FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01
Ran by **** (administrator) on *** on 15-02-2014 15:58:13
Running from C:\Users\****\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
() C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\Windows\SysWOW64\XSrvSetup.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(Blacksun Software) C:\Program Files (x86)\Mousotron\Mousotron.exe
(LOL Replay) C:\Program Files (x86)\LOLReplay\LOLRecorder.exe
(Dropbox, Inc.) C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Ventis Media Inc.) C:\Program Files (x86)\MediaMonkey\MediaMonkey.exe
(TeamSpeak Systems GmbH) C:\Users\****\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
(Microsoft Corporation) C:\Windows\system32\SndVol.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor)
HKLM\...\Run: [Cm106Sound] - C:\Windows\Syswow64\cm106.dll [8126464 2009-05-11] (C-Media Corporation)
HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [8292120 2013-11-14] (Logitech Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-17] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] ()
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-10-08] (Advanced Micro Devices, Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2010-09-30] (AMD)
HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [Mousotron] - C:\Program Files (x86)\Mousotron\Mousotron.exe [738304 2013-02-09] (Blacksun Software)
HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [EvolveClient] - C:\Program Files\Echobit\Evolve\EvolveClient.exe [3216800 2014-02-02] (Echobit LLC)
HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {387ac1a2-8e1e-11e2-9e87-1c6f658f0cb0} - J:\setup.exe
HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {d3884d3c-6703-11e2-9e7e-806e6f6e6963} - D:\Run.exe
Startup: C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
ProxyServer: 127.0.0.1:80
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xF8DDE3B018FBCD01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://active.macromedia.com/flash2/cabs/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll ()
FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-25]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22]
Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Users\****\AppData\Local\Google\Chrome\User Data\PepperFlash\11.5.31.139\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U13) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.130.20) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Extension: (Adblock Plus) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-02-10]
CHR Extension: (Grooveshark Germany unlocker) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\docdgimmdejoiemdafcgeodchlbllgac [2013-03-15]
CHR Extension: (AdBlock) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-01]
CHR Extension: (Google Wallet) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01]
CHR Extension: (Battlefield Play4Free) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-10-24]
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-10-08] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-07-06] ()
R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] ()
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1579424 2014-02-02] (Echobit LLC)
R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-11-04] ()
==================== Drivers (Whitelisted) ====================
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21544 2010-04-27] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-03-16] (DT Soft Ltd)
R3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-02-02] (Echobit, LLC)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.)
S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1306624 2009-05-14] (C-Media Electronics Inc)
S3 WinRing0_1_2_0; C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [14544 2012-08-01] (OpenLibSys.org)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-15 15:46 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-02-15 12:22 - 2014-02-15 12:22 - 00000856 _____ () C:\Windows\PFRO.log
2014-02-15 12:22 - 2014-02-15 12:22 - 00000056 _____ () C:\Windows\setupact.log
2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log
2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt
2014-02-14 17:49 - 2014-02-14 17:49 - 00042774 _____ () C:\Users\****\Desktop\Addition.txt
2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt
2014-02-14 17:40 - 2014-02-15 15:58 - 00016381 _____ () C:\Users\****\Downloads\FRST.txt
2014-02-14 17:40 - 2014-02-15 15:58 - 00000000 ____D () C:\FRST
2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe
2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe
2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log
2014-02-14 17:38 - 2014-02-14 17:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft
2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-02-14 17:06 - 2014-02-14 17:07 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter-3.12.20.1230.exe
2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey
2014-02-14 14:16 - 2014-02-15 15:49 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey
2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe
2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk
2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey
2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey
2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe
2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip
2014-02-14 14:00 - 2014-02-14 14:01 - 172008924 _____ () C:\Users\****\Downloads\JBG2.rar
2014-02-13 00:39 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-13 00:39 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-13 00:38 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-13 00:38 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-13 00:38 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-13 00:38 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-13 00:38 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-13 00:38 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-13 00:38 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-13 00:38 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-13 00:38 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-13 00:38 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-13 00:38 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-13 00:38 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-13 00:38 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-13 00:38 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-13 00:38 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-13 00:38 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-13 00:38 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-13 00:38 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-13 00:38 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-13 00:38 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-13 00:38 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-13 00:38 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-13 00:38 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-13 00:38 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-13 00:38 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-13 00:38 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-13 00:38 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-13 00:38 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-13 00:38 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-13 00:38 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-13 00:38 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-13 00:38 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-13 00:38 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-13 00:38 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-13 00:38 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-13 00:38 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-13 00:38 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-13 00:38 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-13 00:38 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe
2014-02-12 12:40 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-12 12:40 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-12 12:40 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-12 12:40 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-12 12:40 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-12 12:40 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-12 12:40 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-12 12:40 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-12 12:40 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-12 12:40 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-12 12:40 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-12 12:40 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-12 12:40 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-12 12:40 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-12 12:40 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-12 12:40 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-12 12:40 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-12 12:40 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-12 12:40 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-12 12:40 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-12 12:40 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-12 12:40 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-12 12:40 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-12 12:40 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-10 22:52 - 2014-02-14 16:53 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt
2014-02-09 22:26 - 2014-02-14 15:40 - 00000000 ____D () C:\Users\****\Desktop\Book
2014-02-09 22:24 - 2014-02-09 22:24 - 00614792 _____ () C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe
2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH
2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk
2014-02-09 16:28 - 2014-02-09 16:53 - 00000000 ____D () C:\Program Files (x86)\Blackguards
2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe
2014-02-07 15:02 - 2014-02-07 15:03 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar
2014-02-06 21:34 - 2014-02-06 21:35 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar
2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX
2014-02-05 17:28 - 2014-02-05 17:31 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2
2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip
2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys
2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk
2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit
2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit
2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit
2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip
2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav
2014-01-22 16:54 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-22 16:54 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-22 16:54 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-22 16:54 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-22 16:53 - 2014-01-22 16:54 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer
2014-01-19 21:58 - 2014-01-19 22:04 - 00012832 _____ () C:\Users\****\Documents\***** *****.odt
2014-01-17 16:50 - 2014-01-17 16:50 - 00020651 _____ () C:\Users\****\Documents\SW-***** (1).odt
2014-01-16 19:32 - 2014-01-16 19:32 - 00003152 _____ () C:\Windows\System32\Tasks\{89F9EC89-E6C2-4DE1-ABE3-0F6B042D808F}
==================== One Month Modified Files and Folders =======
2014-02-15 15:58 - 2014-02-14 17:40 - 00016381 _____ () C:\Users\****\Downloads\FRST.txt
2014-02-15 15:58 - 2014-02-14 17:40 - 00000000 ____D () C:\FRST
2014-02-15 15:49 - 2014-02-14 14:16 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey
2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-15 15:44 - 2013-01-25 17:57 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-15 15:23 - 2013-01-25 16:31 - 01571872 _____ () C:\Windows\WindowsUpdate.log
2014-02-15 15:18 - 2013-01-25 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\TS3Client
2014-02-15 15:08 - 2013-01-25 17:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-15 14:50 - 2013-09-24 13:27 - 00000000 ____D () C:\Users\****\AppData\Roaming\Dropbox
2014-02-15 12:31 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-15 12:31 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-15 12:24 - 2013-09-24 13:29 - 00000000 ___RD () C:\Users\****\Dropbox
2014-02-15 12:23 - 2013-01-25 17:57 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-15 12:22 - 2014-02-15 12:22 - 00000856 _____ () C:\Windows\PFRO.log
2014-02-15 12:22 - 2014-02-15 12:22 - 00000056 _____ () C:\Windows\setupact.log
2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-15 12:22 - 2013-01-26 10:19 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2014-02-15 12:22 - 2013-01-25 17:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-15 12:22 - 2011-03-12 13:02 - 00000144 _____ () C:\service.log
2014-02-15 12:22 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-14 23:39 - 2013-01-25 17:57 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-14 23:39 - 2013-01-25 17:57 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log
2014-02-14 17:50 - 2013-01-25 17:24 - 00000000 ____D () C:\Users\****
2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt
2014-02-14 17:49 - 2014-02-14 17:49 - 00042774 _____ () C:\Users\****\Desktop\Addition.txt
2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt
2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe
2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe
2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log
2014-02-14 17:38 - 2014-02-14 17:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft
2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-02-14 17:07 - 2014-02-14 17:06 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter-3.12.20.1230.exe
2014-02-14 17:04 - 2013-01-25 17:56 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-02-14 16:53 - 2014-02-10 22:52 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt
2014-02-14 15:40 - 2014-02-09 22:26 - 00000000 ____D () C:\Users\****\Desktop\Book
2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey
2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe
2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk
2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey
2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey
2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe
2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip
2014-02-14 14:05 - 2013-03-16 16:26 - 00000000 ____D () C:\Users\****\AppData\Roaming\DAEMON Tools Lite
2014-02-14 13:56 - 2013-07-16 13:50 - 00000000 ____D () C:\Users\****\Desktop\Spiele
2014-02-14 13:51 - 2013-01-26 10:58 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-02-13 23:24 - 2013-01-26 11:47 - 00000000 ____D () C:\Users\****\AppData\Local\Adobe
2014-02-13 23:24 - 2013-01-25 17:45 - 00000000 ____D () C:\Users\****\AppData\Roaming\Adobe
2014-02-13 17:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe
2014-02-11 22:14 - 2007-01-02 21:25 - 00001456 _____ () C:\Users\****\AppData\Local\Adobe Save for Web 13.0 Prefs
2014-02-11 20:53 - 2013-01-25 17:55 - 00000000 ____D () C:\Users\****\AppData\Local\PMB Files
2014-02-11 19:45 - 2013-01-25 17:55 - 00000000 ____D () C:\ProgramData\PMB Files
2014-02-10 17:34 - 2013-12-07 18:11 - 00000000 ____D () C:\Users\****\AppData\Local\Battle.net
2014-02-10 16:16 - 2013-04-21 18:00 - 00000000 ____D () C:\ProgramData\Steam
2014-02-09 22:24 - 2014-02-09 22:24 - 00614792 _____ () C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe
2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH
2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk
2014-02-09 16:53 - 2014-02-09 16:28 - 00000000 ____D () C:\Program Files (x86)\Blackguards
2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe
2014-02-07 15:03 - 2014-02-07 15:02 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar
2014-02-06 21:35 - 2014-02-06 21:34 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar
2014-02-06 13:16 - 2014-02-13 00:38 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-13 00:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-13 00:38 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-13 00:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-13 00:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-13 00:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-13 00:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 11:52 - 2014-02-13 00:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 11:49 - 2014-02-13 00:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-13 00:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-13 00:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-13 00:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-13 00:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-13 00:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-13 00:38 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-13 00:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-13 00:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-13 00:38 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-13 00:38 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-13 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-13 00:38 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-13 00:38 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 10:49 - 2014-02-13 00:38 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 10:47 - 2014-02-13 00:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-13 00:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-13 00:38 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-13 00:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-13 00:38 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-13 00:38 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-13 00:38 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-13 00:38 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-13 00:38 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-13 00:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-13 00:38 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-13 00:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-13 00:38 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-13 00:38 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-05 22:42 - 2013-07-10 23:54 - 00000000 ____D () C:\Users\****\AppData\Roaming\Skype
2014-02-05 21:08 - 2013-01-25 17:37 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-05 21:08 - 2013-01-25 17:37 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-05 21:08 - 2013-01-25 17:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX
2014-02-05 17:34 - 2013-03-29 18:47 - 00000000 ____D () C:\Users\****\Documents\Telltale Games
2014-02-05 17:31 - 2014-02-05 17:28 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2
2014-02-04 13:40 - 2013-01-25 17:58 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip
2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys
2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk
2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit
2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit
2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit
2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip
2014-02-02 14:58 - 2013-04-02 16:27 - 00000000 ____D () C:\Users\****\Documents\StarCraft II
2014-02-02 14:51 - 2013-04-02 16:27 - 00000000 ____D () C:\Program Files (x86)\StarCraft II
2014-01-30 21:35 - 2013-12-07 18:16 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
2014-01-30 21:35 - 2013-01-26 10:52 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft
2014-01-30 21:33 - 2013-12-07 18:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav
2014-01-23 22:30 - 2013-04-22 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\Audacity
2014-01-23 00:32 - 2014-02-09 13:03 - 00000000 ____D () C:\Users\****\Downloads\Blackguards
2014-01-22 16:54 - 2014-01-22 16:53 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-22 16:54 - 2013-10-30 00:30 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-22 16:54 - 2013-03-12 13:25 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer
2014-01-21 23:03 - 2014-01-10 14:55 - 00000000 ____D () C:\Users\****\Documents\Neuer Ordner (5)
2014-01-20 18:31 - 2010-11-21 07:50 - 01478616 _____ () C:\Windows\system32\perfh007.dat
2014-01-20 18:31 - 2010-11-21 07:50 - 00398040 _____ () C:\Windows\system32\perfc007.dat
2014-01-20 18:31 - 2009-07-14 06:13 - 00006356 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-01-19 23:35 - 2013-10-01 19:50 - 00000000 ____D () C:\Users\****\Documents\*****
2014-01-19 22:04 - 2014-01-19 21:58 - 00012832 _____ () C:\Users\****\Documents\***** *****.odt
2014-01-19 19:14 - 2013-01-27 15:45 - 00000000 ____D () C:\Users\****\Documents\my games
2014-01-17 16:50 - 2014-01-17 16:50 - 00020651 _____ () C:\Users\****\Documents\SW-***** (1).odt
2014-01-16 19:40 - 2013-09-22 22:18 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-01-16 19:35 - 2013-08-30 16:51 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-01-16 19:35 - 2013-08-30 16:50 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-01-16 19:35 - 2013-01-25 18:32 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-01-16 19:32 - 2014-01-16 19:32 - 00003152 _____ () C:\Windows\System32\Tasks\{89F9EC89-E6C2-4DE1-ABE3-0F6B042D808F}
2014-01-16 19:32 - 2014-01-03 21:16 - 00000000 ____D () C:\Program Files (x86)\Zenimax Online
2014-01-16 18:54 - 2013-01-25 17:25 - 00000000 ___RD () C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-16 18:53 - 2013-09-24 13:29 - 00000979 _____ () C:\Users\****\Desktop\Dropbox.lnk
2014-01-16 18:53 - 2013-09-24 13:28 - 00000000 ____D () C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-16 17:22 - 2009-07-14 05:45 - 00296944 _____ () C:\Windows\system32\FNTCACHE.DAT
Some content of TEMP:
====================
C:\Users\****\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-09 20:28
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-02-2014 01
Ran by ***** at 2014-02-14 17:42:12
Running from C:\Users\*****\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden
Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated)
AION Free-to-Play (x32 Version: - Gameforge)
AMD Accelerated Video Transcoding (Version: 13.15.100.31008 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.1008.932.15229 - Ihr Firmenname) Hidden
AMD Catalyst Install Manager (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - ATI Technologies Inc.) Hidden
AMD Fuel (Version: 2013.1008.932.15229 - Ihr Firmenname) Hidden
AMD Media Foundation Decoders (Version: 1.0.81008.0920 - Advanced Micro Devices, Inc.) Hidden
Amnesia - The Dark Descent (x32 Version: 1.0.0 - Frictional Games)
Apple Application Support (x32 Version: 2.3.4 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
ATI AVIVO64 Codecs (Version: 11.6.0.50930 - ATI Technologies Inc.) Hidden
ATI Problem Report Wizard (Version: 3.0.795.0 - ATI Technologies) Hidden
Audacity 2.0.3 (x32 Version: 2.0.3 - Audacity Team)
Audiosurf (x32 Version: 1.00.0000)
Avira Free Antivirus (x32 Version: 14.0.2.286 - Avira)
Battle.net (x32 Version: - Blizzard Entertainment)
Battlefield 4™ (x32 Version: 1.0.0.1 - Electronic Arts)
BattlEye for OA Uninstall (x32 Version: - )
Blackguards Version 1.1 (x32 Version: 1.1 - Daedalic Entertainment)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden
CCleaner (Version: 4.09 - Piriform)
Company of Heroes 2 (x32 Version: - Relic Entertainment)
Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden
Counter-Strike: Global Offensive (x32 Version: - Valve)
Curse Client (HKCU Version: 5.1.1.792 - Curse)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DayZ (x32 Version: - Bohemia Interactive)
DayZ Commander (x32 Version: 0.9.123 - Dotjosh Studios)
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
Desura (x32 Version: 100.53 - Desura)
Desura: Abduction (x32 Version: Full - Anxt)
DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
Die Sims™ 3 (x32 Version: 1.50.56 - Electronic Arts)
Die Sims™ 3 70er, 80er & 90er Accessoires (x32 Version: 17.0.77 - Electronic Arts)
Die Sims™ 3 Diesel Accessoires (x32 Version: 14.0.48 - Electronic Arts)
Die Sims™ 3 Einfach tierisch (x32 Version: 10.0.96 - Electronic Arts)
Die Sims™ 3 Gib Gas-Accessoires (x32 Version: 5.0.44 - Electronic Arts)
Die Sims™ 3 Jahreszeiten (x32 Version: 16.0.136 - Electronic Arts)
Die Sims™ 3 Katy Perry Süße Welt (x32 Version: 13.0.62 - Electronic Arts)
Die Sims™ 3 Late Night (x32 Version: 6.0.81 - Electronic Arts)
Die Sims™ 3 Lebensfreude (x32 Version: 8.0.152 - Electronic Arts)
Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38 - Electronic Arts)
Die Sims™ 3 Reiseabenteuer (x32 Version: 2.0.86 - Electronic Arts)
Die Sims™ 3 Showtime (x32 Version: 12.0.273 - Electronic Arts)
Die Sims™ 3 Stadt-Accessoires (x32 Version: 9.0.73 - Electronic Arts)
Die Sims™ 3 Supernatural (x32 Version: 15.0.135 - Electronic Arts)
Die Sims™ 3 Traumkarrieren (x32 Version: 4.0.87 - Electronic Arts)
Die Sims™ 3 Traumsuite-Accessoires (x32 Version: 11.0.84 - Electronic Arts)
Die Sims™ 3 Wildes Studentenleben (x32 Version: 18.0.126 - Electronic Arts)
Die*Sims™*3 Erstelle einen Sim (x32 Version: 1.0.25 - Electronic Arts)
DJ Mix Lite (x32 Version: - )
DJ_AIO_03_F4200_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.)
EasySaver B9.1214.1 (x32 Version: 1.00.0000 - Gigabyte)
ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB)
Evolve (Version: 1.8.2 - Echobit, LLC)
F1 2012 (x32 Version: )
F4200 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
FLV Player 2.0 (build 25) (x32 Version: 2.0 (build 25) - Martijn de Visser)
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Free YouTube to MP3 Converter version 3.12.20.1230 (x32 Version: 3.12.20.1230 - DVDVideoSoft Ltd.)
Game Dev Tycoon v1.3.2 (c) Greenheart Games version 1 (x32 Version: 1 - )
Gameforge Live 1.9.0 "Legend" (x32 Version: 1.9.0 - Gameforge)
Garry's Mod (x32 Version: - Garry)
Gigabyte Raid Configurer (x32 Version: 1.00.0001 - GIGABYTE Technologies, Inc.)
Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
GTA San Andreas (x32 Version: 1.00.00001 - Rockstar Games)
Hearthstone (x32 Version: - Blizzard Entertainment)
Hearts of Iron III (x32 Version: - Paradox Interactive)
HP Customer Participation Program 13.0 (Version: 13.0 - HP)
HP Deskjet F4200 All-In-One Driver Software 13.0 Rel. 3 (Version: 13.0 - HP)
HP Imaging Device Functions 13.0 (Version: 13.0 - HP)
HP Smart Web Printing 4.51 (Version: 4.51 - HP)
HP Solution Center 13.0 (Version: 13.0 - HP)
HP Update (x32 Version: 4.000.011.006 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HydraVision (x32 Version: 4.2.180.0 - ATI Technologies Inc.) Hidden
Java 7 Update 17 (64-bit) (Version: 7.0.170 - Oracle)
Java 7 Update 51 (x32 Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH)
League of Legends (x32 Version: 1.3 - Riot Games)
Logitech Gaming Software (Version: 8.45.88 - Logitech Inc.) Hidden
Logitech Gaming Software 8.51 (Version: 8.51.5 - Logitech Inc.)
LOLReplay (x32 Version: 0.8.5.2 - www.leaguereplays.com)
Magicka (x32 Version: - Arrowhead Game Studios AB)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
MediaMonkey 4.1 (x32 Version: 4.1 - Ventis Media Inc.)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden
Mousotron 8.2 (x32 Version: 8.2 - Blacksun Software)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
Nostale(DE) (x32 Version: - Gameforge 4D GmbH)
Notepad++ (x32 Version: 6.5 - Notepad++ Team)
NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation)
ON_OFF Charge B10.0427.1 (x32 Version: 1.00.0001 - GIGABYTE)
Open Broadcaster Software (x32 Version: - )
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593 - Apache Software Foundation)
Origin (x32 Version: 9.3.10.4710 - Electronic Arts, Inc.)
osu! (x32 Version: 0.0.0.0)
Pando Media Booster (x32 Version: 2.6.0.8 - Pando Networks Inc.)
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pokemon Online 2.1.0 (x32 Version: - Dreambelievers)
PunkBuster Services (x32 Version: 0.993 - Even Balance, Inc.)
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Razer Game Booster (x32 Version: 3.6 - Razer USA Ltd)
Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.18.322.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (x32 Version: 6.0.1.6034 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6083 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.30.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.30.0 - Renesas Electronics Corporation) Hidden
Samsung Kies (x32 Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.23.0 - SAMSUNG Electronics Co., Ltd.)
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Sid Meier's Civilization V (x32 Version: Sid Meier's Civilization V )
Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.)
SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
StarCraft II (x32 Version: - Blizzard Entertainment)
Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (x32 Version: 1.0.0.0 - Valve Corporation)
TeamSpeak 3 Client (HKCU Version: 3.0.13.1 - TeamSpeak Systems GmbH)
TeamViewer 8 (x32 Version: 8.0.19617 - TeamViewer)
Test Drive®: Ferrari Racing Legends (x32 Version: - Slightly Mad Studios)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
Tropico 4 Modern Times V1.0.6 (x32 Version: 1.0.6 - )
Trust 5.1 Surround Headset (Version: - )
Unity Web Player (HKCU Version: - Unity Technologies ApS)
UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden
VLC media player 2.0.8 (x32 Version: 2.0.8 - VideoLAN)
Warhammer 40,000: Dawn of War – Soulstorm (x32 Version: - Relic Entertainment)
Warhammer® 40,000™: Dawn of War® II – Retribution™ (x32 Version: - Relic)
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH)
Zombie Driver HD (x32 Version: )
==================== Restore Points =========================
12-02-2014 23:37:46 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {1F47BB7F-6754-441C-B6AA-D9042BA27CF7} - System32\Tasks\AdobeAAMUpdater-1.0-Cho-***** => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {2AB20320-0DEC-4344-9B39-3C3711FDF00D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {30F6DFA3-39F4-48E3-A0BD-71726C906743} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated)
Task: {69310FED-C03E-4C7F-8D16-185E7FADA48E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-25] (Google Inc.)
Task: {78FD87F4-7DD9-4ACE-9EF8-ACACAFED2AF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-25] (Google Inc.)
Task: {8EEFDC98-CEAF-4ACF-A450-11A90DEEAFA5} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {94118E8F-3016-4C58-85F4-905FC7A3D99F} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe [2013-05-07] ()
Task: {95850369-3419-47D4-9736-C92F5697B766} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft)
Task: {A3E0E4E3-DC99-47F1-82F3-713317B89892} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {C77B843A-A9A0-4C97-831E-562F21E1A15C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {FF6A4FCE-7701-4E50-A158-57DAAA79AF34} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-10-08 09:34 - 2013-10-08 09:34 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\*****\Downloads\Defogger.exe
2013-01-25 17:45 - 2012-09-19 18:17 - 00397088 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-01-25 18:32 - 2009-08-24 14:38 - 00068136 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
2013-01-25 18:32 - 2009-03-13 11:30 - 00109096 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\YCC.DLL
2013-01-26 10:12 - 2010-01-19 03:31 - 00072304 ____R () C:\Windows\SysWOW64\XSrvSetup.exe
2013-03-26 18:50 - 2013-11-04 16:50 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-02-14 14:16 - 2014-02-03 19:54 - 00054784 _____ () C:\Program Files (x86)\MediaMonkey\MMHelper.dll
2013-12-11 05:22 - 2013-12-11 05:22 - 00378368 _____ () C:\Program Files (x86)\LOLReplay\LOLUtils.dll
2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\*****\AppData\Roaming\Dropbox\bin\libcef.dll
2012-10-29 11:08 - 2012-10-29 11:08 - 00025600 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\imageformats\_old_qgif4.dll
2012-10-29 11:08 - 2012-10-29 11:08 - 00195584 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\imageformats\_old_qjpeg4.dll
2012-10-29 11:08 - 2013-10-24 17:06 - 00230376 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win32.dll
2012-10-29 11:08 - 2013-10-24 17:06 - 00237032 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll
2012-10-29 11:08 - 2013-10-24 17:06 - 00431080 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2013-09-11 19:09 - 2013-10-24 17:06 - 00555496 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-02-14 14:16 - 2014-02-03 19:48 - 00581632 _____ () C:\Program Files (x86)\MediaMonkey\sqlite3MM.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00390656 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_aac.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00327680 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_ape.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00306176 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_AVI.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00133120 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_flac.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00267264 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_flac_codec.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00262656 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_FLV.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00368640 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_mkv.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00388608 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_MP4.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00328192 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_mpc.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00269824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_MPG.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00352768 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_ogg.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00141824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_video.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00335360 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_wave.dll
2014-02-14 14:16 - 2014-02-03 19:49 - 00373760 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_WMV.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00061440 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_mfaudio.dll
2014-02-14 14:16 - 2014-01-30 21:22 - 00077824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_mpc.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00321536 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_vorbis.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00081920 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wav.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00222720 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wma.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00103936 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wmp3.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00348672 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_MMDS.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00378880 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_WASAPI.dll
2014-02-14 14:16 - 2014-01-30 21:22 - 00013824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_wave.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00103936 _____ () C:\Program Files (x86)\MediaMonkey\Equalize.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 01043456 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iPhone.dll
2014-02-14 14:16 - 2014-02-03 19:49 - 01234432 _____ () C:\Program Files (x86)\MediaMonkey\iPhoneCalc.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00900096 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iPod.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00400384 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iRiverH.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00301056 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_USBMass1.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00421376 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_WMDM.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00132608 _____ () C:\Program Files (x86)\MediaMonkey\WMAuth.dll
2014-02-14 14:16 - 2014-02-03 19:55 - 00704000 _____ () C:\Program Files (x86)\MediaMonkey\UpNp.dll
2014-02-14 14:16 - 2014-02-03 19:54 - 00223744 _____ () C:\Program Files (x86)\MediaMonkey\WMAFunct.DLL
2013-12-21 13:48 - 2013-12-21 13:48 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-02-05 21:08 - 2014-02-05 21:08 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll
2014-02-14 17:09 - 2013-12-30 20:05 - 00132664 _____ () C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.Resources.dll
2014-02-14 17:09 - 2013-12-30 16:31 - 00036864 _____ () C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.Resources.resources.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00110648 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00037944 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\jansson.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00083512 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_thread-vc100-mt-1_53.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00018488 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc100-mt-1_53.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00103992 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc100-mt-1_53.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 05209656 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avformat-55.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 15904824 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avcodec-55.dll
2014-02-14 17:09 - 2013-12-30 21:27 - 00407096 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avutil-52.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: CL2 Launcher => C:\Program Files (x86)\City Life RPG\CL2 Launcher\CL2Launcher.exe
MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: Pando Media Booster => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
MSCONFIG\startupreg: PSwitch => C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/14/2014 01:18:59 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/14/2014 01:12:19 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/13/2014 03:48:48 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich.
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET_4.0.30319" (ASP.NET_4.0.30319). Der Fehlercode ist das erste DWORD im Datenbereich.
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (02/13/2014 00:40:41 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich.
System errors:
=============
Error: (02/14/2014 01:17:21 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 14.02.2014 um 13:14:28 unerwartet heruntergefahren.
Error: (02/13/2014 03:50:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (02/13/2014 03:50:55 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Presentation Foundation-Schriftartcache 3.0.0.0 erreicht.
Error: (02/12/2014 02:49:02 PM) (Source: volsnap) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
Error: (02/11/2014 03:04:15 PM) (Source: bowser) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "MALLE",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{47D728F7-3FC3-416B-98E5-89CC36A729FD}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (02/10/2014 01:16:13 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Microsoft .NET Framework NGEN v4.0.30319_X86 erreicht.
Error: (02/10/2014 01:15:34 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (02/10/2014 01:15:34 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht.
Error: (02/10/2014 01:15:34 PM) (Source: DCOM) (User: )
Description: 1053WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
Error: (02/09/2014 04:46:50 PM) (Source: volsnap) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
Microsoft Office Sessions:
=========================
Error: (02/14/2014 01:18:59 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/14/2014 01:12:19 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/13/2014 03:48:48 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: ASP.NETASP.NET8F20300004D070000
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: ASP.NET_4.0.30319ASP.NET_4.0.303198F20300004D070000
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (02/13/2014 00:40:41 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT)
Description: ASP.NETASP.NET8F20300004D070000
CodeIntegrity Errors:
===================================
Date: 2013-02-16 11:26:56.560
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:56.542
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:54.509
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:54.487
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:52.432
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:52.407
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:50.338
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:50.315
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:48.210
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-02-16 11:26:48.189
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Percentage of memory in use: 41%
Total physical RAM: 8189.55 MB
Available physical RAM: 4827.73 MB
Total Pagefile: 15187.73 MB
Available Pagefile: 11232.21 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.66 GB) (Free:37.01 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 4265782E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Code:
Malwarebytes Anti-Malware (Test) 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2014.02.15.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16518
***** :: *** [Administrator]
Schutz: Aktiviert
15.02.2014 15:49:06
MBAM-log-2014-02-15 (15-55-54).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 266272
Laufzeit: 6 Minute(n), 22 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 9
C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$R18ONSM.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt.
C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$RJFRVVI.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt.
C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$RNBK0TL.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt.
C:\Users\****\Downloads\DTLite4471-0333.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\****Downloads\FreeYouTubeToMP3Converter (1).exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\****\Downloads\FreeYouTubeToMP3Converter.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe (PUP.Optional.Bandoo) -> Keine Aktion durchgeführt.
C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe (PUP.Optional.DownloadSponsor) -> Keine Aktion durchgeführt.
(Ende) |