Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Laptoplüfter läuft ständig überdurchschnittlich Schnell (https://www.trojaner-board.de/144164-laptopluefter-laeuft-staendig-ueberdurchschnittlich-schnell.html)

Sebastian04 06.11.2013 18:48

Laptoplüfter läuft ständig überdurchschnittlich Schnell
 
Hallo liebes Team!,
fogendes... seit einiger Zeit läuft der Lüfter meines ASUS ASPIRE/V5 immer überdurchschnittlich hoch bzw schnell :daumenrunter:

Habe davor ein Gadgeds-Programm installiert, bezweifle aber dass es daran liegen
wird...

Systeminfo:
Intel Core i5.3337U
1.80 GHz
RAM: 4 GB
Systemtyp:64-Bit

Bitte helft mir!!
:headbang:

schrauber 06.11.2013 21:50

hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Sebastian04 08.11.2013 14:35

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by Sebastian (administrator) on SF_ASPIRE_V5 on 08-11-2013 14:31:59
Running from C:\Users\Sebastian\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
(Pokki) C:\Users\Sebastian\AppData\Local\Pokki\Engine\pokki.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acebyte) C:\Program Files (x86)\CleanGenius 3\CleanGeniusTray.exe
(Pokki) C:\Users\Sebastian\AppData\Local\Pokki\Engine\pokki.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Dritek System Inc.) C:\Program Files (x86)\RadioController\RfBtnHelper.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(McAfee, Inc.) c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) c:\PROGRA~2\mcafee\SITEAD~1\saUpd.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-09-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-09-03] (Realtek Semiconductor)
HKLM\...\Run: [BtPreLoad] - C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [64640 2012-12-05] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3008824 2012-11-29] (Synaptics Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKCU\...\Run: [CleanGeniusTray] - C:\Program Files (x86)\CleanGenius 3\CleanGeniusTray.exe [502904 2012-09-26] (Acebyte)
HKCU\...\Policies\Explorer: []
HKLM-x32\...\Run: [LManager] - [x]
HKLM-x32\...\Run: [RadioController] - C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216 2013-02-03] (Dritek System Inc.)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-11] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-01] (Apple Inc.)
HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe /r
HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe /r
AppInit_DLLs: C:\Windows\system32\nvinitx.dll [247144 2012-10-12] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [203112 2012-10-12] (NVIDIA Corporation)
Startup: C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar.lnk
ShortcutTarget: Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.delta-search.com/?babsrc=HP_ss&mntrId=8C121216D8E56F74&affID=119293&tsp=5036
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
SearchScopes: HKLM - DefaultScope {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - DefaultScope {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKCU - DefaultScope {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=8C121216D8E56F74&affID=119293&tsp=5036
SearchScopes: HKCU - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL =
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

Chrome:
=======
CHR HomePage: hxxp://www.delta-search.com/?babsrc=HP_ss&mntrId=8C121216D8E56F74&affID=119293&tsp=5036
CHR RestoreOnStartup: "hxxp://google.de/"
CHR Plugin: (Shockwave Flash) - C:\Users\Sebastian\AppData\Local\Google\Chrome\User Data\PepperFlash\11.7.700.225\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Extension: (Google Docs) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (SiteAdvisor) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.3.1271_0
CHR Extension: (Google Wallet) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-11] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-11] (Avira Operations GmbH & Co. KG)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [231552 2012-12-05] (Qualcomm Atheros Commnucations)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.)
S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [484592 2013-10-28] (BitRaider, LLC)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552 2012-10-25] (Acer Incorporated)
R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [26600 2013-10-08] (CyberGhost S.R.L)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [121616 2013-10-02] (McAfee, Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-11-03] (NTI Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-06-17] ()
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [96880 2013-02-03] (Dritek System INC.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-11] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-11] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-09-11] (Avira Operations GmbH & Co. KG)
S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-28] (BitRaider)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2012-12-05] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-02-03] (Dritek System Inc.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31032 2012-11-29] (Synaptics Incorporated)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-08 14:31 - 2013-11-08 14:31 - 01957098 _____ (Farbar) C:\Users\Sebastian\Downloads\FRST64.exe
2013-11-08 14:31 - 2013-11-08 14:31 - 00000000 ____D C:\FRST
2013-11-08 14:25 - 2013-11-08 14:25 - 103148646 _____ C:\Windows\SysWOW64\᯾瞗畈Ñȼ
2013-11-06 18:41 - 2013-11-06 18:41 - 00437645 _____ C:\Users\Sebastian\Downloads\SnippingToolPlusv3-4-1-0.zip
2013-11-06 17:53 - 2013-11-06 17:57 - 00000000 ____D C:\ProgramData\Acebyte
2013-11-06 17:53 - 2013-11-06 17:53 - 00001065 _____ C:\Users\Public\Desktop\CleanGenius 3.lnk
2013-11-06 17:53 - 2013-11-06 17:53 - 00000014 _____ C:\Windows\SysWOW64\CleanGenius3Free.dll
2013-11-06 17:52 - 2013-11-06 17:58 - 00000000 ____D C:\Program Files (x86)\CleanGenius 3
2013-11-06 17:52 - 2013-11-06 17:52 - 15966088 _____ (Acebyte, Inc.                                              ) C:\Users\Sebastian\Desktop\cleangenius.exe
2013-11-06 17:51 - 2013-11-06 17:51 - 00400744 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe
2013-11-05 19:05 - 2013-11-05 19:05 - 00007621 _____ C:\Users\Sebastian\AppData\Local\Resmon.ResmonCfg
2013-11-05 18:54 - 2013-11-05 18:54 - 00001424 _____ C:\Windows\PFRO.log
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4.exe
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4 (1).exe
2013-11-03 11:28 - 2013-11-03 11:28 - 104760586 _____ C:\Windows\SysWOW64\렄顣瀔ō
2013-10-30 11:42 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim (1).exe
2013-10-30 11:41 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim.exe
2013-10-30 10:47 - 2013-10-30 10:47 - 104098187 _____ C:\Windows\SysWOW64\莺袷瀔Y
2013-10-28 13:47 - 2013-10-28 13:48 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTOR
2013-10-28 13:18 - 2013-10-28 13:18 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Electronic_Arts_Inc
2013-10-28 13:06 - 2013-10-28 13:47 - 00000000 ____D C:\ProgramData\BitRaider
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTORPerf
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-10-28 13:04 - 2013-10-28 13:05 - 00017521 _____ C:\Users\Sebastian\Documents\Install STAR WARS The Old Republic.log
2013-10-28 13:04 - 2013-10-28 13:04 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-10-28 13:03 - 2013-11-05 18:51 - 00000000 ____D C:\Users\hedev
2013-10-28 13:03 - 2013-10-28 13:04 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup (1).exe
2013-10-28 13:03 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup.exe
2013-10-28 12:38 - 2013-10-28 12:38 - 00431008 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-28 09:57 - 2013-10-02 02:38 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-25 14:57 - 2013-10-25 14:57 - 00000000 ____D C:\Users\Sebastian\Documents\TacticalIntervention
2013-10-25 14:18 - 2013-10-25 14:18 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-10-25 13:57 - 2013-08-03 07:40 - 01374208 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2013-10-25 13:57 - 2013-08-03 07:40 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2013-10-25 13:57 - 2013-08-03 07:40 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2013-10-25 13:57 - 2013-08-03 06:14 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2013-10-25 13:57 - 2013-08-03 06:13 - 01245696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2013-10-25 13:57 - 2013-08-03 06:13 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2013-10-25 13:56 - 2013-08-10 06:21 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2013-10-25 13:56 - 2013-08-10 06:21 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncInfo.dll
2013-10-25 13:56 - 2013-08-10 04:58 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 19758080 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 10116608 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-10-25 13:56 - 2013-08-02 07:26 - 02304512 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 17561088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 08858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-10-25 13:56 - 2013-08-02 06:06 - 02035712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-10-25 13:56 - 2013-08-01 11:41 - 02233688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-25 13:56 - 2013-07-31 00:30 - 00386923 _____ C:\Windows\system32\ApnDatabase.xml
2013-10-25 13:56 - 2013-07-25 00:10 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2013-10-25 13:56 - 2013-07-25 00:06 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2013-10-25 13:56 - 2013-04-10 00:17 - 01125888 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2013-10-25 13:56 - 2013-04-09 23:29 - 00893952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2013-10-25 13:55 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-25 13:55 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-25 13:55 - 2013-02-21 11:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-25 13:55 - 2013-02-21 11:14 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-25 13:55 - 2012-11-08 05:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-25 13:54 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-25 13:54 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-25 13:54 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-25 13:54 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-25 13:54 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-25 13:54 - 2013-08-23 06:11 - 04040192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-25 13:54 - 2013-07-19 23:13 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-25 13:54 - 2013-07-19 23:13 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-25 13:54 - 2013-07-05 23:02 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-25 13:54 - 2013-07-05 23:01 - 00210560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-25 13:54 - 2013-07-02 02:41 - 00447320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2013-10-25 13:54 - 2013-07-02 02:41 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2013-10-25 13:54 - 2013-07-02 02:41 - 00213336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2013-10-25 13:54 - 2013-07-01 23:14 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00623448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00498008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00021848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-25 13:54 - 2013-06-29 04:08 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-25 13:54 - 2013-06-29 04:07 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-25 13:54 - 2013-06-29 04:07 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-25 13:54 - 2013-06-29 04:06 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-25 13:54 - 2013-06-22 06:45 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-25 13:54 - 2013-06-22 06:45 - 00054488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2013-10-25 13:54 - 2013-05-27 00:17 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-25 13:54 - 2013-05-26 23:59 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-25 13:54 - 2013-05-25 04:15 - 00362496 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-25 13:54 - 2013-05-25 03:32 - 00300032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-25 13:54 - 2013-05-15 23:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-10-25 13:54 - 2013-05-15 23:35 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2013-10-25 13:54 - 2013-05-14 14:14 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-25 13:54 - 2013-05-14 10:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-25 13:54 - 2013-04-28 23:28 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-25 13:54 - 2013-02-21 11:14 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-25 13:54 - 2013-02-19 10:53 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-10-25 13:54 - 2012-11-08 05:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-25 13:48 - 2013-08-07 06:15 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll
2013-10-25 13:45 - 2013-10-25 13:49 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CyberGhost
2013-10-25 13:44 - 2013-10-25 13:45 - 00000000 ____D C:\Program Files\CyberGhost 5
2013-10-25 13:44 - 2013-10-25 13:44 - 08563888 _____ (CyberGhost S.R.L.                                          ) C:\Users\Sebastian\Downloads\cg5.exe
2013-10-25 13:44 - 2013-10-25 13:44 - 00001732 _____ C:\Users\Sebastian\Desktop\CyberGhost 5.lnk
2013-10-25 13:44 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\TAP-Windows
2013-10-25 13:20 - 2013-10-30 11:45 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-25 13:18 - 2013-10-25 13:19 - 08531968 _____ C:\Users\Sebastian\Downloads\SteamInstall_German.msi
2013-10-23 16:32 - 2013-10-23 16:33 - 01522176 _____ C:\Users\Sebastian\Downloads\Dfk-02fc.xls
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Soldat
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Program Files\Soldat
2013-10-21 15:49 - 2013-10-21 15:49 - 00400720 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat (1).exe
2013-10-21 15:47 - 2013-10-21 15:47 - 00614816 _____ C:\Users\Sebastian\Downloads\soldat-1-6-6 (1).exe
2013-10-21 15:34 - 2013-10-21 15:34 - 00000000 ____R C:\logwmemory.bin
2013-10-21 15:09 - 2013-10-21 15:09 - 00000000 ____D C:\Program Files (x86)\DirectX
2013-10-21 15:07 - 2013-10-21 15:08 - 100273008 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\directx_Jun2010redist.exe
2013-10-19 01:26 - 2013-10-19 01:26 - 101890677 _____ C:\Windows\SysWOW64\ḋܼ瀔×
2013-10-17 18:32 - 2013-10-17 18:32 - 00400720 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat.exe
2013-10-17 18:24 - 2013-10-17 18:24 - 00614816 _____ C:\Users\Sebastian\Downloads\soldat-1-6-6.exe
2013-10-17 16:52 - 2013-10-17 16:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WinRAR
2013-10-17 16:51 - 2013-10-17 18:31 - 00001124 _____ C:\Users\Public\Desktop\WinRAR.lnk
2013-10-17 16:51 - 2013-10-17 18:31 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-17 16:51 - 2013-10-17 16:51 - 00000000 ____D C:\Program Files\WinRAR
2013-10-17 16:50 - 2013-10-17 16:50 - 02074056 _____ C:\Users\Sebastian\Downloads\winrar-x64-500d.exe
2013-10-17 16:50 - 2013-10-17 16:50 - 01970848 _____ C:\Users\Sebastian\Downloads\winrar-x64-500.exe
2013-10-17 16:43 - 2013-10-17 16:43 - 101544623 _____ C:\Windows\SysWOW64\쥥龱瀔Þ
2013-10-16 17:44 - 2013-10-16 17:45 - 00018906 _____ C:\Users\Sebastian\Downloads\[katproxy.com]counter.strike.source.online.full.games4theworld.torrent
2013-10-15 17:31 - 2013-10-15 17:32 - 97828793 _____ (Stainless Steel Studios, Inc.) C:\Users\Sebastian\Downloads\EEDemo.exe
2013-10-15 17:01 - 2013-10-15 17:01 - 00000000 ____D C:\Users\Sebastian\AppData\Local\avgchrome
2013-10-15 16:59 - 2013-10-15 17:05 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Systweak
2013-10-15 16:59 - 2013-10-15 17:03 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-15 16:59 - 2013-07-11 12:49 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2013-10-15 16:58 - 2013-10-15 17:04 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\GoforFiles
2013-10-15 16:58 - 2013-10-15 16:58 - 00003090 _____ C:\Windows\System32\Tasks\GoforFilesUpdate
2013-10-15 16:58 - 2013-10-15 16:58 - 00000000 ____D C:\ProgramData\Babylon
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028.exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (3).exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (2).exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (1).exe
2013-10-15 16:55 - 2013-10-15 16:55 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Cool_Mirage
2013-10-15 16:54 - 2013-10-15 16:54 - 00302648 _____ C:\Users\Sebastian\Downloads\(PC_GAMES)_Empire_Earth_(Full_Game).exe
2013-10-15 16:36 - 2013-10-15 16:36 - 101148298 _____ C:\Windows\SysWOW64\᯾瞏⤰Ń߿
2013-10-11 14:05 - 2013-10-11 14:10 - 548011982 _____ C:\Users\Sebastian\Downloads\Notfall-CD-2.2.zip
2013-10-11 13:24 - 2013-10-15 18:06 - 00000030 _____ C:\Windows\SIERRA.INI
2013-10-11 13:24 - 2013-10-11 13:24 - 00000000 ____D C:\Sierra
2013-10-11 13:13 - 2013-10-11 13:21 - 97725826 _____ C:\Users\Sebastian\Downloads\eedemo.zip
2013-10-11 13:10 - 2013-10-11 13:11 - 00673992 _____ C:\Users\Sebastian\Downloads\Brothersoft_downloader_For_Empire_Earth_1.exe
2013-10-11 12:18 - 2013-10-17 18:28 - 00000000 ____D C:\Users\Sebastian\Documents\My Games
2013-10-11 12:02 - 2013-10-11 12:07 - 447485608 _____ (Microsoft Game Studios                                    ) C:\Users\Sebastian\Downloads\Age-of-Empires-3.exe
2013-10-10 17:51 - 2013-10-10 17:51 - 00000000 ____D C:\Users\Sebastian\Documents\TrackMania
2013-10-10 17:45 - 2013-11-05 18:30 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\NVIDIA
2013-10-10 16:40 - 2013-10-10 16:40 - 00002159 _____ C:\Users\Public\Desktop\Age of Empires Expansion.lnk
2013-10-10 16:29 - 1997-07-06 20:22 - 00756736 ____N (Intel Corporation) C:\Windows\SysWOW64\ir41_32.dll
2013-10-10 16:27 - 2013-10-17 18:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2013-10-10 16:26 - 2013-10-10 16:26 - 00000000 ____D C:\Users\Sebastian\PicStream

==================== One Month Modified Files and Folders =======

2013-11-08 14:31 - 2013-11-08 14:31 - 01957098 _____ (Farbar) C:\Users\Sebastian\Downloads\FRST64.exe
2013-11-08 14:31 - 2013-11-08 14:31 - 00000000 ____D C:\FRST
2013-11-08 14:29 - 2013-06-16 13:13 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-08 14:28 - 2013-09-19 21:30 - 00002108 _____ C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2013-11-08 14:27 - 2013-06-16 20:00 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Pokki
2013-11-08 14:26 - 2013-06-16 13:13 - 00001138 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-08 14:25 - 2013-11-08 14:25 - 103148646 _____ C:\Windows\SysWOW64\᯾瞗畈Ñȼ
2013-11-08 14:24 - 2012-12-25 11:42 - 00053284 _____ C:\Windows\system32\wpbbin.exe
2013-11-08 14:24 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-07 18:54 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-11-07 18:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru
2013-11-06 18:41 - 2013-11-06 18:41 - 00437645 _____ C:\Users\Sebastian\Downloads\SnippingToolPlusv3-4-1-0.zip
2013-11-06 18:15 - 2013-06-16 13:13 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1556135393-1719581868-3524785236-1002
2013-11-06 18:00 - 2013-06-16 13:13 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Deployment
2013-11-06 17:58 - 2013-11-06 17:52 - 00000000 ____D C:\Program Files (x86)\CleanGenius 3
2013-11-06 17:57 - 2013-11-06 17:53 - 00000000 ____D C:\ProgramData\Acebyte
2013-11-06 17:53 - 2013-11-06 17:53 - 00001065 _____ C:\Users\Public\Desktop\CleanGenius 3.lnk
2013-11-06 17:53 - 2013-11-06 17:53 - 00000014 _____ C:\Windows\SysWOW64\CleanGenius3Free.dll
2013-11-06 17:52 - 2013-11-06 17:52 - 15966088 _____ (Acebyte, Inc.                                              ) C:\Users\Sebastian\Desktop\cleangenius.exe
2013-11-06 17:51 - 2013-11-06 17:51 - 00400744 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe
2013-11-05 19:10 - 2013-10-08 15:42 - 00000577 _____ C:\Users\Sebastian\AppData\Roaming\All CPU MeterV3_Settings.ini
2013-11-05 19:05 - 2013-11-05 19:05 - 00007621 _____ C:\Users\Sebastian\AppData\Local\Resmon.ResmonCfg
2013-11-05 18:54 - 2013-11-05 18:54 - 00001424 _____ C:\Windows\PFRO.log
2013-11-05 18:54 - 2012-12-25 13:01 - 00000000 ____D C:\Program Files\mcafee
2013-11-05 18:54 - 2012-12-25 13:01 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-11-05 18:54 - 2012-12-25 13:00 - 00000000 ____D C:\ProgramData\McAfee
2013-11-05 18:52 - 2012-07-26 09:12 - 00000000 ___HD C:\Windows\ELAMBKUP
2013-11-05 18:51 - 2013-10-28 13:03 - 00000000 ____D C:\Users\hedev
2013-11-05 18:51 - 2013-09-12 16:53 - 00000000 ____D C:\Users\Schule
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4.exe
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4 (1).exe
2013-11-05 18:30 - 2013-10-10 17:45 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\NVIDIA
2013-11-04 17:50 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache
2013-11-04 17:08 - 2013-02-04 04:53 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-11-04 17:08 - 2013-02-04 04:53 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-11-04 17:08 - 2012-07-26 08:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-03 11:28 - 2013-11-03 11:28 - 104760586 _____ C:\Windows\SysWOW64\렄顣瀔ō
2013-10-30 14:46 - 2013-06-16 13:02 - 00000000 ____D C:\Users\Sebastian
2013-10-30 11:45 - 2013-10-25 13:20 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-30 11:44 - 2013-06-21 08:29 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CrashDumps
2013-10-30 11:44 - 2012-12-25 11:42 - 00000000 ____D C:\Windows\Panther
2013-10-30 11:42 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim (1).exe
2013-10-30 11:42 - 2013-10-30 11:41 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim.exe
2013-10-30 10:48 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\ELAM
2013-10-30 10:47 - 2013-10-30 10:47 - 104098187 _____ C:\Windows\SysWOW64\莺袷瀔Y
2013-10-29 07:56 - 2013-06-16 13:45 - 00000000 ____D C:\Program Files (x86)\Origin
2013-10-28 13:48 - 2013-10-28 13:47 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTOR
2013-10-28 13:47 - 2013-10-28 13:06 - 00000000 ____D C:\ProgramData\BitRaider
2013-10-28 13:18 - 2013-10-28 13:18 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Electronic_Arts_Inc
2013-10-28 13:17 - 2013-06-16 13:46 - 00000000 ____D C:\ProgramData\Electronic Arts
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTORPerf
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-10-28 13:05 - 2013-10-28 13:04 - 00017521 _____ C:\Users\Sebastian\Documents\Install STAR WARS The Old Republic.log
2013-10-28 13:05 - 2013-06-16 13:46 - 00000000 ____D C:\Users\Sebastian\Desktop\Spiele
2013-10-28 13:04 - 2013-10-28 13:04 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-10-28 13:04 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup (1).exe
2013-10-28 13:03 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup.exe
2013-10-28 12:57 - 2013-06-16 13:50 - 00000000 ____D C:\Program Files (x86)\Origin Games
2013-10-28 12:49 - 2013-06-16 13:50 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Origin
2013-10-28 12:38 - 2013-10-28 12:38 - 00431008 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-28 09:58 - 2013-06-16 13:05 - 00000000 ___RD C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-28 09:58 - 2013-06-16 13:05 - 00000000 ___RD C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-25 15:40 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ToastData
2013-10-25 15:37 - 2013-08-14 10:24 - 00000000 ____D C:\Windows\system32\MRT
2013-10-25 15:34 - 2013-07-12 07:28 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-25 14:57 - 2013-10-25 14:57 - 00000000 ____D C:\Users\Sebastian\Documents\TacticalIntervention
2013-10-25 14:18 - 2013-10-25 14:18 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-10-25 14:04 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-10-25 13:49 - 2013-10-25 13:45 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CyberGhost
2013-10-25 13:45 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\CyberGhost 5
2013-10-25 13:44 - 2013-10-25 13:44 - 08563888 _____ (CyberGhost S.R.L.                                          ) C:\Users\Sebastian\Downloads\cg5.exe
2013-10-25 13:44 - 2013-10-25 13:44 - 00001732 _____ C:\Users\Sebastian\Desktop\CyberGhost 5.lnk
2013-10-25 13:44 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\TAP-Windows
2013-10-25 13:19 - 2013-10-25 13:18 - 08531968 _____ C:\Users\Sebastian\Downloads\SteamInstall_German.msi
2013-10-23 16:33 - 2013-10-23 16:32 - 01522176 _____ C:\Users\Sebastian\Downloads\Dfk-02fc.xls
2013-10-23 16:32 - 2013-09-25 16:50 - 00000000 ____D C:\Users\Sebastian\Desktop\Schule
2013-10-21 15:53 - 2013-06-16 13:02 - 00000000 ____D C:\Users\Sebastian\AppData\Local\VirtualStore
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Soldat
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Program Files\Soldat
2013-10-21 15:49 - 2013-10-21 15:49 - 00400720 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat (1).exe
2013-10-21 15:47 - 2013-10-21 15:47 - 00614816 _____ C:\Users\Sebastian\Downloads\soldat-1-6-6 (1).exe
2013-10-21 15:35 - 2013-06-16 13:14 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-21 15:34 - 2013-10-21 15:34 - 00000000 ____R C:\logwmemory.bin
2013-10-21 15:09 - 2013-10-21 15:09 - 00000000 ____D C:\Program Files (x86)\DirectX
2013-10-21 15:08 - 2013-10-21 15:07 - 100273008 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\directx_Jun2010redist.exe
2013-10-19 01:26 - 2013-10-19 01:26 - 101890677 _____ C:\Windows\SysWOW64\ḋܼ瀔×
2013-10-17 18:32 - 2013-10-17 18:32 - 00400720 _____ (Softonic                                        ) C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat.exe
2013-10-17 18:31 - 2013-10-17 16:51 - 00001124 _____ C:\Users\Public\Desktop\WinRAR.lnk
2013-10-17 18:31 - 2013-10-17 16:51 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-17 18:28 - 2013-10-11 12:18 - 00000000 ____D C:\Users\Sebastian\Documents\My Games
2013-10-17 18:28 - 2012-12-25 13:05 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-10-17 18:27 - 2013-10-10 16:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2013-10-17 18:24 - 2013-10-17 18:24 - 00614816 _____ C:\Users\Sebastian\Downloads\soldat-1-6-6.exe
2013-10-17 18:24 - 2013-06-16 13:13 - 00004114 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-17 18:24 - 2013-06-16 13:13 - 00003878 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-17 17:27 - 2013-06-18 09:43 - 00000000 ____D C:\Users\Sebastian\Documents\Bluetooth Folder
2013-10-17 17:27 - 2012-12-25 13:04 - 00000000 ____D C:\Program Files (x86)\Acer
2013-10-17 16:53 - 2013-09-12 17:12 - 00000000 ____D C:\Users\Sebastian\AppData\Local\clear.fi
2013-10-17 16:52 - 2013-10-17 16:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WinRAR
2013-10-17 16:51 - 2013-10-17 16:51 - 00000000 ____D C:\Program Files\WinRAR
2013-10-17 16:50 - 2013-10-17 16:50 - 02074056 _____ C:\Users\Sebastian\Downloads\winrar-x64-500d.exe
2013-10-17 16:50 - 2013-10-17 16:50 - 01970848 _____ C:\Users\Sebastian\Downloads\winrar-x64-500.exe
2013-10-17 16:43 - 2013-10-17 16:43 - 101544623 _____ C:\Windows\SysWOW64\쥥龱瀔Þ
2013-10-16 17:45 - 2013-10-16 17:44 - 00018906 _____ C:\Users\Sebastian\Downloads\[katproxy.com]counter.strike.source.online.full.games4theworld.torrent
2013-10-15 18:06 - 2013-10-11 13:24 - 00000030 _____ C:\Windows\SIERRA.INI
2013-10-15 17:32 - 2013-10-15 17:31 - 97828793 _____ (Stainless Steel Studios, Inc.) C:\Users\Sebastian\Downloads\EEDemo.exe
2013-10-15 17:07 - 2013-09-25 17:19 - 00000000 ____D C:\Users\Public\Documents\Autodesk
2013-10-15 17:07 - 2013-09-25 17:01 - 00000000 ____D C:\ProgramData\Autodesk
2013-10-15 17:05 - 2013-10-15 16:59 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Systweak
2013-10-15 17:04 - 2013-10-15 16:58 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\GoforFiles
2013-10-15 17:03 - 2013-10-15 16:59 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-10-15 17:01 - 2013-10-15 17:01 - 00000000 ____D C:\Users\Sebastian\AppData\Local\avgchrome
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-15 16:58 - 2013-10-15 16:58 - 00003090 _____ C:\Windows\System32\Tasks\GoforFilesUpdate
2013-10-15 16:58 - 2013-10-15 16:58 - 00000000 ____D C:\ProgramData\Babylon
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028.exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (3).exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (2).exe
2013-10-15 16:57 - 2013-10-15 16:57 - 06638336 _____ (hxxp://www.goforfiles.com/) C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (1).exe
2013-10-15 16:55 - 2013-10-15 16:55 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Cool_Mirage
2013-10-15 16:54 - 2013-10-15 16:54 - 00302648 _____ C:\Users\Sebastian\Downloads\(PC_GAMES)_Empire_Earth_(Full_Game).exe
2013-10-15 16:36 - 2013-10-15 16:36 - 101148298 _____ C:\Windows\SysWOW64\᯾瞏⤰Ń߿
2013-10-11 14:10 - 2013-10-11 14:05 - 548011982 _____ C:\Users\Sebastian\Downloads\Notfall-CD-2.2.zip
2013-10-11 13:24 - 2013-10-11 13:24 - 00000000 ____D C:\Sierra
2013-10-11 13:21 - 2013-10-11 13:13 - 97725826 _____ C:\Users\Sebastian\Downloads\eedemo.zip
2013-10-11 13:11 - 2013-10-11 13:10 - 00673992 _____ C:\Users\Sebastian\Downloads\Brothersoft_downloader_For_Empire_Earth_1.exe
2013-10-11 12:07 - 2013-10-11 12:02 - 447485608 _____ (Microsoft Game Studios                                    ) C:\Users\Sebastian\Downloads\Age-of-Empires-3.exe
2013-10-10 17:51 - 2013-10-10 17:51 - 00000000 ____D C:\Users\Sebastian\Documents\TrackMania
2013-10-10 16:40 - 2013-10-10 16:40 - 00002159 _____ C:\Users\Public\Desktop\Age of Empires Expansion.lnk
2013-10-10 16:26 - 2013-10-10 16:26 - 00000000 ____D C:\Users\Sebastian\PicStream

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-31 17:16

==================== End Of Log ============================

--- --- ---

--- --- ---


hier bitte (:

Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-10-2013
Ran by Sebastian at 2013-11-08 14:32:54
Running from C:\Users\Sebastian\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

8GadgetPack (x32 Version: 6.0.0)
Acer Backup Manager (x32 Version: 4.0.0.0071)
Acer Instant Update Service (Version: 1.00.3013)
Acer Power Management (Version: 7.00.3011)
Acer Recovery Management (Version: 6.00.3015)
AcerCloud (x32 Version: 2.01.3125)
AcerCloud Docs (x32 Version: 1.00.3204)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98)
Akamai NetSession Interface (HKCU)
Aloha TriPeaks (x32 Version: 2.2.0.98)
Apple Application Support (x32 Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (x32 Version: 2.1.3.127)
AutoCAD 2014 Language Pack - Deutsch (German) (Version: 19.1.18.0)
Autodesk 360 (Version: 4.0.27.1)
Autodesk App Manager (x32 Version: 1.1.0)
Autodesk AutoCAD 2014 - Deutsch (German) (Version: 19.1.18.0)
Autodesk Content Service (x32 Version: 3.1.3.0)
Autodesk Content Service Language Pack (x32 Version: 3.1.3.0)
Autodesk Featured Apps (x32 Version: 1.1.0)
Autodesk Material Library 2014 (x32 Version: 4.0.19.0)
Autodesk Material Library Base Resolution Image Library 2014 (x32 Version: 4.0.19.0)
Avira Free Antivirus (x32 Version: 13.0.0.4052)
Backup Manager v4 (x32 Version: 4.0.0.0071)
Battlefield 3™ (x32 Version: 1.0.0.0)
Bejeweled 3 (x32 Version: 2.2.0.98)
BitRaider Web Client (x32 Version: 1.1.9.4)
Bonjour (Version: 3.0.0.10)
CleanGenius 3.0.5 (x32)
CyberGhost 5
Definition update for Microsoft Office 2010 (KB982726) (x32)
Delicious: Emily's True Love Premium Edition (x32 Version: 2.2.0.98)
Dolby Advanced Audio v2 (x32 Version: 7.2.8000.16)
Dritek Radio Controller (x32 Version: 2.02.2001.0803)
Google Chrome (x32 Version: 30.0.1599.101)
Google Update Helper (x32 Version: 1.3.21.165)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110)
HID Monitor (x32 Version: 1.1.4)
Identity Card (x32 Version: 2.00.3004)
Intel(R) Management Engine Components (x32 Version: 8.1.0.1252)
Intel(R) Processor Graphics (x32 Version: 9.17.10.2867)
Intel(R) Rapid Storage Technology (x32 Version: 11.5.4.1001)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149)
Intel® Trusted Connect Service Client (Version: 1.24.388.1)
Island Tribe (x32 Version: 2.2.0.98)
iTunes (Version: 11.1.1.11)
Jewel Match 3 (x32 Version: 2.2.0.98)
John Deere Drive Green (x32 Version: 2.2.0.95)
Launch Manager (x32 Version: 7.0.10)
Live Updater (x32 Version: 2.00.3006)
Magic Academy (x32 Version: 2.2.0.98)
McAfee SiteAdvisor (x32 Version: 3.6.3.549)
Microsoft Age of Empires (x32)
Microsoft Age of Empires Expansion (x32)
Microsoft Office (x32 Version: 15.0.4420.1017)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Home and Student 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0)
MyWinLocker (Version: 4.0.14.35)
MyWinLocker 4 (x32 Version: 4.0.14.35)
MyWinLocker Suite (x32 Version: 4.0.14.24)
Norton Online Backup (x32 Version: 2.2.3.51r)
Norton Online Backup ARA (x32 Version: 4.1.0.14)
NTI Media Maker 9 (x32 Version: 9.0.2.9014)
NVIDIA Grafiktreiber 307.17 (Version: 307.17)
NVIDIA Install Application (Version: 2.1002.85.551)
NVIDIA Optimus 1.10.8 (Version: 1.10.8)
NVIDIA PhysX (x32 Version: 9.12.0613)
NVIDIA PhysX-Systemsoftware 9.12.0613 (Version: 9.12.0613)
NVIDIA Systemsteuerung 307.17 (Version: 307.17)
NVIDIA Update 1.10.8 (Version: 1.10.8)
NVIDIA Update Components (Version: 1.10.8)
Office Addin (x32 Version: 2.01.3202)
Office Addin 2003 (x32 Version: 2.01.3202)
Origin (x32 Version: 8.5.0.4518)
Penguins! (x32 Version: 2.2.0.98)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98)
Pokki (HKCU Version: 0.266.1.172)
Pokki Download Helper (HKCU Version: 1.3.1.282)
Polar Bowler (x32 Version: 2.2.0.97)
PunkBuster Services (x32 Version: 0.991)
Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.216)
Qualcomm Atheros WiFi Driver Installation (x32 Version: 11.31)
Realtek Ethernet Controller Driver (x32 Version: 8.2.612.2012)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6716)
Realtek PCIE Card Reader (x32 Version: 6.2.8400.27028)
RUNAWAY 2 - The dream of the turtle (x32)
Shared C Run-time for x64 (Version: 10.0.0)
Shredder (Version: 2.0.8.9)
Shredder (x32 Version: 2.0.8.9)
SketchUp Import for AutoCAD 2014 (x32 Version: 1.1.0)
Soldat 1.6.0 (x32 Version: 1.6.0)
Spotify (x32 Version: 0.8.4.99.ga249b5f1)
Star Wars The Old Republic (x32 Version: 7.0.0.21)
Star Wars: The Old Republic (x32 Version: 1.00)
Steam (x32 Version: 1.0.0.0)
Synaptics Pointing Device Driver (Version: 16.3.4.0)
Tactical Intervention (x32)
Tales of Lagoona (x32 Version: 2.2.0.110)
TAP-Windows 9.9.2 (Version: 9.9.2)
Update Installer for WildTangent Games App (x32)
Visual Studio 2005 Tools for Office Second Edition Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729)
Visual Studio Tools for the Office system 3.0 Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1)
WildTangent Games (x32 Version: 1.0.3.0)
WildTangent Games App (x32 Version: 4.0.9.3)
WinRAR 5.00 (64-Bit) (Version: 5.00.0)
Zuma's Revenge (x32 Version: 2.2.0.98)

==================== Restore Points  =========================

21-10-2013 14:22:47 DirectX wurde installiert
25-10-2013 12:19:43 Steam wird installiert
04-11-2013 16:22:42 Geplanter Prüfpunkt

==================== Hosts content: ==========================

2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {0307A090-2E31-43DA-9504-472A3A76E984} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2012-08-23] ()
Task: {08A71975-771E-472B-85D3-3CE84E65FE30} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\System32\NotificationUI.exe [2013-08-16] (Microsoft Corporation)
Task: {0C4F3555-BF2D-4899-AFC9-43EE328A2FCC} - System32\Tasks\GoforFilesUpdate => C:\Program Files (x86)\GoforFiles\GFFUpdater.exe
Task: {2F98B1D7-4027-441B-92C5-11DFF2A65B6F} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-10-23] (Acer Incorporated)
Task: {3F3AD83C-F723-48A0-86D7-C320814E1094} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-16] (Google Inc.)
Task: {43669FA7-7C0C-47B4-8079-B7B4AC640022} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-11-06] ()
Task: {4D4B3F93-E002-4912-B57E-F4FCECEAC50C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-16] (Google Inc.)
Task: {61F4F8C2-11AD-4FFB-BEF3-77614E838761} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-21] ()
Task: {9C6D898F-2277-44E4-831B-0419397165F2} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {ACD9DF06-F186-4EB1-BB70-C837656B6F64} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {BDB02E02-C5EC-46EA-8EC7-BCBAEDC9EA75} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2012-11-19] (Acer Incorporated)
Task: {C4E05C9A-DA25-4395-8892-E9E0732FD681} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PmmUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {CE94CBA4-1793-4B8D-B770-DC1EE8AB5E91} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2012-08-23] ()
Task: {F484EAA3-F5CB-4744-824F-58C9A9A6D55C} - System32\Tasks\HIDMonitor => C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe [2012-12-28] ()
Task: {FA1DBEEE-67D5-4AD0-B089-4F047D1881DA} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-11-01 06:31 - 2013-11-01 06:31 - 02329928 _____ () C:\Users\Sebastian\AppData\Local\Pokki\ocdeskband_0.dll
2013-11-06 17:52 - 2012-09-26 10:15 - 00197240 _____ () C:\Program Files (x86)\CleanGenius 3\CGUnlockerExtension64.dll
2012-07-26 08:58 - 2012-07-26 08:53 - 00170864 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll
2013-10-08 15:36 - 2013-01-12 19:33 - 00012520 _____ () C:\Users\Sebastian\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll
2013-10-08 15:36 - 2013-01-12 19:33 - 00015080 _____ () C:\Users\Sebastian\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll
2013-10-08 15:36 - 2013-01-12 19:33 - 00014056 _____ () C:\Users\Sebastian\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll
2013-09-11 12:53 - 2013-09-11 12:52 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-09-13 18:51 - 2013-09-13 18:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 18:51 - 2013-09-13 18:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-11-03 01:38 - 2012-11-03 01:38 - 00465384 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2012-11-03 01:37 - 2012-11-03 01:37 - 00125504 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2012-11-03 01:38 - 2012-11-03 01:38 - 00155712 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\VolumeSnapshot.dll
2012-11-03 01:37 - 2012-11-03 01:37 - 00118336 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\Online.dll
2012-11-03 01:37 - 2012-11-03 01:37 - 01081408 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2012-11-03 01:37 - 2012-11-03 01:37 - 00052288 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\OsSettingPort.dll
2012-11-03 01:37 - 2012-11-03 01:37 - 00727616 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\OutlookShadow.dll
2013-11-06 17:52 - 2012-08-28 18:26 - 00080976 _____ () C:\Program Files (x86)\CleanGenius 3\VersionInfo.dll
2013-11-06 17:52 - 2012-08-28 18:27 - 00166992 _____ () C:\Program Files (x86)\CleanGenius 3\NetReg.dll
2013-11-06 17:52 - 2012-09-26 09:59 - 00154704 _____ () C:\Program Files (x86)\CleanGenius 3\mlutil.dll
2013-09-07 03:11 - 2013-09-07 03:11 - 00569856 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll
2013-09-07 03:11 - 2013-09-07 03:11 - 01400846 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avcodec-54.dll
2013-09-07 03:11 - 2013-09-07 03:11 - 00151054 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avutil-51.dll
2013-09-07 03:11 - 2013-09-07 03:11 - 00222734 _____ () C:\Users\Sebastian\AppData\Local\Pokki\Engine\avformat-54.dll
2013-10-21 15:35 - 2013-10-09 01:01 - 00698832 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\libglesv2.dll
2013-10-21 15:35 - 2013-10-09 01:01 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\libegl.dll
2013-10-21 15:35 - 2013-10-09 01:02 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll
2013-10-21 15:35 - 2013-10-09 01:02 - 00415184 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll
2013-10-21 15:35 - 2013-10-09 01:01 - 01604560 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ffmpegsumo.dll
2013-02-03 20:20 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-10-21 15:35 - 2013-10-09 01:02 - 13584336 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/06/2013 05:51:35 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.

Error: (11/06/2013 05:51:33 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.

Error: (11/06/2013 05:51:29 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.

Error: (11/06/2013 05:51:29 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.

Error: (11/05/2013 07:06:01 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434
Name des fehlerhaften Moduls: QtCore_Ad_SyncNs_4.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x50d3fca7
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000649e65fe
ID des fehlerhaften Prozesses: 0x810
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3
Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5

Error: (10/30/2013 02:55:05 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: SF_ASPIRE_V5)
Description: Bei der Aktivierung der App „eBayInc.eBay_1618n3s9xq8tw!App“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (10/30/2013 02:55:05 PM) (Source: Application Hang) (User: )
Description: Programm eBay.CoreApp.exe, Version 1.1.0.35 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1110

Startzeit: 01ced5776ae1b032

Endzeit: 4294967295

Anwendungspfad: C:\Program Files\WindowsApps\eBayInc.eBay_1.1.0.35_neutral__1618n3s9xq8tw\eBay.CoreApp.exe

Berichts-ID: ba8d98f4-416a-11e3-be99-2016d8e5b088

Vollständiger Name des fehlerhaften Pakets: eBayInc.eBay_1.1.0.35_neutral__1618n3s9xq8tw

Anwendungs-ID, die relativ zum fehlerhaften Paket ist: App

Error: (10/30/2013 02:53:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: SF_ASPIRE_V5)
Description: Die App „eBayInc.eBay_1618n3s9xq8tw!App“ wurde nicht innerhalb der vorgesehenen Zeit gestartet.

Error: (10/29/2013 08:54:56 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "asmv2:clrClassInvocation1". Fehler in Manifest- oder Richtliniendatei "asmv2:clrClassInvocation2" in Zeile asmv2:clrClassInvocation3.
Das asmv2:clrClassInvocation-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^entryPoint-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird.

Error: (10/29/2013 08:54:56 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "asmv2:clrClassInvocation1". Fehler in Manifest- oder Richtliniendatei "asmv2:clrClassInvocation2" in Zeile asmv2:clrClassInvocation3.
Das asmv2:clrClassInvocation-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^entryPoint-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird.


System errors:
=============
Error: (11/06/2013 05:44:03 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "CyberGhost VPN 5 Client Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053

Error: (11/06/2013 05:44:03 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst CyberGhost VPN 5 Client Service erreicht.

Error: (11/05/2013 06:56:42 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:41 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:41 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:41 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:41 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:41 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:40 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (11/05/2013 06:56:40 PM) (Source: DCOM) (User: SF_ASPIRE_V5)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}SF_Aspire_V5SebastianS-1-5-21-1556135393-1719581868-3524785236-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar


Microsoft Office Sessions:
=========================
Error: (11/06/2013 05:51:35 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe

Error: (11/06/2013 05:51:33 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe

Error: (11/06/2013 05:51:29 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe

Error: (11/06/2013 05:51:29 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe

Error: (11/05/2013 07:06:01 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.2.9200.1662851a94434QtCore_Ad_SyncNs_4.dll_unloaded0.0.0.050d3fca7c000000500000000649e65fe81001ceda501b22843cC:\Windows\Explorer.EXEQtCore_Ad_SyncNs_4.dlled1417c8-4644-11e3-be9e-2016d8e5b088

Error: (10/30/2013 02:55:05 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: SF_ASPIRE_V5)
Description: eBayInc.eBay_1618n3s9xq8tw!App-2144927142

Error: (10/30/2013 02:55:05 PM) (Source: Application Hang)(User: )
Description: eBay.CoreApp.exe1.1.0.35111001ced5776ae1b0324294967295C:\Program Files\WindowsApps\eBayInc.eBay_1.1.0.35_neutral__1618n3s9xq8tw\eBay.CoreApp.exeba8d98f4-416a-11e3-be99-2016d8e5b088eBayInc.eBay_1.1.0.35_neutral__1618n3s9xq8twApp

Error: (10/30/2013 02:53:45 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: SF_ASPIRE_V5)
Description: eBayInc.eBay_1618n3s9xq8tw!App

Error: (10/29/2013 08:54:56 AM) (Source: SideBySide)(User: )
Description: asmv2:clrClassInvocationurn:schemas-microsoft-com:asm.v1^entryPointC:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.ManifestC:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest4

Error: (10/29/2013 08:54:56 AM) (Source: SideBySide)(User: )
Description: asmv2:clrClassInvocationurn:schemas-microsoft-com:asm.v1^entryPointC:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.ManifestC:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest4


==================== Memory info ===========================

Percentage of memory in use: 47%
Total physical RAM: 3891.59 MB
Available physical RAM: 2054.08 MB
Total Pagefile: 5619.59 MB
Available Pagefile: 3453.35 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:682.15 GB) (Free:561.98 GB) NTFS
Drive d: (AOE) (CDROM) (Total:0.25 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 699 GB) (Disk ID: 48FD7E96)

Partition: GPT Partition Type
==================== End Of Log ============================

und hier ((:

schrauber 09.11.2013 13:09

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Sebastian04 11.11.2013 17:42

Code:

Malwarebytes Anti-Malware (Test) 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2013.11.11.08

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16721
Sebastian :: SF_ASPIRE_V5 [Administrator]

Schutz: Aktiviert

11.11.2013 16:50:20
mbam-log-2013-11-11 (16-50-20).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 244927
Laufzeit: 8 Minute(n), 57 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 6
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} (PUP.Optional.BrowseFox.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.StartPage) -> Bösartig: (hxxp://www.delta-search.com/?babsrc=HP_ss&mntrId=8C121216D8E56F74&affID=119293&tsp=5036) Gut: (hxxp://www.google.com) -> Erfolgreich ersetzt und in Quarantäne gestellt.

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 11
C:\Users\Sebastian\Downloads\(PC_GAMES)_Empire_Earth_(Full_Game).exe (PUP.Optional.OneClickDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\Brothersoft_downloader_For_Empire_Earth_1.exe (PUP.Optional.BSDownloader) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (1).exe (PUP.Optional.GoForFiles.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (2).exe (PUP.Optional.GoForFiles.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028 (3).exe (PUP.Optional.GoForFiles.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\empire_earth_1_full_version_downloader_de_99028.exe (PUP.Optional.GoForFiles.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_easeus-cleangenius.exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat (1).exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\SoftonicDownloader_fuer_soldat.exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\soldat-1-6-6 (1).exe (PUP.Optional.DownloadSponsor.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Sebastian\Downloads\soldat-1-6-6.exe (PUP.Optional.DownloadSponsor.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)

Hier (:

Code:

# AdwCleaner v3.012 - Bericht erstellt am 11/11/2013 um 17:21:51
# Updated 11/11/2013 von Xplode
# Betriebssystem : Windows 8  (64 bits)
# Benutzername : Sebastian - SF_ASPIRE_V5
# Gestartet von : C:\Users\Sebastian\Downloads\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\ProgramData\boost_interprocess
Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup
Ordner Gelöscht : C:\Users\Sebastian\AppData\Local\cool_mirage
Ordner Gelöscht : C:\Users\Sebastian\AppData\Roaming\goforfiles
Ordner Gelöscht : C:\Users\Sebastian\AppData\Roaming\Systweak
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Windows\System32\Tasks\GoforFilesUpdate

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\5355dfdbe53cec48
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Schlüssel Gelöscht : HKCU\Software\BabSolution
Schlüssel Gelöscht : HKCU\Software\Delta
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\Delta
Schlüssel Gelöscht : HKLM\Software\systweak

***** [ Browser ] *****

-\\ Internet Explorer v10.0.9200.16537


-\\ Google Chrome v30.0.1599.101

[ Datei : C:\Users\Sebastian\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Gelöscht : homepage

*************************

AdwCleaner[R0].txt - [2096 octets] - [11/11/2013 17:20:06]
AdwCleaner[S0].txt - [1708 octets] - [11/11/2013 17:21:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1768 octets] ##########

Bitte (;

Code:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 8 x64
Ran by Sebastian on 11.11.2013 at 17:33:53,41
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1556135393-1719581868-3524785236-1002\Software\sweetim



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\apn"
Failed to delete: [Folder] "C:\ProgramData\boost_interprocess"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11.11.2013 at 17:38:57,18
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


schrauber 12.11.2013 10:17


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Sebastian04 12.11.2013 21:07

Code:

ESETSmartInstaller@High as downloader log:
all ok

Code:

Results of screen317's Security Check version 0.99.76 
  x64 (UAC is enabled) 
 Internet Explorer 10 
``````````````Antivirus/Firewall Check:``````````````
Windows Defender 
Avira Desktop     
 Antivirus up to date!  (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
 McAfee SiteAdvisor   
 Google Chrome 30.0.1599.101 
 Google Chrome 30.0.1599.69 
````````Process Check: objlist.exe by Laurent```````` 
 Avira Antivir avgnt.exe
 Avira Antivir avguard.exe
 Symantec Norton Online Backup NOBuAgent.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````

hier (;

schrauber 13.11.2013 10:01

Frisches FRST Log bitte. Noch Probleme?

Sebastian04 13.11.2013 18:04

ja Lüfter laufen unverändert //:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-11-2013
Ran by Sebastian (administrator) on SF_ASPIRE_V5 on 13-11-2013 18:03:15
Running from C:\Users\Sebastian\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Pokki) C:\Users\Sebastian\AppData\Local\Pokki\Engine\pokki.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Pokki) C:\Users\Sebastian\AppData\Local\Pokki\Engine\pokki.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Dritek System Inc.) C:\Program Files (x86)\RadioController\RfBtnHelper.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-09-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-09-03] (Realtek Semiconductor)
HKLM\...\Run: [BtPreLoad] - C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [64640 2012-12-05] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3008824 2012-11-29] (Synaptics Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKCU\...\Policies\Explorer: []
HKLM-x32\...\Run: [LManager] - [x]
HKLM-x32\...\Run: [RadioController] - C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216 2013-02-03] (Dritek System Inc.)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-11] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe /r
HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe /r
AppInit_DLLs: C:\Windows\system32\nvinitx.dll [247144 2012-10-12] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [203112 2012-10-12] (NVIDIA Corporation)
Startup: C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar.lnk
ShortcutTarget: Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
SearchScopes: HKLM - DefaultScope {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKCU - DefaultScope {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL =
SearchScopes: HKCU - {5C5A2F82-A16F-46B7-842A-9FB266D8CF32} URL =
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://google.de/"
CHR Plugin: (Shockwave Flash) - C:\Users\Sebastian\AppData\Local\Google\Chrome\User Data\PepperFlash\11.7.700.225\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Extension: (Google Docs) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (SiteAdvisor) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.3.1271_0
CHR Extension: (Google Wallet) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\SEBAST~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-11] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-11] (Avira Operations GmbH & Co. KG)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [231552 2012-12-05] (Qualcomm Atheros Commnucations)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.)
S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [484592 2013-10-28] (BitRaider, LLC)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552 2012-10-25] (Acer Incorporated)
S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [26600 2013-10-08] (CyberGhost S.R.L)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [121616 2013-10-02] (McAfee, Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-11-03] (NTI Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-06-17] ()
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [96880 2013-02-03] (Dritek System INC.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-11] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-11] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-09-11] (Avira Operations GmbH & Co. KG)
S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-28] (BitRaider)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2012-12-05] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-02-03] (Dritek System Inc.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31032 2012-11-29] (Synaptics Incorporated)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-13 18:03 - 2013-11-13 18:03 - 01957610 _____ (Farbar) C:\Users\Sebastian\Downloads\FRST64.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 104010312 _____ C:\Windows\SysWOW64\㰒�瀔Ű
2013-11-12 16:30 - 2013-11-12 16:31 - 00891184 _____ C:\Users\Sebastian\Downloads\SecurityCheck.exe
2013-11-12 16:22 - 2013-11-12 16:22 - 02347384 _____ (ESET) C:\Users\Sebastian\Downloads\esetsmartinstaller_enu.exe
2013-11-11 18:13 - 2013-11-11 18:22 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WildTangent
2013-11-11 17:38 - 2013-11-11 17:38 - 00000925 _____ C:\Users\Sebastian\Desktop\JRT.txt
2013-11-11 17:33 - 2013-11-11 17:33 - 00000000 ____D C:\Windows\ERUNT
2013-11-11 17:32 - 2013-11-11 17:32 - 01034531 _____ (Thisisu) C:\Users\Sebastian\Downloads\JRT.exe
2013-11-11 17:31 - 2013-11-11 17:31 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-11 17:30 - 2013-11-11 17:31 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-11 17:30 - 2013-11-11 17:31 - 00000000 ____D C:\Program Files\iTunes
2013-11-11 17:30 - 2013-11-11 17:31 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-11-11 17:30 - 2013-11-11 17:30 - 00000000 ____D C:\Program Files\iPod
2013-11-11 17:23 - 2013-11-11 17:23 - 00000000 ____D C:\ProgramData\boost_interprocess
2013-11-11 17:19 - 2013-11-11 17:21 - 00000000 ____D C:\AdwCleaner
2013-11-11 17:19 - 2013-11-11 17:19 - 01085542 _____ C:\Users\Sebastian\Downloads\adwcleaner.exe
2013-11-11 16:47 - 2013-11-11 16:47 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Malwarebytes
2013-11-11 16:47 - 2013-11-11 16:47 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-11 16:46 - 2013-11-11 16:46 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Sebastian\Downloads\mbam-setup-1.75.0.1300.exe
2013-11-08 20:42 - 2013-11-11 17:59 - 00264336 _____ C:\Windows\WindowsUpdate.log
2013-11-08 14:33 - 2013-11-13 18:03 - 00014986 _____ C:\Users\Sebastian\Downloads\FRST.txt
2013-11-08 14:32 - 2013-11-08 14:33 - 00029187 _____ C:\Users\Sebastian\Downloads\Addition.txt
2013-11-08 14:31 - 2013-11-08 14:31 - 00000000 ____D C:\FRST
2013-11-06 18:41 - 2013-11-06 18:41 - 00437645 _____ C:\Users\Sebastian\Downloads\SnippingToolPlusv3-4-1-0.zip
2013-11-06 17:53 - 2013-11-12 17:59 - 00000000 ____D C:\ProgramData\Acebyte
2013-11-06 17:53 - 2013-11-06 17:53 - 00000014 _____ C:\Windows\SysWOW64\CleanGenius3Free.dll
2013-11-06 17:52 - 2013-11-06 17:52 - 15966088 _____ (Acebyte, Inc.                                              ) C:\Users\Sebastian\Desktop\cleangenius.exe
2013-11-05 19:05 - 2013-11-05 19:05 - 00007621 _____ C:\Users\Sebastian\AppData\Local\Resmon.ResmonCfg
2013-11-05 18:54 - 2013-11-11 17:13 - 00004662 _____ C:\Windows\PFRO.log
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4.exe
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4 (1).exe
2013-11-03 11:28 - 2013-11-03 11:28 - 104760586 _____ C:\Windows\SysWOW64\렄顣瀔ō
2013-10-30 11:42 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim (1).exe
2013-10-30 11:41 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim.exe
2013-10-30 10:47 - 2013-10-30 10:47 - 104098187 _____ C:\Windows\SysWOW64\莺袷瀔Y
2013-10-28 13:47 - 2013-10-28 13:48 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTOR
2013-10-28 13:18 - 2013-10-28 13:18 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Electronic_Arts_Inc
2013-10-28 13:06 - 2013-10-28 13:47 - 00000000 ____D C:\ProgramData\BitRaider
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTORPerf
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-10-28 13:04 - 2013-10-28 13:05 - 00017521 _____ C:\Users\Sebastian\Documents\Install STAR WARS The Old Republic.log
2013-10-28 13:04 - 2013-10-28 13:04 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-10-28 13:03 - 2013-11-05 18:51 - 00000000 ____D C:\Users\hedev
2013-10-28 13:03 - 2013-10-28 13:04 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup (1).exe
2013-10-28 13:03 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup.exe
2013-10-28 12:38 - 2013-10-28 12:38 - 00431008 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-28 09:57 - 2013-10-02 02:38 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-25 14:57 - 2013-10-25 14:57 - 00000000 ____D C:\Users\Sebastian\Documents\TacticalIntervention
2013-10-25 14:18 - 2013-10-25 14:18 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-10-25 13:57 - 2013-08-03 07:40 - 01374208 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2013-10-25 13:57 - 2013-08-03 07:40 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2013-10-25 13:57 - 2013-08-03 07:40 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2013-10-25 13:57 - 2013-08-03 06:14 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2013-10-25 13:57 - 2013-08-03 06:13 - 01245696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2013-10-25 13:57 - 2013-08-03 06:13 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2013-10-25 13:56 - 2013-08-10 06:21 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2013-10-25 13:56 - 2013-08-10 06:21 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncInfo.dll
2013-10-25 13:56 - 2013-08-10 04:58 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 19758080 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 10116608 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2013-10-25 13:56 - 2013-08-02 07:28 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-10-25 13:56 - 2013-08-02 07:26 - 02304512 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 17561088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 08858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2013-10-25 13:56 - 2013-08-02 06:08 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-10-25 13:56 - 2013-08-02 06:06 - 02035712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-10-25 13:56 - 2013-08-01 11:41 - 02233688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-25 13:56 - 2013-07-31 00:30 - 00386923 _____ C:\Windows\system32\ApnDatabase.xml
2013-10-25 13:56 - 2013-07-25 00:10 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2013-10-25 13:56 - 2013-07-25 00:06 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2013-10-25 13:56 - 2013-04-10 00:17 - 01125888 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2013-10-25 13:56 - 2013-04-09 23:29 - 00893952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2013-10-25 13:55 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-25 13:55 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-25 13:55 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-25 13:55 - 2013-07-06 01:15 - 00652288 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-25 13:55 - 2013-07-04 03:13 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-25 13:55 - 2013-02-21 11:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-25 13:55 - 2013-02-21 11:14 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-25 13:55 - 2012-11-08 05:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-25 13:54 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-25 13:54 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-25 13:54 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-25 13:54 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-25 13:54 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-25 13:54 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-25 13:54 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-25 13:54 - 2013-08-23 06:11 - 04040192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-25 13:54 - 2013-07-19 23:13 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-25 13:54 - 2013-07-19 23:13 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-25 13:54 - 2013-07-05 23:02 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-25 13:54 - 2013-07-05 23:01 - 00210560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-25 13:54 - 2013-07-02 02:41 - 00447320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2013-10-25 13:54 - 2013-07-02 02:41 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2013-10-25 13:54 - 2013-07-02 02:41 - 00213336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2013-10-25 13:54 - 2013-07-01 23:14 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00623448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00498008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-25 13:54 - 2013-07-01 02:42 - 00021848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-25 13:54 - 2013-06-29 04:08 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-25 13:54 - 2013-06-29 04:07 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-25 13:54 - 2013-06-29 04:07 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-25 13:54 - 2013-06-29 04:06 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-25 13:54 - 2013-06-22 06:45 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-25 13:54 - 2013-06-22 06:45 - 00054488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2013-10-25 13:54 - 2013-05-27 00:17 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-25 13:54 - 2013-05-26 23:59 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-25 13:54 - 2013-05-25 04:15 - 00362496 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-25 13:54 - 2013-05-25 03:32 - 00300032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-25 13:54 - 2013-05-15 23:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-10-25 13:54 - 2013-05-15 23:35 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2013-10-25 13:54 - 2013-05-14 14:14 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-25 13:54 - 2013-05-14 10:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-25 13:54 - 2013-04-28 23:28 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-25 13:54 - 2013-02-21 11:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-25 13:54 - 2013-02-21 11:14 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-25 13:54 - 2013-02-19 10:53 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-10-25 13:54 - 2012-11-08 05:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-25 13:48 - 2013-08-07 06:15 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll
2013-10-25 13:45 - 2013-10-25 13:49 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CyberGhost
2013-10-25 13:44 - 2013-10-25 13:45 - 00000000 ____D C:\Program Files\CyberGhost 5
2013-10-25 13:44 - 2013-10-25 13:44 - 08563888 _____ (CyberGhost S.R.L.                                          ) C:\Users\Sebastian\Downloads\cg5.exe
2013-10-25 13:44 - 2013-10-25 13:44 - 00001732 _____ C:\Users\Sebastian\Desktop\CyberGhost 5.lnk
2013-10-25 13:44 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\TAP-Windows
2013-10-25 13:20 - 2013-10-30 11:45 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-25 13:18 - 2013-10-25 13:19 - 08531968 _____ C:\Users\Sebastian\Downloads\SteamInstall_German.msi
2013-10-23 16:32 - 2013-10-23 16:33 - 01522176 _____ C:\Users\Sebastian\Downloads\Dfk-02fc.xls
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Soldat
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Program Files\Soldat
2013-10-21 15:34 - 2013-10-21 15:34 - 00000000 ____R C:\logwmemory.bin
2013-10-21 15:09 - 2013-10-21 15:09 - 00000000 ____D C:\Program Files (x86)\DirectX
2013-10-21 15:07 - 2013-10-21 15:08 - 100273008 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\directx_Jun2010redist.exe
2013-10-19 01:26 - 2013-10-19 01:26 - 101890677 _____ C:\Windows\SysWOW64\ḋܼ瀔×
2013-10-17 16:52 - 2013-10-17 16:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WinRAR
2013-10-17 16:51 - 2013-10-17 18:31 - 00001124 _____ C:\Users\Public\Desktop\WinRAR.lnk
2013-10-17 16:51 - 2013-10-17 18:31 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-17 16:51 - 2013-10-17 16:51 - 00000000 ____D C:\Program Files\WinRAR
2013-10-17 16:50 - 2013-10-17 16:50 - 02074056 _____ C:\Users\Sebastian\Downloads\winrar-x64-500d.exe
2013-10-17 16:50 - 2013-10-17 16:50 - 01970848 _____ C:\Users\Sebastian\Downloads\winrar-x64-500.exe
2013-10-17 16:43 - 2013-10-17 16:43 - 101544623 _____ C:\Windows\SysWOW64\쥥龱瀔Þ
2013-10-16 17:44 - 2013-10-16 17:45 - 00018906 _____ C:\Users\Sebastian\Downloads\[katproxy.com]counter.strike.source.online.full.games4theworld.torrent
2013-10-15 17:31 - 2013-10-15 17:32 - 97828793 _____ (Stainless Steel Studios, Inc.) C:\Users\Sebastian\Downloads\EEDemo.exe
2013-10-15 17:01 - 2013-10-15 17:01 - 00000000 ____D C:\Users\Sebastian\AppData\Local\avgchrome
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-15 16:36 - 2013-10-15 16:36 - 101148298 _____ C:\Windows\SysWOW64\᯾瞏⤰Ń߿

==================== One Month Modified Files and Folders =======

2013-11-13 18:03 - 2013-11-13 18:03 - 01957610 _____ (Farbar) C:\Users\Sebastian\Downloads\FRST64.exe
2013-11-13 18:03 - 2013-11-08 14:33 - 00014986 _____ C:\Users\Sebastian\Downloads\FRST.txt
2013-11-13 18:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru
2013-11-13 17:29 - 2013-06-16 13:13 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-13 17:12 - 2013-06-16 20:00 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Pokki
2013-11-13 17:10 - 2013-11-13 17:10 - 104010312 _____ C:\Windows\SysWOW64\㰒�瀔Ű
2013-11-13 17:10 - 2013-06-16 13:13 - 00001138 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-13 17:09 - 2012-12-25 11:42 - 00053284 _____ C:\Windows\system32\wpbbin.exe
2013-11-13 17:09 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-12 21:10 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-11-12 17:59 - 2013-11-06 17:53 - 00000000 ____D C:\ProgramData\Acebyte
2013-11-12 17:18 - 2013-06-16 13:45 - 00000000 ____D C:\Program Files (x86)\Origin
2013-11-12 16:31 - 2013-11-12 16:30 - 00891184 _____ C:\Users\Sebastian\Downloads\SecurityCheck.exe
2013-11-12 16:22 - 2013-11-12 16:22 - 02347384 _____ (ESET) C:\Users\Sebastian\Downloads\esetsmartinstaller_enu.exe
2013-11-11 18:22 - 2013-11-11 18:13 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WildTangent
2013-11-11 18:13 - 2012-12-25 12:56 - 00000000 ____D C:\ProgramData\WildTangent
2013-11-11 18:13 - 2012-12-25 12:56 - 00000000 ____D C:\Program Files (x86)\WildTangent Games
2013-11-11 17:59 - 2013-11-08 20:42 - 00264336 _____ C:\Windows\WindowsUpdate.log
2013-11-11 17:38 - 2013-11-11 17:38 - 00000925 _____ C:\Users\Sebastian\Desktop\JRT.txt
2013-11-11 17:33 - 2013-11-11 17:33 - 00000000 ____D C:\Windows\ERUNT
2013-11-11 17:32 - 2013-11-11 17:32 - 01034531 _____ (Thisisu) C:\Users\Sebastian\Downloads\JRT.exe
2013-11-11 17:31 - 2013-11-11 17:31 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-11 17:31 - 2013-11-11 17:30 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-11 17:31 - 2013-11-11 17:30 - 00000000 ____D C:\Program Files\iTunes
2013-11-11 17:31 - 2013-11-11 17:30 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-11-11 17:30 - 2013-11-11 17:30 - 00000000 ____D C:\Program Files\iPod
2013-11-11 17:23 - 2013-11-11 17:23 - 00000000 ____D C:\ProgramData\boost_interprocess
2013-11-11 17:21 - 2013-11-11 17:19 - 00000000 ____D C:\AdwCleaner
2013-11-11 17:19 - 2013-11-11 17:19 - 01085542 _____ C:\Users\Sebastian\Downloads\adwcleaner.exe
2013-11-11 17:13 - 2013-11-05 18:54 - 00004662 _____ C:\Windows\PFRO.log
2013-11-11 16:47 - 2013-11-11 16:47 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Malwarebytes
2013-11-11 16:47 - 2013-11-11 16:47 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-11 16:46 - 2013-11-11 16:46 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Sebastian\Downloads\mbam-setup-1.75.0.1300.exe
2013-11-11 16:30 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-11-08 14:33 - 2013-11-08 14:32 - 00029187 _____ C:\Users\Sebastian\Downloads\Addition.txt
2013-11-08 14:31 - 2013-11-08 14:31 - 00000000 ____D C:\FRST
2013-11-08 14:28 - 2013-09-19 21:30 - 00002108 _____ C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2013-11-06 18:41 - 2013-11-06 18:41 - 00437645 _____ C:\Users\Sebastian\Downloads\SnippingToolPlusv3-4-1-0.zip
2013-11-06 18:15 - 2013-06-16 13:13 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1556135393-1719581868-3524785236-1002
2013-11-06 18:00 - 2013-06-16 13:13 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Deployment
2013-11-06 17:53 - 2013-11-06 17:53 - 00000014 _____ C:\Windows\SysWOW64\CleanGenius3Free.dll
2013-11-06 17:52 - 2013-11-06 17:52 - 15966088 _____ (Acebyte, Inc.                                              ) C:\Users\Sebastian\Desktop\cleangenius.exe
2013-11-05 19:10 - 2013-10-08 15:42 - 00000577 _____ C:\Users\Sebastian\AppData\Roaming\All CPU MeterV3_Settings.ini
2013-11-05 19:05 - 2013-11-05 19:05 - 00007621 _____ C:\Users\Sebastian\AppData\Local\Resmon.ResmonCfg
2013-11-05 18:54 - 2012-12-25 13:01 - 00000000 ____D C:\Program Files\mcafee
2013-11-05 18:54 - 2012-12-25 13:01 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-11-05 18:54 - 2012-12-25 13:00 - 00000000 ____D C:\ProgramData\McAfee
2013-11-05 18:52 - 2012-07-26 09:12 - 00000000 ___HD C:\Windows\ELAMBKUP
2013-11-05 18:51 - 2013-10-28 13:03 - 00000000 ____D C:\Users\hedev
2013-11-05 18:51 - 2013-09-12 16:53 - 00000000 ____D C:\Users\Schule
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4.exe
2013-11-05 18:30 - 2013-11-05 18:30 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Sebastian\Downloads\GPU-Z.0.7.4 (1).exe
2013-11-05 18:30 - 2013-10-10 17:45 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\NVIDIA
2013-11-04 17:50 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache
2013-11-04 17:08 - 2013-02-04 04:53 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-11-04 17:08 - 2013-02-04 04:53 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-11-04 17:08 - 2012-07-26 08:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-03 11:28 - 2013-11-03 11:28 - 104760586 _____ C:\Windows\SysWOW64\렄顣瀔ō
2013-10-30 14:46 - 2013-06-16 13:02 - 00000000 ____D C:\Users\Sebastian
2013-10-30 11:45 - 2013-10-25 13:20 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-30 11:44 - 2013-06-21 08:29 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CrashDumps
2013-10-30 11:44 - 2012-12-25 11:42 - 00000000 ____D C:\Windows\Panther
2013-10-30 11:42 - 2013-10-30 11:42 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim (1).exe
2013-10-30 11:42 - 2013-10-30 11:41 - 03302432 _____ (Piriform Ltd) C:\Users\Sebastian\Downloads\ccsetup407_slim.exe
2013-10-30 10:48 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\ELAM
2013-10-30 10:47 - 2013-10-30 10:47 - 104098187 _____ C:\Windows\SysWOW64\莺袷瀔Y
2013-10-28 13:48 - 2013-10-28 13:47 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTOR
2013-10-28 13:47 - 2013-10-28 13:06 - 00000000 ____D C:\ProgramData\BitRaider
2013-10-28 13:18 - 2013-10-28 13:18 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Electronic_Arts_Inc
2013-10-28 13:17 - 2013-06-16 13:46 - 00000000 ____D C:\ProgramData\Electronic Arts
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Sebastian\AppData\Local\SWTORPerf
2013-10-28 13:06 - 2013-10-28 13:06 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-10-28 13:05 - 2013-10-28 13:04 - 00017521 _____ C:\Users\Sebastian\Documents\Install STAR WARS The Old Republic.log
2013-10-28 13:05 - 2013-06-16 13:46 - 00000000 ____D C:\Users\Sebastian\Desktop\Spiele
2013-10-28 13:04 - 2013-10-28 13:04 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-10-28 13:04 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup (1).exe
2013-10-28 13:03 - 2013-10-28 13:03 - 39777624 _____ C:\Users\Sebastian\Downloads\SWTOR_setup.exe
2013-10-28 12:57 - 2013-06-16 13:50 - 00000000 ____D C:\Program Files (x86)\Origin Games
2013-10-28 12:49 - 2013-06-16 13:50 - 00000000 ____D C:\Users\Sebastian\AppData\Local\Origin
2013-10-28 12:38 - 2013-10-28 12:38 - 00431008 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-28 09:58 - 2013-06-16 13:05 - 00000000 ___RD C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-28 09:58 - 2013-06-16 13:05 - 00000000 ___RD C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-25 15:40 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ToastData
2013-10-25 15:37 - 2013-08-14 10:24 - 00000000 ____D C:\Windows\system32\MRT
2013-10-25 15:34 - 2013-07-12 07:28 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-25 14:57 - 2013-10-25 14:57 - 00000000 ____D C:\Users\Sebastian\Documents\TacticalIntervention
2013-10-25 14:18 - 2013-10-25 14:18 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-10-25 13:49 - 2013-10-25 13:45 - 00000000 ____D C:\Users\Sebastian\AppData\Local\CyberGhost
2013-10-25 13:45 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\CyberGhost 5
2013-10-25 13:44 - 2013-10-25 13:44 - 08563888 _____ (CyberGhost S.R.L.                                          ) C:\Users\Sebastian\Downloads\cg5.exe
2013-10-25 13:44 - 2013-10-25 13:44 - 00001732 _____ C:\Users\Sebastian\Desktop\CyberGhost 5.lnk
2013-10-25 13:44 - 2013-10-25 13:44 - 00000000 ____D C:\Program Files\TAP-Windows
2013-10-25 13:19 - 2013-10-25 13:18 - 08531968 _____ C:\Users\Sebastian\Downloads\SteamInstall_German.msi
2013-10-23 16:33 - 2013-10-23 16:32 - 01522176 _____ C:\Users\Sebastian\Downloads\Dfk-02fc.xls
2013-10-23 16:32 - 2013-09-25 16:50 - 00000000 ____D C:\Users\Sebastian\Desktop\Schule
2013-10-21 15:53 - 2013-06-16 13:02 - 00000000 ____D C:\Users\Sebastian\AppData\Local\VirtualStore
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Soldat
2013-10-21 15:52 - 2013-10-21 15:52 - 00000000 ____D C:\Program Files\Soldat
2013-10-21 15:35 - 2013-06-16 13:14 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-21 15:34 - 2013-10-21 15:34 - 00000000 ____R C:\logwmemory.bin
2013-10-21 15:09 - 2013-10-21 15:09 - 00000000 ____D C:\Program Files (x86)\DirectX
2013-10-21 15:08 - 2013-10-21 15:07 - 100273008 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\directx_Jun2010redist.exe
2013-10-19 01:26 - 2013-10-19 01:26 - 101890677 _____ C:\Windows\SysWOW64\ḋܼ瀔×
2013-10-17 18:31 - 2013-10-17 16:51 - 00001124 _____ C:\Users\Public\Desktop\WinRAR.lnk
2013-10-17 18:31 - 2013-10-17 16:51 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-17 18:28 - 2013-10-11 12:18 - 00000000 ____D C:\Users\Sebastian\Documents\My Games
2013-10-17 18:28 - 2012-12-25 13:05 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-10-17 18:27 - 2013-10-10 16:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2013-10-17 18:24 - 2013-06-16 13:13 - 00004114 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-17 18:24 - 2013-06-16 13:13 - 00003878 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-17 17:27 - 2013-06-18 09:43 - 00000000 ____D C:\Users\Sebastian\Documents\Bluetooth Folder
2013-10-17 17:27 - 2012-12-25 13:04 - 00000000 ____D C:\Program Files (x86)\Acer
2013-10-17 16:53 - 2013-09-12 17:12 - 00000000 ____D C:\Users\Sebastian\AppData\Local\clear.fi
2013-10-17 16:52 - 2013-10-17 16:52 - 00000000 ____D C:\Users\Sebastian\AppData\Roaming\WinRAR
2013-10-17 16:51 - 2013-10-17 16:51 - 00000000 ____D C:\Program Files\WinRAR
2013-10-17 16:50 - 2013-10-17 16:50 - 02074056 _____ C:\Users\Sebastian\Downloads\winrar-x64-500d.exe
2013-10-17 16:50 - 2013-10-17 16:50 - 01970848 _____ C:\Users\Sebastian\Downloads\winrar-x64-500.exe
2013-10-17 16:43 - 2013-10-17 16:43 - 101544623 _____ C:\Windows\SysWOW64\쥥龱瀔Þ
2013-10-16 17:45 - 2013-10-16 17:44 - 00018906 _____ C:\Users\Sebastian\Downloads\[katproxy.com]counter.strike.source.online.full.games4theworld.torrent
2013-10-15 18:06 - 2013-10-11 13:24 - 00000030 _____ C:\Windows\SIERRA.INI
2013-10-15 17:32 - 2013-10-15 17:31 - 97828793 _____ (Stainless Steel Studios, Inc.) C:\Users\Sebastian\Downloads\EEDemo.exe
2013-10-15 17:07 - 2013-09-25 17:19 - 00000000 ____D C:\Users\Public\Documents\Autodesk
2013-10-15 17:07 - 2013-09-25 17:01 - 00000000 ____D C:\ProgramData\Autodesk
2013-10-15 17:01 - 2013-10-15 17:01 - 00000000 ____D C:\Users\Sebastian\AppData\Local\avgchrome
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-10-15 16:59 - 2013-10-15 16:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-10-15 16:36 - 2013-10-15 16:36 - 101148298 _____ C:\Windows\SysWOW64\᯾瞏⤰Ń߿

Some content of TEMP:
====================
C:\Users\Sebastian\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-11-12 16:17

==================== End Of Log ============================

--- --- ---

schrauber 14.11.2013 09:53

was sagt denn die CPU Auslastung im Taskmanager?

Sebastian04 15.11.2013 14:24

Alsooo... :D
Verwendung durchschnittlich : 17% Geschwindigkeit durschnittlich 1.40 GHz
Prozesse 100 Threads 1073 Handles 34339

Sockets: 1
Kerne: 2
Logische Prozessoren: 4
L1-Cache: 128 KB
L2-Cache: 512 KB
L3-Cache: 3,0 MB

RAM:
In Verwendung 1,7 GB Verfügbar 2,1 GB
Commit ausgeführt 2,0/5,4 GB In Cache 2,0 GB
Ausgelagerter Pool 258 MB Nicht ausgelagerter Pool 107 MB


Hoffe das hilft weiter //:

schrauber 16.11.2013 12:04

17% ist nix. Ist der eventuell extrem zugestaubt?

Sebastian04 16.11.2013 18:10

Nein auch nicht ist nichtmal ein Halbes jahr alt //:


gruß
Sebastian

schrauber 17.11.2013 07:26

How to perform a clean boot in Windows 8.1, Windows 8, Windows 7, or Windows Vista
Mach mal Clean Boot. Lüfter immer noch so? Auch im abgesicherten Modus?

Sebastian04 19.11.2013 17:07

Clean boot durchgeführt alles nach wie vor //:


Alle Zeitangaben in WEZ +1. Es ist jetzt 05:53 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19