr Start Page"="search.ueep.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes]
"URL"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}]
"URL"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"Search Page"="search.ueep.com"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"Start Page"="search.ueep.com"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"="search.ueep.com"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"BrowserMngr Start Page"="search.ueep.com"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchScopes]
"URL"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}]
"URL"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="hxxp://search.ueep.com/?q={searchTerms}"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="hxxp://search.ueep.com/?q={searchTerms}"

-= EOF =-


schrauber 04.11.2013 09:15

Kopiere den Text in der Codebox in deinen Editor (z.B. Notepad) und speichere es unter dem Namen regfix.reg (bei Dateityp bitte "alle Dateien" wählen)

Code:

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="www.google.de"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="www.google.de"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"BrowserMngr Start Page"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes]
"URL"="www.google.de"
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="www.google.de"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="www.google.de"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"Search Page"="www.google.de"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"Start Page"="www.google.de"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"=-
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\Main]
"BrowserMngr Start Page"=-
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchScopes]
"URL"="www.google.de"
[-HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchScopes\{N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}]
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="www.google.de"
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="www.google.de"

Starte die regfix.reg duch Doppelklick.

Frisches FRST log bitte. Frische Suche mit Systemlook.

hemmy 04.11.2013 16:00


FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by User (administrator) on USER-PC on 04-11-2013 15:55:57
Running from C:\Users\User\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) I:\Programme\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2011-08-16] (Realtek Semiconductor)
HKLM\...\Run: [MedionReminder] - C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKCU\...\Run: [Google Update] - C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-11-01] (Google Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - I:\Programme\iTunes\iTunesHelper.exe [152392 2013-10-19] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
HKU\Default User\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default User\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
AppInit_DLLs:  [129 2009-10-23] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.de
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123} URL =
SearchScopes: HKCU - bProtectorDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
SearchScopes: HKCU - BrowserMngrDefaultScope {N324-ADWF32D-T23R-TR32DSA-L32RT-YRED123}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\user.js
FF DefaultSearchEngine: Search the Web
FF SelectedSearchEngine: Search the Web
FF Homepage: http://www.trojaner-board.de/143546-...tfernen-3.html
FF Keyword.URL: hxxp://search.ueep.com/?q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - I:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\b4zonj9a.default\searchplugins\Search the Web.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml

Chrome:
=======
CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (DVDVideoSoft) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.2.3.3_0
CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-05-28] (Avira Operations GmbH & Co. KG)
R3 KovaPlusFltr; C:\Windows\System32\drivers\KovaPlusFltr.sys [15104 2010-01-25] (ROCCAT Development, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz135; \??\C:\Users\User\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files\NewBlue
2099-12-31 19:56 - 2099-05-28 19:10 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-04 15:54 - 2013-11-04 15:54 - 00001897 _____ C:\Users\User\Desktop\regfix.reg
2013-11-04 15:53 - 2013-11-04 15:53 - 104894933 _____ C:\Windows\SysWOW64\ᯎ茛C
2013-11-03 17:02 - 2013-11-03 17:03 - 00004732 _____ C:\Users\User\Desktop\SystemLook.txt
2013-11-03 17:02 - 2013-11-03 17:02 - 00165376 _____ C:\Users\User\Desktop\SystemLook_x64.exe
2013-11-02 12:59 - 2013-11-02 12:59 - 01957098 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-11-01 23:49 - 2013-11-04 00:27 - 00000000 _____ C:\dfu.log
2013-11-01 23:49 - 2013-11-01 23:49 - 00000951 _____ C:\Users\Public\Desktop\S.K.I.L.L. - Special Force 2.lnk
2013-11-01 23:48 - 2013-11-01 23:49 - 00000000 ____D C:\Users\User\Downloads\Gameforge Live
2013-11-01 23:48 - 2013-11-01 23:48 - 00000839 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2013-11-01 23:48 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\AppData\Local\Gameforge4d
2013-11-01 23:47 - 2013-11-01 23:47 - 19368272 _____ (Gameforge                                                  ) C:\Users\User\Downloads\SKILL_GameforgeLiveSetup.exe
2013-11-01 16:54 - 2013-11-02 13:02 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:53 - 2013-11-04 00:07 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-01 16:53 - 2013-11-04 00:07 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-01 16:53 - 2013-11-02 00:02 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-01 16:53 - 2013-11-02 00:02 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 16:53 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:52 - 2013-11-01 16:53 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-28 21:45 - 2013-10-18 02:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-28 21:45 - 2013-10-18 02:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-28 21:45 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-10-28 21:45 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-10-28 21:12 - 2013-10-28 21:13 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:06 - 2013-11-01 16:49 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:39 - 2013-10-28 14:30 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:34 - 2013-10-27 12:35 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:29 - 2013-10-30 18:24 - 00000000 ____D C:\AdwCleaner
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:11 - 2013-10-26 21:19 - 00000000 ____D C:\ComboFix
2013-10-26 21:06 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-10-26 21:06 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-10-26 21:06 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-10-26 21:06 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-10-26 20:58 - 2013-10-26 21:19 - 00000000 ____D C:\Qoobox
2013-10-26 20:58 - 2013-10-26 21:18 - 00000000 ____D C:\Windows\erdnt
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-23 15:57 - 2012-08-21 12:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:56 - 2013-10-23 15:57 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:47 - 2013-10-23 15:52 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-23 11:53 - 2013-10-08 20:14 - 03398914 _____ C:\Windows\system32\nvcoproc.bin
2013-10-23 11:53 - 2013-09-09 00:15 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help
2013-10-23 11:53 - 2011-12-01 22:26 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia
2013-10-23 11:53 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-23 11:53 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-23 11:50 - 2013-10-16 01:48 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-23 11:50 - 2013-10-16 01:48 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-23 11:50 - 2013-10-16 01:48 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-23 11:50 - 2013-09-28 00:01 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2013-10-23 11:50 - 2013-06-16 13:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2013-10-23 11:50 - 2013-06-16 13:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-12 17:44 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-26 21:22 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-09 18:16 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-09 18:16 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-09 18:16 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-09 18:16 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-09 18:16 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 18:16 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-09 18:16 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-09 18:16 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 18:16 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-09 15:25 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 15:25 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 15:25 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 15:25 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 15:25 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 15:25 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 15:25 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 15:25 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 15:25 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 15:25 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 15:25 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 15:25 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 15:25 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 15:25 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 15:25 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 15:25 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 15:25 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 15:25 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 15:25 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 15:25 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 15:25 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-09 15:25 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 15:25 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 15:25 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 15:25 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 15:25 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 15:25 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 15:25 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 15:25 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 15:25 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 15:25 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 15:25 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 15:25 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 15:25 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 15:25 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 15:25 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll

==================== One Month Modified Files and Folders =======

2099-12-31 19:57 - 2099-12-31 19:57 - 00000000 ____D C:\ProgramData\eSellerate
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files\NewBlue
2099-05-28 19:10 - 2099-12-31 19:56 - 00000000 ____D C:\Program Files (x86)\NewBlue
2013-11-04 15:55 - 2013-04-12 11:52 - 01055036 _____ C:\Windows\WindowsUpdate.log
2013-11-04 15:54 - 2013-11-04 15:54 - 00001897 _____ C:\Users\User\Desktop\regfix.reg
2013-11-04 15:53 - 2013-11-04 15:53 - 104894933 _____ C:\Windows\SysWOW64\ᯎ茛C
2013-11-04 15:52 - 2012-01-24 17:36 - 00046065 _____ C:\Windows\setupact.log
2013-11-04 15:52 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA
2013-11-04 15:52 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-04 00:27 - 2013-11-01 23:49 - 00000000 _____ C:\dfu.log
2013-11-04 00:08 - 2013-05-28 18:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-04 00:07 - 2013-11-01 16:53 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA.job
2013-11-04 00:07 - 2013-11-01 16:53 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core.job
2013-11-04 00:00 - 2013-09-10 15:52 - 00000000 ____D C:\Users\User\Documents\Outlook-Dateien
2013-11-03 22:50 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-03 22:50 - 2009-07-14 05:45 - 00024800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-03 22:47 - 2011-05-16 15:04 - 00696848 _____ C:\Windows\system32\perfh007.dat
2013-11-03 22:47 - 2011-05-16 15:04 - 00148144 _____ C:\Windows\system32\perfc007.dat
2013-11-03 22:47 - 2009-07-14 06:13 - 01613412 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-03 17:03 - 2013-11-03 17:02 - 00004732 _____ C:\Users\User\Desktop\SystemLook.txt
2013-11-03 17:02 - 2013-11-03 17:02 - 00165376 _____ C:\Users\User\Desktop\SystemLook_x64.exe
2013-11-02 13:02 - 2013-11-01 16:54 - 00002394 _____ C:\Users\User\Desktop\Google Chrome.lnk
2013-11-02 12:59 - 2013-11-02 12:59 - 01957098 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2013-11-02 00:02 - 2013-11-01 16:53 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001UA
2013-11-02 00:02 - 2013-11-01 16:53 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3295961374-3500667211-776711534-1001Core
2013-11-01 23:49 - 2013-11-01 23:49 - 00000951 _____ C:\Users\Public\Desktop\S.K.I.L.L. - Special Force 2.lnk
2013-11-01 23:49 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\Downloads\Gameforge Live
2013-11-01 23:48 - 2013-11-01 23:48 - 00000839 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2013-11-01 23:48 - 2013-11-01 23:48 - 00000000 ____D C:\Users\User\AppData\Local\Gameforge4d
2013-11-01 23:47 - 2013-11-01 23:47 - 19368272 _____ (Gameforge                                                  ) C:\Users\User\Downloads\SKILL_GameforgeLiveSetup.exe
2013-11-01 21:28 - 2010-11-21 04:47 - 00060486 _____ C:\Windows\PFRO.log
2013-11-01 16:54 - 2013-11-01 16:54 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-01 16:54 - 2013-11-01 16:53 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-11-01 16:53 - 2013-11-01 16:53 - 00739856 _____ (Google Inc.) C:\Users\User\Downloads\chrome_installer_30.0.1599.101.exe
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-01 16:53 - 2013-11-01 16:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-01 16:53 - 2013-11-01 16:52 - 23123208 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_25.0.exe
2013-11-01 16:53 - 2013-05-28 18:21 - 00000000 ____D C:\Users\User\AppData\Roaming\Mozilla
2013-11-01 16:49 - 2013-10-28 21:06 - 00000761 _____ C:\Users\User\Desktop\sadasdf.txt
2013-11-01 16:46 - 2013-04-12 11:54 - 00000000 ____D C:\Program Files (x86)\Google
2013-11-01 16:45 - 2013-11-01 16:45 - 00001268 _____ C:\Users\User\Desktop\Revo Uninstaller.lnk
2013-11-01 16:45 - 2013-11-01 16:45 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2013-11-01 16:42 - 2013-11-01 16:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Desktop\revosetup95.exe
2013-10-30 20:25 - 2013-09-01 21:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype
2013-10-30 19:26 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-30 18:24 - 2013-10-27 12:29 - 00000000 ____D C:\AdwCleaner
2013-10-30 17:27 - 2013-10-30 17:27 - 01060070 _____ C:\Users\User\Desktop\adwcleaner.exe
2013-10-30 00:33 - 2013-10-30 00:33 - 00234361 _____ C:\Users\User\Desktop\Sportstunde.pptx
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-10-28 21:45 - 2012-01-24 00:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-10-28 21:13 - 2013-10-28 21:12 - 22537616 _____ (Mozilla) C:\Users\User\Downloads\Firefox_Setup_de24.0.exe
2013-10-28 21:04 - 2013-05-31 20:42 - 00000000 ____D C:\Users\User\AppData\Local\Adobe
2013-10-28 21:04 - 2013-05-28 18:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-28 21:04 - 2013-05-28 18:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-28 21:04 - 2011-12-01 22:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-28 21:02 - 2013-10-28 21:02 - 03402752 _____ C:\Users\User\Downloads\AdbeRdrUpd941_all_incr.msp
2013-10-28 20:58 - 2013-10-28 20:58 - 00448512 _____ (OldTimer Tools) C:\Users\User\Desktop\TFC.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-28 20:57 - 2013-10-28 20:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-28 20:57 - 2013-10-28 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-28 20:55 - 2013-10-28 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\User\Downloads\jxpiinstall.exe
2013-10-28 14:45 - 2013-10-28 14:45 - 00000950 _____ C:\Users\User\Desktop\sec check.txt
2013-10-28 14:30 - 2013-10-28 14:39 - 00001332 _____ C:\Users\User\Desktop\ESET.txt
2013-10-27 21:38 - 2013-10-27 21:38 - 00891167 _____ C:\Users\User\Desktop\SecurityCheck.exe
2013-10-27 12:39 - 2013-10-27 12:39 - 00002806 _____ C:\Users\User\Desktop\JRT.txt
2013-10-27 12:35 - 2013-10-27 12:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-27 12:35 - 2013-10-27 12:34 - 01033335 _____ (Thisisu) C:\Users\User\Desktop\JRT.exe
2013-10-27 12:30 - 2013-04-12 11:58 - 00000997 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-26 21:22 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\HPP
2013-10-26 21:19 - 2013-10-26 21:19 - 00027038 _____ C:\ComboFix.txt
2013-10-26 21:19 - 2013-10-26 21:11 - 00000000 ____D C:\ComboFix
2013-10-26 21:19 - 2013-10-26 20:58 - 00000000 ____D C:\Qoobox
2013-10-26 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-10-26 21:18 - 2013-10-26 20:58 - 00000000 ____D C:\Windows\erdnt
2013-10-26 21:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-10-26 20:57 - 2013-10-26 20:57 - 05136694 ____R (Swearware) C:\Users\User\Desktop\ComboFix.exe
2013-10-26 20:56 - 2013-10-26 20:56 - 103214166 _____ C:\Windows\SysWOW64\ڹ懷e
2013-10-25 17:03 - 2013-10-25 17:03 - 00057975 _____ C:\Users\User\Desktop\Addition alt.txt
2013-10-25 17:03 - 2013-10-25 17:03 - 00046548 _____ C:\Users\User\Desktop\FRST alt.txt
2013-10-25 17:02 - 2013-10-25 17:02 - 00000000 ____D C:\FRST
2013-10-24 23:19 - 2013-10-24 23:19 - 00000000 ____D C:\Users\User\Desktop\trinkspiele
2013-10-24 21:55 - 2013-10-24 21:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Security Pro
2013-10-24 12:07 - 2013-06-13 17:53 - 01590370 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-23 15:59 - 2013-07-23 09:29 - 00000000 ____D C:\Users\User\AppData\Roaming\Apple Computer
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-23 15:57 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iTunes
2013-10-23 15:57 - 2013-09-03 19:37 - 00000000 ____D C:\Users\User\AppData\Local\Apple Computer
2013-10-23 15:56 - 2013-10-23 15:56 - 00000000 ____D C:\Program Files\iPod
2013-10-23 15:56 - 2013-07-22 21:25 - 00000000 ____D C:\ProgramData\Apple Computer
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files\Bonjour
2013-10-23 15:55 - 2013-10-23 15:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-10-23 15:55 - 2013-07-22 21:24 - 00000000 ____D C:\ProgramData\Apple
2013-10-23 15:52 - 2013-10-23 15:47 - 100415824 _____ (Apple Inc.) C:\Users\User\Desktop\iTunes64Setup.exe
2013-10-23 11:55 - 2013-10-23 11:55 - 00000000 ____D C:\Users\User\AppData\Local\NVIDIA
2013-10-23 11:54 - 2013-10-23 11:54 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-10-23 11:53 - 2013-10-23 11:53 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-10-23 11:53 - 2013-10-23 11:53 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-10-22 11:17 - 2013-10-22 11:17 - 00387304 _____ C:\Users\User\Desktop\Coloring 7.mp4
2013-10-21 12:45 - 2013-07-18 22:33 - 00000000 ____D C:\Users\User\.gimp-2.8
2013-10-18 02:36 - 2013-10-28 21:45 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-18 02:36 - 2013-10-28 21:45 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-16 01:48 - 2013-10-23 11:50 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-16 01:48 - 2013-10-23 11:50 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-10-16 01:48 - 2012-01-24 00:22 - 00023287 _____ C:\Windows\system32\nvinfo.pb
2013-10-15 22:47 - 2012-01-24 00:22 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-10-15 22:47 - 2012-01-24 00:22 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-10-15 22:47 - 2012-01-24 00:22 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-10-15 18:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-12 17:44 - 2013-10-12 17:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-11 20:24 - 2013-10-11 20:24 - 00000000 ____D C:\Users\User\AppData\Local\avgchrome
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Users\User\AppData\Roaming\AffiliatedUpdate
2013-10-11 20:10 - 2013-10-11 20:10 - 00000000 ____D C:\Program Files (x86)\FLV Player
2013-10-10 20:16 - 2013-10-10 20:16 - 00000000 ____D C:\Users\User\AppData\Roaming\Nattly
2013-10-10 13:00 - 2009-07-14 05:45 - 00505816 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-09 18:17 - 2013-09-08 18:00 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 18:15 - 2013-06-14 20:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 18:13 - 2013-08-24 10:56 - 00000000 ____D C:\Windows\system32\MRT
2013-10-09 18:12 - 2011-07-18 21:31 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-08 20:14 - 2013-10-23 11:53 - 03398914 _____ C:\Windows\system32\nvcoproc.bin

Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\36dc5ba470445643ecc5dce5db03c6cc.dll
C:\Users\User\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-28 00:17

==================== End Of Log ============================

--- --- ---


SystemLook nach regfix und nach FRST scan:
Code:

SystemLook 30.07.11 by jpshortstuff
Log created at 15:58 on 04/11/2013 by User
Administrator - Elevation successful

========== regfind ==========

Searching for "search.ueep"
No data found.

Searching for "        "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToMP3Converter.exe"="Free YouTube to MP3 Converter 3.12.3.610 Setup              "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToiPodConverter_3112430.exe"="Free YouTube to iPod Converter 3.11.2.430 Setup            "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeDownload_3.2.2.430.exe"="Free YouTube Download 3.2.2.430 Setup                      "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\AVSVideoConverter.exe"="AVS Video Converter Setup                                  "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\MicroVolts_0.9.4.50_ENG.exe"="MicroVolts English Client Setup                            "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell]
"ConfigXML"="            <PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" >                <InitializationParameters>                    <Param Name="PSVersion" Value="2.0"/>                </InitializationParameters>                <Resources>                    <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" SupportsOptions="true" ExactMatch="true">                        <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/>                        <Capability Type="Shell"/>                    </Resource>                </Res
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell32]
"ConfigXML"="<PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell32" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" Architecture="32" >                        <InitializationParameters>                            <Param Name="PSVersion" Value="2.0"/>                        </InitializationParameters>                        <Resources>                            <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" SupportsOptions="true" ExactMatch="true">                                <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/>                               
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\WpdBusEnumRoot\UMB\2&37c186b&7&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_2.70#000A270010CAD6F0&0#]
"DeviceDesc"="iPod            "
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\WpdBusEnumRoot\UMB\2&37c186b&7&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_2.70#000A270010CAD6F0&0#]
"DeviceDesc"="iPod            "
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\WpdBusEnumRoot\UMB\2&37c186b&7&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_APPLE&PROD_IPOD&REV_2.70#000A270010CAD6F0&0#]
"DeviceDesc"="iPod            "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToMP3Converter.exe"="Free YouTube to MP3 Converter 3.12.3.610 Setup              "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToiPodConverter_3112430.exe"="Free YouTube to iPod Converter 3.11.2.430 Setup            "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeDownload_3.2.2.430.exe"="Free YouTube Download 3.2.2.430 Setup                      "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\AVSVideoConverter.exe"="AVS Video Converter Setup                                  "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\MicroVolts_0.9.4.50_ENG.exe"="MicroVolts English Client Setup                            "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToMP3Converter.exe"="Free YouTube to MP3 Converter 3.12.3.610 Setup              "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeToiPodConverter_3112430.exe"="Free YouTube to iPod Converter 3.11.2.430 Setup            "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\FreeYouTubeDownload_3.2.2.430.exe"="Free YouTube Download 3.2.2.430 Setup                      "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\AVSVideoConverter.exe"="AVS Video Converter Setup                                  "
[HKEY_USERS\S-1-5-21-3295961374-3500667211-776711534-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Users\User\Downloads\MicroVolts_0.9.4.50_ENG.exe"="MicroVolts English Client Setup                            "

-= EOF =-

startseite unverändert


Alle Zeitangaben in WEZ +1. Es ist jetzt 01:09 Uhr.

Copyright ©2000-2026, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27