Tut mir leid das ichs nicht gleich so gemacht habe
ADDITION Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-03-2014 01
Ran by Schnick at 2014-03-12 23:31:12
Running from F:\Setup
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.30 - GIGABYTE)
µTorrent (HKCU\...\uTorrent) (Version: 3.4.0.30635 - BitTorrent Inc.)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
AOMEI Backupper (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536C09D}_is1) (Version: - AOMEI Technology Co., Ltd.)
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.338 - Avira)
Caesium Version 1.7.0 (HKLM-x32\...\{88B0F0DE-6937-440D-B5CA-6E69003E55F7}_is1) (Version: 1.7.0 - Matteo Paonessa)
CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform)
Easy Tune 6 B13.0125.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
Easy Tune 6 B13.0125.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology)
Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden
GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 32.0.1700.76 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
Java 7 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417051FF}) (Version: 7.0.510 - Oracle)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java SE Development Kit 7 Update 51 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170510}) (Version: 1.7.0.510 - Oracle)
Microsoft Office Access MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MKVToolNix 6.8.0 (32bit) (HKLM-x32\...\MKVToolNix) (Version: 6.8.0 - Moritz Bunkus)
Mozilla Firefox 26.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 26.0 (x86 de)) (Version: 26.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.3.0 - Mozilla)
Mozilla Thunderbird 24.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.3.0 (x86 de)) (Version: 24.3.0 - Mozilla)
NVIDIA 3D Vision Controller-Treiber 335.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 335.21 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.8.2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.2.1 - NVIDIA Corporation)
NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3523 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden
NVIDIA Update 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.20 - NVIDIA Corporation)
OpenVPN 2.3.2-I003 (HKLM\...\OpenVPN) (Version: 2.3.2-I003 - )
Phase 5 HTML-Editor (HKLM-x32\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6767 - Realtek Semiconductor Corp.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.1.0 - Samsung Electronics)
SHIELD Streaming (Version: 1.7.321 - NVIDIA Corporation) Hidden
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com)
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.26297 - TeamViewer)
VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
ZOTAC FireStorm (HKLM-x32\...\ZOTAC FireStorm) (Version: - )
==================== Restore Points =========================
12-03-2014 16:19:01 Installed Easy Tune 6 B13.0125.1
==================== Hosts content: ==========================
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {035792A1-D4EF-4A78-BF9A-AA9628C281A3} - System32\Tasks\Microsoft\Windows\Setup\SetupCleanupTask
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {14CA0506-398D-4F14-BA70-A8F054F33831} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-12] (Google Inc.)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {234F0950-400B-45F1-8516-09289680AF74} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-03-02] (Microsoft Corporation)
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {5C189A6E-482C-4243-AF08-69B2DA39EE43} - System32\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {73B77016-B63A-4BF5-B637-6F9AFAC7AAAE} - System32\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DB13B414-EF0E-4AB8-A605-17A6A623F4F3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-12] (Google Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {F8F7318B-9131-4946-B9A3-D0D32AC0D1A8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12] (Adobe Systems Incorporated)
Task: {FD334CED-2A2A-4230-8F5D-CF1F34030383} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
==================== Loaded Modules (whitelisted) =============
2014-03-12 17:41 - 2014-03-04 14:05 - 00116056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-08-22 14:25 - 2013-08-22 14:25 - 00199336 _____ () C:\Program Files\OpenVPN\bin\liblzo2-2.dll
2013-08-22 14:25 - 2013-08-22 14:25 - 00117464 _____ () C:\Program Files\OpenVPN\bin\libpkcs11-helper-1.dll
2014-03-12 18:19 - 2013-12-09 11:37 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00196312 _____ () C:\Program Files (x86)\AOMEI Backupper\UiLogic.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00220888 _____ () C:\Program Files (x86)\AOMEI Backupper\diskmgr.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00171736 _____ () C:\Program Files (x86)\AOMEI Backupper\Comn.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00057048 _____ () C:\Program Files (x86)\AOMEI Backupper\FuncLogic.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00245464 _____ () C:\Program Files (x86)\AOMEI Backupper\ImgFile.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00028376 _____ () C:\Program Files (x86)\AOMEI Backupper\Encrypt.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00077528 _____ () C:\Program Files (x86)\AOMEI Backupper\Ldm.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00061144 _____ () C:\Program Files (x86)\AOMEI Backupper\Device.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00257752 _____ () C:\Program Files (x86)\AOMEI Backupper\BrFat.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00368344 _____ () C:\Program Files (x86)\AOMEI Backupper\BrNtfs.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00167640 _____ () C:\Program Files (x86)\AOMEI Backupper\Clone.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00043736 _____ () C:\Program Files (x86)\AOMEI Backupper\Backup.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00073432 _____ () C:\Program Files (x86)\AOMEI Backupper\Compress.dll
2014-03-12 19:48 - 2013-08-23 20:15 - 00093912 _____ () C:\Program Files (x86)\AOMEI Backupper\BrVol.dll
2014-03-12 18:25 - 2014-01-11 11:28 - 00715544 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libglesv2.dll
2014-03-12 18:25 - 2014-01-11 11:28 - 00100120 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libegl.dll
2014-03-12 18:25 - 2014-01-11 11:29 - 04055320 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\pdf.dll
2014-03-12 18:25 - 2014-01-11 11:29 - 00399640 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll
2014-03-12 18:25 - 2014-01-11 11:28 - 01634584 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll
2014-03-12 18:40 - 2014-03-12 18:40 - 00181760 _____ () C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd\2014.305.433.2_0\plugin\ace.dll
2014-03-12 18:25 - 2014-01-11 11:29 - 13615896 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Schnick\SkyDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/12/2014 09:02:10 PM) (Source: Microsoft-Windows-AppModel-State) (User: TOHUWABOHU)
Description: windows_ie_ac_0013
Error: (03/12/2014 09:02:09 PM) (Source: Microsoft-Windows-AppModel-State) (User: TOHUWABOHU)
Description: microsoft.windows.authhost.a_8wekyb3d8bbwe3
Error: (03/12/2014 08:38:56 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:38:50 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:36:16 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:36:10 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 07:51:55 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 07:51:49 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 06:34:51 PM) (Source: Microsoft-Windows-AppModel-State) (User: TOHUWABOHU)
Description: windows_ie_ac_0013
Error: (03/12/2014 06:06:02 PM) (Source: Software Protection Platform Service) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004E028
Befehlszeilenargumente:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=d03e843c-9044-4cd4-b5eb-78a9586b5598;NotificationInterval=1440;Trigger=NetworkAvailable
System errors:
=============
Error: (03/12/2014 10:23:15 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk5\DR5 gefunden.
Error: (03/12/2014 10:23:15 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk4\DR4 gefunden.
Error: (03/12/2014 10:23:15 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR3 gefunden.
Error: (03/12/2014 10:21:12 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk5\DR5 gefunden.
Error: (03/12/2014 10:21:12 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk4\DR4 gefunden.
Error: (03/12/2014 10:21:12 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk3\DR3 gefunden.
Error: (03/12/2014 10:13:49 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk5\DR5 gefunden.
Error: (03/12/2014 10:13:49 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk4\DR4 gefunden.
Error: (03/12/2014 10:13:49 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR2 gefunden.
Error: (03/12/2014 08:52:52 PM) (Source: DCOM) (User: TOHUWABOHU)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Microsoft Office Sessions:
=========================
Error: (03/12/2014 09:02:10 PM) (Source: Microsoft-Windows-AppModel-State)(User: TOHUWABOHU)
Description: windows_ie_ac_0013
Error: (03/12/2014 09:02:09 PM) (Source: Microsoft-Windows-AppModel-State)(User: TOHUWABOHU)
Description: microsoft.windows.authhost.a_8wekyb3d8bbwe3
Error: (03/12/2014 08:38:56 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:38:50 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:36:16 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 08:36:10 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 07:51:55 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 07:51:49 PM) (Source: VSS)(User: )
Description: 0x80070005, Zugriff verweigert
Vorgang:
Generatordaten werden gesammelt
Kontext:
Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
Generatorname: System Writer
Generatorinstanz-ID: {e8db9677-beec-4edd-be5e-c6a5ae653bad}
Error: (03/12/2014 06:34:51 PM) (Source: Microsoft-Windows-AppModel-State)(User: TOHUWABOHU)
Description: windows_ie_ac_0013
Error: (03/12/2014 06:06:02 PM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004E028RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=d03e843c-9044-4cd4-b5eb-78a9586b5598;NotificationInterval=1440;Trigger=NetworkAvailable
==================== Memory info ===========================
Percentage of memory in use: 20%
Total physical RAM: 16344.73 MB
Available physical RAM: 12962.43 MB
Total Pagefile: 32728.73 MB
Available Pagefile: 29307.23 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:111.27 GB) (Free:50.09 GB) NTFS
Drive f: () (Fixed) (Total:931.51 GB) (Free:918.95 GB) NTFS
Drive j: (ACL) (CDROM) (Total:3.41 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 112 GB) (Disk ID: CD4CB4A6)
Partition: GPT Partition Type.
========================================================
Disk: 1 (Size: 932 GB) (Disk ID: 84C2A23D)
Partition 2: (Active) - (Size=932 GB) - (Type=05)
==================== End Of Log ============================ FRST
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-03-2014 01
Ran by Schnick (administrator) on TOHUWABOHU on 12-03-2014 23:30:46
Running from F:\Setup
Windows 8.1 Pro (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
(The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpn.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\skydrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(BitTorrent Inc.) C:\Users\Schnick\AppData\Roaming\uTorrent\uTorrent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.16384_none_fa1dc1539b4180d8\TiWorker.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13213840 2012-10-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1234064 2012-10-29] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1179576 2014-02-05] (NVIDIA Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-03-12] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-3903636500-4214573635-2589406595-1001\...\Run: [GoogleChromeAutoLaunch_8952118BD03792AAE1DB0DE4A6364936] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [866584 2014-01-11] (Google Inc.)
HKU\S-1-5-21-3903636500-4214573635-2589406595-1001\...\Run: [uTorrent] - C:\Users\Schnick\AppData\Roaming\uTorrent\uTorrent.exe [1853008 2014-03-12] (BitTorrent Inc.)
HKU\S-1-5-21-3903636500-4214573635-2589406595-1001\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563608 2014-01-06] (SUPERAntiSpyware)
HKU\S-1-5-21-3903636500-4214573635-2589406595-1001\...\MountPoints2: {5a6c5415-a9fe-11e3-824b-806e6f6e6963} - "J:\shelexec.exe" .\starter.html
Startup: C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk
ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.at.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD08AB49B173ECF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-AT
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21
FireFox:
========
FF ProfilePath: C:\Users\Schnick\AppData\Roaming\Mozilla\Firefox\Profiles\h1c3zlvc.default
FF Homepage: www.google.com
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.3 - C:\Program Files\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR Extension: (Google Docs) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-12]
CHR Extension: (Google Drive) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-12]
CHR Extension: (YouTube) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-12]
CHR Extension: (Google-Suche) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-12]
CHR Extension: (FoxyProxy Standard) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcknhkkoolaabfmlnjonogaaifnjlfnp [2014-03-12]
CHR Extension: (Hangouts) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2014-03-12]
CHR Extension: (Google Wallet) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-12]
CHR Extension: (Google Mail) - C:\Users\Schnick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-12]
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-03-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-03-12] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1017424 2014-03-12] (Avira Operations GmbH & Co. KG)
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2013-08-23] (AOMEI Tech Co., Ltd.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16941856 2014-02-05] (NVIDIA Corporation)
R2 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37176 2013-08-22] (The OpenVPN Project)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2013-05-07] ()
R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2013-05-07] ()
R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2013-02-06] ()
R2 AODDriver4.2; C:\Program Files (x86)\GIGABYTE\ET6\amd64\AODDriver2.sys [57512 2012-09-24] (Advanced Micro Devices)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-03-12] ()
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39776 2013-08-22] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-08-23] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146272 2013-08-22] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [56672 2013-08-22] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-12 23:30 - 2014-03-12 23:30 - 00000000 ____D () C:\FRST
2014-03-12 23:25 - 2014-03-12 23:25 - 00000000 ____D () C:\Windows\system32\MRT
2014-03-12 23:24 - 2014-03-02 14:05 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-03-12 23:06 - 2014-03-12 23:06 - 00003598 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a
2014-03-12 23:06 - 2014-03-12 23:06 - 00003516 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f
2014-03-12 23:06 - 2014-03-12 23:06 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a.job
2014-03-12 23:06 - 2014-03-12 23:06 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f.job
2014-03-12 23:06 - 2014-03-12 23:06 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\SUPERAntiSpyware.com
2014-03-12 23:05 - 2014-03-12 23:06 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-03-12 23:05 - 2014-03-12 23:05 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-03-12 23:04 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2014-03-12 23:04 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2014-03-12 23:03 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-03-12 23:03 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2014-03-12 23:03 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2014-03-12 23:03 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-03-12 23:03 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-03-12 22:39 - 2014-03-12 22:39 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-03-12 22:32 - 2014-03-12 22:41 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\vlc
2014-03-12 20:56 - 2014-03-12 20:56 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Windows\PCHEALTH
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-03-12 20:54 - 2014-03-12 21:06 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-03-12 20:54 - 2014-03-12 21:06 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 __RHD () C:\MSOCache
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Microsoft Help
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-03-12 20:08 - 2014-03-12 20:08 - 00000000 ____D () C:\Users\Schnick\.eclipse
2014-03-12 20:04 - 2014-03-12 20:07 - 00000000 ____D () C:\Program Files\Eclipse
2014-03-12 20:00 - 2014-03-12 20:00 - 00000000 ____D () C:\ProgramData\Sun
2014-03-12 20:00 - 2014-03-12 19:59 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-03-12 20:00 - 2014-03-12 19:59 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-03-12 20:00 - 2014-03-12 19:59 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-03-12 20:00 - 2014-03-12 19:59 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-03-12 19:59 - 2014-03-12 19:59 - 00000000 ____D () C:\Program Files (x86)\Java
2014-03-12 19:55 - 2014-03-12 20:00 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-12 19:55 - 2014-03-12 19:54 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-03-12 19:55 - 2014-03-12 19:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-03-12 19:55 - 2014-03-12 19:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-03-12 19:55 - 2014-03-12 19:54 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-03-12 19:54 - 2014-03-12 19:54 - 00000000 ____D () C:\Program Files\Java
2014-03-12 19:51 - 2014-03-12 20:36 - 00001024 ____H () C:\SYSTAG.BIN
2014-03-12 19:51 - 2014-03-12 19:51 - 00000000 ____D () C:\ProgramData\AomeiBR
2014-03-12 19:48 - 2014-03-12 20:36 - 00000000 ____D () C:\Program Files (x86)\AOMEI Backupper
2014-03-12 19:48 - 2013-05-07 14:27 - 00151480 _____ () C:\Windows\system32\ammntdrv.sys
2014-03-12 19:48 - 2013-05-07 14:27 - 00030648 _____ () C:\Windows\system32\ambakdrv.sys
2014-03-12 19:48 - 2013-02-06 15:52 - 00017848 _____ () C:\Windows\system32\amwrtdrv.sys
2014-03-12 19:41 - 2014-03-12 19:41 - 00000000 ____D () C:\Program Files\TAP-Windows
2014-03-12 19:41 - 2014-03-12 19:41 - 00000000 ____D () C:\Program Files\OpenVPN
2014-03-12 19:36 - 2014-03-12 22:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-12 19:36 - 2014-03-12 19:37 - 00000000 ____D () C:\Users\Schnick\.gimp-2.8
2014-03-12 19:36 - 2014-03-12 19:36 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 19:36 - 2014-03-12 19:36 - 00000000 ____D () C:\Users\Schnick\AppData\Local\gegl-0.2
2014-03-12 19:27 - 2014-03-12 19:27 - 00000836 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\pkColorPicker.lnk
2014-03-12 19:25 - 2014-03-12 19:25 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Thunderbird
2014-03-12 19:25 - 2014-03-12 19:25 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Thunderbird
2014-03-12 19:23 - 2014-03-12 19:23 - 00000000 ____D () C:\Program Files\VLC
2014-03-12 19:22 - 2014-03-12 19:22 - 00001319 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\thunderbird.lnk
2014-03-12 19:21 - 2014-03-12 19:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-03-12 19:18 - 2014-03-12 19:18 - 00000875 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mkvmerge GUI.lnk
2014-03-12 19:16 - 2014-03-12 19:16 - 00000000 ____D () C:\ProgramData\Adobe
2014-03-12 19:16 - 2014-03-12 19:16 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-03-12 19:15 - 2014-03-12 19:36 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Adobe
2014-03-12 19:11 - 2014-01-19 08:38 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-03-12 19:10 - 2014-03-12 19:10 - 00000000 ____D () C:\Users\Schnick\AppData\Local\NVIDIA Corporation
2014-03-12 19:09 - 2014-03-12 19:10 - 00000000 ____D () C:\Users\Schnick\AppData\Local\NVIDIA
2014-03-12 19:09 - 2014-03-12 19:09 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-03-12 19:09 - 2014-02-05 10:31 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-03-12 19:09 - 2014-02-05 10:30 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-03-12 19:09 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-03-12 19:08 - 2014-03-04 12:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-03-12 19:07 - 2014-03-04 15:35 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 14709720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-03-12 19:07 - 2014-03-04 15:35 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 02715264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00484296 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00409544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-03-12 19:07 - 2014-03-04 15:35 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-03-12 19:07 - 2013-12-27 19:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-03-12 19:07 - 2013-12-27 19:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-03-12 19:07 - 2013-12-27 19:42 - 00033056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-03-12 19:07 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-03-12 19:07 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-03-12 19:07 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-03-12 19:06 - 2014-03-12 19:06 - 00000000 ____D () C:\NVIDIA
2014-03-12 19:00 - 2014-03-12 19:00 - 710590418 _____ () C:\Windows\MEMORY.DMP
2014-03-12 19:00 - 2014-03-12 19:00 - 00296632 _____ () C:\Windows\Minidump\031214-7500-01.dmp
2014-03-12 19:00 - 2014-03-12 19:00 - 00000000 ____D () C:\Windows\Minidump
2014-03-12 18:59 - 2014-03-12 18:59 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-03-12 18:59 - 2014-03-12 18:59 - 00001187 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner.lnk
2014-03-12 18:59 - 2014-03-12 18:59 - 00000000 ____D () C:\Program Files\CCleaner
2014-03-12 18:52 - 2014-03-12 18:52 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-03-12 18:51 - 2014-03-12 18:51 - 00000985 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\µTorrent.lnk
2014-03-12 18:50 - 2014-03-12 23:30 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\uTorrent
2014-03-12 18:49 - 2014-03-12 18:49 - 00000000 ____D () C:\Program Files\GIMP 2
2014-03-12 18:45 - 2014-03-12 18:45 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Caesium
2014-03-12 18:42 - 2014-03-12 18:42 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor
2014-03-12 18:42 - 2014-03-12 18:42 - 00000000 ____D () C:\Program Files (x86)\phase5
2014-03-12 18:39 - 2014-03-12 18:39 - 00001294 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-03-12 18:37 - 2014-03-12 21:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\ProgramData\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-12 18:34 - 2014-03-12 21:52 - 00000000 __RDO () C:\Users\Schnick\SkyDrive
2014-03-12 18:25 - 2014-03-12 22:35 - 00001134 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-12 18:25 - 2014-03-12 21:52 - 00001130 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-12 18:25 - 2014-03-12 18:30 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-12 18:25 - 2014-03-12 18:30 - 00003870 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-12 18:25 - 2014-03-12 18:25 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Google
2014-03-12 18:25 - 2014-03-12 18:25 - 00000000 ____D () C:\Program Files (x86)\Google
2014-03-12 18:24 - 2014-03-12 18:24 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Macromedia
2014-03-12 18:22 - 2013-09-29 05:08 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-03-12 18:22 - 2013-09-29 05:00 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-03-12 18:22 - 2013-09-29 04:50 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-03-12 18:22 - 2013-09-29 04:44 - 00621056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-03-12 18:22 - 2013-09-29 04:37 - 00837120 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-03-12 18:22 - 2013-09-29 04:28 - 00698880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-03-12 18:20 - 2014-03-12 18:20 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Avira
2014-03-12 18:19 - 2014-03-12 18:19 - 00002306 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avira Control Center.lnk
2014-03-12 18:19 - 2014-03-12 18:19 - 00000000 ____D () C:\ProgramData\Avira
2014-03-12 18:19 - 2014-03-12 18:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-03-12 18:19 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-03-12 18:19 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-03-12 18:19 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-03-12 18:19 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-03-12 17:56 - 2014-03-12 17:56 - 00000000 ____D () C:\ProgramData\Samsung
2014-03-12 17:56 - 2014-03-12 17:56 - 00000000 ____D () C:\Program Files (x86)\Samsung Magician
2014-03-12 17:52 - 2014-03-12 17:52 - 00003046 _____ () C:\Windows\System32\Tasks\{8991B75A-B2EF-4C3D-A631-D89EE1FD9872}
2014-03-12 17:51 - 2014-03-12 17:51 - 00001277 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FireStorm.lnk
2014-03-12 17:48 - 2014-03-12 17:48 - 00000000 ____D () C:\Program Files (x86)\ZOTAC FireStorm
2014-03-12 17:41 - 2014-03-12 21:52 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-03-12 17:41 - 2014-03-12 19:10 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-03-12 17:41 - 2014-03-12 19:09 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-03-12 17:41 - 2014-03-04 15:35 - 00062408 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-03-12 17:41 - 2014-03-04 15:35 - 00054216 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-03-12 17:41 - 2014-03-04 15:35 - 00024544 _____ () C:\Windows\system32\nvinfo.pb
2014-03-12 17:41 - 2014-03-04 14:06 - 06714312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-03-12 17:41 - 2014-03-04 14:06 - 03497816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-03-12 17:41 - 2014-03-04 14:05 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin
2014-03-12 17:41 - 2014-03-04 14:05 - 02558808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-03-12 17:41 - 2014-03-04 14:05 - 00922968 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-03-12 17:41 - 2014-03-04 14:05 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-03-12 17:41 - 2014-03-04 14:05 - 00064968 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-03-12 17:41 - 2013-09-12 09:58 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432723.dll
2014-03-12 17:41 - 2013-09-12 09:58 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432723.dll
2014-03-12 17:40 - 2014-03-04 15:35 - 18302384 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-03-12 17:40 - 2014-03-04 15:35 - 03093280 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-03-12 17:40 - 2014-03-04 15:35 - 00947808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-03-12 17:39 - 2014-03-12 19:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-03-12 17:35 - 2014-03-12 17:35 - 00000000 ____D () C:\Program Files (x86)\Etron Technology
2014-03-12 17:35 - 2012-08-07 08:09 - 00088832 _____ (Etron Technology Inc) C:\Windows\system32\Drivers\EtronXHCI.sys
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____D () C:\Program Files\Realtek
2014-03-12 17:26 - 2014-03-12 17:26 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-03-12 17:26 - 2012-10-30 10:59 - 04201104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-03-12 17:26 - 2012-10-30 09:43 - 00369117 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-03-12 17:26 - 2012-10-29 09:34 - 02703456 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-03-12 17:26 - 2012-10-29 07:40 - 09378304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-03-12 17:26 - 2012-10-25 07:45 - 00116880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-03-12 17:26 - 2012-10-23 04:30 - 03671696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-03-12 17:26 - 2012-10-22 12:48 - 01269904 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-03-12 17:26 - 2012-10-03 10:56 - 00772224 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-03-12 17:26 - 2012-10-02 07:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-03-12 17:26 - 2012-10-02 07:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-03-12 17:26 - 2012-10-02 07:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-03-12 17:26 - 2012-09-24 09:32 - 07601528 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-03-12 17:26 - 2012-09-24 09:32 - 02080120 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-03-12 17:26 - 2012-09-20 15:44 - 01460600 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-03-12 17:26 - 2012-09-19 17:59 - 00869752 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-03-12 17:26 - 2012-09-12 02:51 - 02743440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-03-12 17:26 - 2012-09-09 07:34 - 02028920 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-03-12 17:26 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-03-12 17:26 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-03-12 17:26 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-03-12 17:26 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-03-12 17:26 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-03-12 17:26 - 2012-08-21 07:51 - 00881808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-03-12 17:26 - 2012-08-13 11:06 - 01561744 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-03-12 17:26 - 2012-07-15 14:13 - 00394616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-03-12 17:26 - 2012-07-15 14:13 - 00394616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-03-12 17:26 - 2012-06-20 10:26 - 00110592 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-03-12 17:26 - 2012-03-08 04:47 - 00202336 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-03-12 17:26 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-03-12 17:26 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-03-12 17:26 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-03-12 17:26 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-03-12 17:26 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-03-12 17:26 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2014-03-12 17:26 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2014-03-12 17:26 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2014-03-12 17:26 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-03-12 17:26 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2014-03-12 17:26 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-03-12 17:26 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-03-12 17:26 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-03-12 17:26 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-03-12 17:26 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-03-12 17:26 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-03-12 17:26 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-03-12 17:26 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-03-12 17:26 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-03-12 17:26 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-03-12 17:24 - 2012-08-03 11:18 - 01706640 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-03-12 17:21 - 2014-03-12 17:49 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\etdrv.sys
2014-03-12 17:20 - 2014-03-12 17:30 - 00030528 _____ () C:\Windows\GVTDrv64.sys
2014-03-12 17:19 - 2014-03-12 17:38 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-03-12 17:19 - 2014-03-12 17:19 - 00000156 _____ () C:\csb.log
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\GIGABYTE
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\AMD
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Intel
2014-03-12 17:18 - 2014-03-12 17:29 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2014-03-12 17:09 - 2014-03-12 23:12 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3903636500-4214573635-2589406595-1001
2014-03-12 17:04 - 2014-03-12 23:08 - 01825075 _____ () C:\Windows\WindowsUpdate.log
2014-03-12 17:04 - 2014-03-12 20:52 - 00000000 ____D () C:\Users\Schnick
2014-03-12 17:04 - 2014-03-12 19:31 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Packages
2014-03-12 17:04 - 2014-03-12 17:56 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-12 17:04 - 2014-03-12 17:04 - 00001454 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-03-12 17:04 - 2014-03-12 17:04 - 00000020 ___SH () C:\Users\Schnick\ntuser.ini
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Vorlagen
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Startmenü
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Netzwerkumgebung
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Lokale Einstellungen
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Eigene Dateien
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Druckumgebung
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Documents\Eigene Musik
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Documents\Eigene Bilder
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Local\Verlauf
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Local\Anwendungsdaten
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Anwendungsdaten
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Adobe
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick\AppData\Local\VirtualStore
2014-03-12 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-12 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-03-12 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-03-12 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-03-12 17:03 - 2014-03-12 21:59 - 01686150 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-12 17:00 - 2014-03-12 17:00 - 00000000 ____D () C:\Windows\CSC
2014-03-12 17:00 - 2013-08-22 06:17 - 02407936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-03-12 16:52 - 2014-03-12 21:14 - 00104474 _____ () C:\Windows\PFRO.log
2014-03-12 16:52 - 2014-03-12 17:04 - 00000000 ____D () C:\Windows\Panther
2014-03-12 16:46 - 2013-06-28 03:16 - 00080640 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys
2014-03-12 16:46 - 2013-06-28 03:16 - 00025344 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys
==================== One Month Modified Files and Folders =======
2014-03-12 23:30 - 2014-03-12 23:30 - 00000000 ____D () C:\FRST
2014-03-12 23:30 - 2014-03-12 18:50 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\uTorrent
2014-03-12 23:25 - 2014-03-12 23:25 - 00000000 ____D () C:\Windows\system32\MRT
2014-03-12 23:12 - 2014-03-12 17:09 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3903636500-4214573635-2589406595-1001
2014-03-12 23:08 - 2014-03-12 17:04 - 01825075 _____ () C:\Windows\WindowsUpdate.log
2014-03-12 23:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-03-12 23:06 - 2014-03-12 23:06 - 00003598 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a
2014-03-12 23:06 - 2014-03-12 23:06 - 00003516 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f
2014-03-12 23:06 - 2014-03-12 23:06 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task bb9ad584-00a0-4bfd-b180-37417d06b11a.job
2014-03-12 23:06 - 2014-03-12 23:06 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 65ba95b7-b47c-4eb3-9006-5b9b40f2c72f.job
2014-03-12 23:06 - 2014-03-12 23:06 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\SUPERAntiSpyware.com
2014-03-12 23:06 - 2014-03-12 23:05 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-03-12 23:06 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2014-03-12 23:06 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2014-03-12 23:06 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-03-12 23:05 - 2014-03-12 23:05 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-03-12 23:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-03-12 22:41 - 2014-03-12 22:32 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\vlc
2014-03-12 22:39 - 2014-03-12 22:39 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-03-12 22:37 - 2014-03-12 19:36 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-12 22:35 - 2014-03-12 18:25 - 00001134 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-12 21:59 - 2014-03-12 17:03 - 01686150 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-12 21:59 - 2013-08-23 00:24 - 00726688 _____ () C:\Windows\system32\perfh007.dat
2014-03-12 21:59 - 2013-08-23 00:24 - 00151380 _____ () C:\Windows\system32\perfc007.dat
2014-03-12 21:52 - 2014-03-12 18:34 - 00000000 __RDO () C:\Users\Schnick\SkyDrive
2014-03-12 21:52 - 2014-03-12 18:25 - 00001130 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-12 21:52 - 2014-03-12 17:41 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-03-12 21:52 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-12 21:51 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-03-12 21:14 - 2014-03-12 18:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-12 21:14 - 2014-03-12 16:52 - 00104474 _____ () C:\Windows\PFRO.log
2014-03-12 21:14 - 2013-08-22 15:44 - 00483520 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-12 21:06 - 2014-03-12 20:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-03-12 21:06 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-03-12 21:06 - 2013-08-23 00:26 - 00000000 ____D () C:\Windows\ShellNew
2014-03-12 21:05 - 2013-08-22 14:25 - 00000076 _____ () C:\Windows\win.ini
2014-03-12 20:56 - 2014-03-12 20:56 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Windows\PCHEALTH
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2014-03-12 20:55 - 2014-03-12 20:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 __RHD () C:\MSOCache
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Microsoft Help
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-03-12 20:54 - 2014-03-12 20:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-03-12 20:54 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2014-03-12 20:52 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick
2014-03-12 20:36 - 2014-03-12 19:51 - 00001024 ____H () C:\SYSTAG.BIN
2014-03-12 20:36 - 2014-03-12 19:48 - 00000000 ____D () C:\Program Files (x86)\AOMEI Backupper
2014-03-12 20:08 - 2014-03-12 20:08 - 00000000 ____D () C:\Users\Schnick\.eclipse
2014-03-12 20:07 - 2014-03-12 20:04 - 00000000 ____D () C:\Program Files\Eclipse
2014-03-12 20:00 - 2014-03-12 20:00 - 00000000 ____D () C:\ProgramData\Sun
2014-03-12 20:00 - 2014-03-12 19:55 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-12 19:59 - 2014-03-12 20:00 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-03-12 19:59 - 2014-03-12 20:00 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-03-12 19:59 - 2014-03-12 20:00 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-03-12 19:59 - 2014-03-12 20:00 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-03-12 19:59 - 2014-03-12 19:59 - 00000000 ____D () C:\Program Files (x86)\Java
2014-03-12 19:54 - 2014-03-12 19:55 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-03-12 19:54 - 2014-03-12 19:55 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-03-12 19:54 - 2014-03-12 19:55 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-03-12 19:54 - 2014-03-12 19:55 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-03-12 19:54 - 2014-03-12 19:54 - 00000000 ____D () C:\Program Files\Java
2014-03-12 19:51 - 2014-03-12 19:51 - 00000000 ____D () C:\ProgramData\AomeiBR
2014-03-12 19:41 - 2014-03-12 19:41 - 00000000 ____D () C:\Program Files\TAP-Windows
2014-03-12 19:41 - 2014-03-12 19:41 - 00000000 ____D () C:\Program Files\OpenVPN
2014-03-12 19:37 - 2014-03-12 19:36 - 00000000 ____D () C:\Users\Schnick\.gimp-2.8
2014-03-12 19:36 - 2014-03-12 19:36 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 19:36 - 2014-03-12 19:36 - 00000000 ____D () C:\Users\Schnick\AppData\Local\gegl-0.2
2014-03-12 19:36 - 2014-03-12 19:15 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Adobe
2014-03-12 19:31 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Packages
2014-03-12 19:27 - 2014-03-12 19:27 - 00000836 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\pkColorPicker.lnk
2014-03-12 19:25 - 2014-03-12 19:25 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Thunderbird
2014-03-12 19:25 - 2014-03-12 19:25 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Thunderbird
2014-03-12 19:23 - 2014-03-12 19:23 - 00000000 ____D () C:\Program Files\VLC
2014-03-12 19:22 - 2014-03-12 19:22 - 00001319 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\thunderbird.lnk
2014-03-12 19:21 - 2014-03-12 19:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-03-12 19:18 - 2014-03-12 19:18 - 00000875 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mkvmerge GUI.lnk
2014-03-12 19:16 - 2014-03-12 19:16 - 00000000 ____D () C:\ProgramData\Adobe
2014-03-12 19:16 - 2014-03-12 19:16 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-03-12 19:11 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-03-12 19:10 - 2014-03-12 19:10 - 00000000 ____D () C:\Users\Schnick\AppData\Local\NVIDIA Corporation
2014-03-12 19:10 - 2014-03-12 19:09 - 00000000 ____D () C:\Users\Schnick\AppData\Local\NVIDIA
2014-03-12 19:10 - 2014-03-12 17:41 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-03-12 19:09 - 2014-03-12 19:09 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-03-12 19:09 - 2014-03-12 17:41 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-03-12 19:09 - 2014-03-12 17:39 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-03-12 19:09 - 2013-08-22 15:46 - 00012588 _____ () C:\Windows\setupact.log
2014-03-12 19:06 - 2014-03-12 19:06 - 00000000 ____D () C:\NVIDIA
2014-03-12 19:01 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2014-03-12 19:00 - 2014-03-12 19:00 - 710590418 _____ () C:\Windows\MEMORY.DMP
2014-03-12 19:00 - 2014-03-12 19:00 - 00296632 _____ () C:\Windows\Minidump\031214-7500-01.dmp
2014-03-12 19:00 - 2014-03-12 19:00 - 00000000 ____D () C:\Windows\Minidump
2014-03-12 18:59 - 2014-03-12 18:59 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-03-12 18:59 - 2014-03-12 18:59 - 00001187 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner.lnk
2014-03-12 18:59 - 2014-03-12 18:59 - 00000000 ____D () C:\Program Files\CCleaner
2014-03-12 18:52 - 2014-03-12 18:52 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-03-12 18:51 - 2014-03-12 18:51 - 00000985 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\µTorrent.lnk
2014-03-12 18:49 - 2014-03-12 18:49 - 00000000 ____D () C:\Program Files\GIMP 2
2014-03-12 18:45 - 2014-03-12 18:45 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Caesium
2014-03-12 18:42 - 2014-03-12 18:42 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor
2014-03-12 18:42 - 2014-03-12 18:42 - 00000000 ____D () C:\Program Files (x86)\phase5
2014-03-12 18:39 - 2014-03-12 18:39 - 00001294 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\ProgramData\Mozilla
2014-03-12 18:37 - 2014-03-12 18:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-12 18:30 - 2014-03-12 18:25 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-12 18:30 - 2014-03-12 18:25 - 00003870 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-12 18:25 - 2014-03-12 18:25 - 00000000 ____D () C:\Users\Schnick\AppData\Local\Google
2014-03-12 18:25 - 2014-03-12 18:25 - 00000000 ____D () C:\Program Files (x86)\Google
2014-03-12 18:24 - 2014-03-12 18:24 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Macromedia
2014-03-12 18:20 - 2014-03-12 18:20 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Avira
2014-03-12 18:19 - 2014-03-12 18:19 - 00002306 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avira Control Center.lnk
2014-03-12 18:19 - 2014-03-12 18:19 - 00000000 ____D () C:\ProgramData\Avira
2014-03-12 18:19 - 2014-03-12 18:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-03-12 17:56 - 2014-03-12 17:56 - 00000000 ____D () C:\ProgramData\Samsung
2014-03-12 17:56 - 2014-03-12 17:56 - 00000000 ____D () C:\Program Files (x86)\Samsung Magician
2014-03-12 17:56 - 2014-03-12 17:04 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-12 17:52 - 2014-03-12 17:52 - 00003046 _____ () C:\Windows\System32\Tasks\{8991B75A-B2EF-4C3D-A631-D89EE1FD9872}
2014-03-12 17:51 - 2014-03-12 17:51 - 00001277 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FireStorm.lnk
2014-03-12 17:49 - 2014-03-12 17:21 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\etdrv.sys
2014-03-12 17:48 - 2014-03-12 17:48 - 00000000 ____D () C:\Program Files (x86)\ZOTAC FireStorm
2014-03-12 17:41 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2014-03-12 17:38 - 2014-03-12 17:19 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-03-12 17:35 - 2014-03-12 17:35 - 00000000 ____D () C:\Program Files (x86)\Etron Technology
2014-03-12 17:30 - 2014-03-12 17:20 - 00030528 _____ () C:\Windows\GVTDrv64.sys
2014-03-12 17:29 - 2014-03-12 17:18 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-03-12 17:27 - 2014-03-12 17:27 - 00000000 ____D () C:\Program Files\Realtek
2014-03-12 17:26 - 2014-03-12 17:26 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-03-12 17:19 - 2014-03-12 17:19 - 00000156 _____ () C:\csb.log
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\GIGABYTE
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Program Files (x86)\AMD
2014-03-12 17:19 - 2014-03-12 17:19 - 00000000 ____D () C:\Intel
2014-03-12 17:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2014-03-12 17:04 - 2014-03-12 17:04 - 00001454 _____ () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-03-12 17:04 - 2014-03-12 17:04 - 00000020 ___SH () C:\Users\Schnick\ntuser.ini
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Vorlagen
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Startmenü
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Netzwerkumgebung
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Lokale Einstellungen
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Eigene Dateien
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Druckumgebung
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Documents\Eigene Musik
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Documents\Eigene Bilder
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Local\Verlauf
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\AppData\Local\Anwendungsdaten
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 _SHDL () C:\Users\Schnick\Anwendungsdaten
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ___RD () C:\Users\Schnick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick\AppData\Roaming\Adobe
2014-03-12 17:04 - 2014-03-12 17:04 - 00000000 ____D () C:\Users\Schnick\AppData\Local\VirtualStore
2014-03-12 17:04 - 2014-03-12 16:52 - 00000000 ____D () C:\Windows\Panther
2014-03-12 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-03-12 17:00 - 2014-03-12 17:00 - 00000000 ____D () C:\Windows\CSC
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Programme
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-03-12 16:53 - 2014-03-12 16:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-03-12 16:53 - 2013-08-22 16:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2014-03-12 16:53 - 2013-08-22 16:36 - 00000000 ___HD () C:\Program Files\Windows NT
2014-03-12 16:53 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery
2014-03-12 16:53 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-03-12 16:52 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-03-04 15:35 - 2014-03-12 19:07 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 14709720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-03-04 15:35 - 2014-03-12 19:07 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 02715264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00484296 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00409544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-03-04 15:35 - 2014-03-12 19:07 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-03-04 15:35 - 2014-03-12 17:41 - 00062408 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-03-04 15:35 - 2014-03-12 17:41 - 00054216 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-03-04 15:35 - 2014-03-12 17:41 - 00024544 _____ () C:\Windows\system32\nvinfo.pb
2014-03-04 15:35 - 2014-03-12 17:40 - 18302384 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-03-04 15:35 - 2014-03-12 17:40 - 03093280 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-03-04 15:35 - 2014-03-12 17:40 - 00947808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-03-04 15:35 - 2013-10-27 09:12 - 17755424 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-03-04 14:06 - 2014-03-12 17:41 - 06714312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-03-04 14:06 - 2014-03-12 17:41 - 03497816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-03-04 14:05 - 2014-03-12 17:41 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin
2014-03-04 14:05 - 2014-03-12 17:41 - 02558808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-03-04 14:05 - 2014-03-12 17:41 - 00922968 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-03-04 14:05 - 2014-03-12 17:41 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-03-04 14:05 - 2014-03-12 17:41 - 00064968 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-03-04 12:32 - 2014-03-12 19:08 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-03-02 14:05 - 2014-03-12 23:24 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
Some content of TEMP:
====================
C:\Users\Schnick\AppData\Local\Temp\avgnt.exe
C:\Users\Schnick\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Schnick\AppData\Local\Temp\nvStInst.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2013-08-22 10:01] - [2013-08-22 13:39] - 2328880 ____A (Microsoft Corporation) 8479DC46E9A09015C0777A16BC22A15D
C:\Windows\SysWOW64\explorer.exe
[2013-08-22 03:06] - [2013-08-22 06:25] - 2063408 ____A (Microsoft Corporation) 2CA8E3C9335C3C8BAEB335345E48364D
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-12 16:52
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
--- --- ---
Habe noch einen Scan mit Spybot durchgeführt aber noch nichts unternommen das ist das Ergebnis http://www.joqurt.com/uploads/Scan%2...n%20Spybot.png |