Ups, ich merk's mir.. nächstes Mal bei nem Problem gleich antanzen :)
1. Fixlog.txt Code:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-07-2014
Ran by SYU at 2014-07-14 13:11:01 Run:1
Running from C:\Users\Nat\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
start
() C:\Windows\System32\ext-ms-xin-gdi-path-l1-1-0.exe
R2 dialer64; C:\Windows\system32\ext-ms-xin-gdi-path-l1-1-0.exe [119296 2014-06-28] () [File not signed]
C:\Windows\system32\ext-ms-xin-gdi-path-l1-1-0.exe
BHO: DownloadProtect Extension - {C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files\{85F3241B-F579-4213-90ED-0C7DCD6E76BC}\{A1C45655-3CE1-42A1-BA5C-4B3C28FFB90F}.bin No File
BHO-x32: DownloadProtect Extension - {C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files (x86)\{E5C5A92D-F196-4C2D-A750-ED1F4E46B3D8}\{FABDCFEB-BE2C-4C23-BF68-EB14520F969C}.bin No File
C:\Program Files (x86)\{E5C5A92D-F196-4C2D-A750-ED1F4E46B3D8}
FF HKLM-x32\...\Firefox\Extensions: [{9FFE8AB7-2F86-4DA7-9CA2-70837155AB60}] - C:\Windows\Installer\{2A22734F-37C3-4FB8-979F-1CF9F0D55B06}\{9FFE8AB7-2F86-4DA7-9CA2-70837155AB60}.xpi
FF Extension: Download Protect - C:\Windows\Installer\{2A22734F-37C3-4FB8-979F-1CF9F0D55B06}\{9FFE8AB7-2F86-4DA7-9CA2-70837155AB60}.xpi [2014-07-13]
C:\Windows\Installer\{2A22734F-37C3-4FB8-979F-1CF9F0D55B06}
CHR Extension: (Download Protect) - C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Extensions\baophokmealfbhhdbolnaiccbpmlfhcj [2014-07-13]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
Reboot:
end
*****************
[1508] C:\Windows\System32\ext-ms-xin-gdi-path-l1-1-0.exe => Process closed successfully.
dialer64 => Service stopped successfully.
dialer64 => Service deleted successfully.
C:\Windows\system32\ext-ms-xin-gdi-path-l1-1-0.exe => Moved successfully.
'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files\{85F3241B-F579-4213-90ED-0C7DCD6E76BC}\{A1C45655-3CE1-42A1-BA5C-4B3C28FFB90F}'=> Key not found.
'HKCR\CLSID\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files\{85F3241B-F579-4213-90ED-0C7DCD6E76BC}\{A1C45655-3CE1-42A1-BA5C-4B3C28FFB90F}'=> Key not found.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files (x86)\{E5C5A92D-F196-4C2D-A750-ED1F4E46B3D8}\{FABDCFEB-BE2C-4C23-BF68-EB14520F969C}'=> Key not found.
'HKCR\Wow6432Node\CLSID\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} - C:\Program Files (x86)\{E5C5A92D-F196-4C2D-A750-ED1F4E46B3D8}\{FABDCFEB-BE2C-4C23-BF68-EB14520F969C}'=> Key not found.
"C:\Program Files (x86)\{E5C5A92D-F196-4C2D-A750-ED1F4E46B3D8}" => File/Directory not found.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{9FFE8AB7-2F86-4DA7-9CA2-70837155AB60} => value deleted successfully.
C:\Windows\Installer\{2A22734F-37C3-4FB8-979F-1CF9F0D55B06}\{9FFE8AB7-2F86-4DA7-9CA2-70837155AB60}.xpi => Moved successfully.
C:\Windows\Installer\{2A22734F-37C3-4FB8-979F-1CF9F0D55B06} => Moved successfully.
C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Extensions\baophokmealfbhhdbolnaiccbpmlfhcj => Moved successfully.
'HKLM\SOFTWARE\Policies\Google' => Key deleted successfully.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
The system needed a reboot.
==== End of Fixlog ==== 2. Quarantine.zip wurde hochgeladen
3. Ohje, hass mich nicht, aber ich hab ganz vergessen, dass ich den schonmal hab rüberlaufen lassen und er was gefunden hatte.. jetzt kam nur das bei raus Code:
# AdwCleaner v3.215 - Bericht erstellt am 14/07/2014 um 13:29:22
# Aktualisiert 09/07/2014 von Xplode
# Betriebssystem : Windows 8.1 (64 bits)
# Benutzername : SYU - HAL9000
# Gestartet von : C:\Users\Nat\Desktop\adwcleaner_3.215.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Mozilla Firefox v30.0 (de)
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
[ Datei : C:\Users\Nat\AppData\Roaming\Mozilla\Firefox\Profiles\uisddfri.default\prefs.js ]
-\\ Google Chrome v35.0.1916.153
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ Datei : C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R1].txt - [3220 octets] - [14/07/2014 13:27:26]
AdwCleaner[R2].txt - [3280 octets] - [14/07/2014 13:28:30]
AdwCleaner[S1].txt - [3201 octets] - [14/07/2014 13:29:22]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3261 octets] ########## 4. mbam.txt Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 14.07.2014
Scan Time: 11:32:52
Logfile: mbam.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.14.03
Rootkit Database: v2014.07.09.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 8.1
CPU: x64
File System: NTFS
User: SYU
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 276187
Time Elapsed: 14 min, 27 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 4
PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{e63d9559-e4c3-499e-867a-a3c9d0a21400}Gw64, Quarantined, [0566801fc7b445f1f580cf48b4503dc3],
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HDV1.6, Quarantined, [9ccf0a95e695ed498be19528d9291fe1],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, Quarantined, [afbce5ba7605b482925d9721e22047b9],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 3
PUP.Optional.Extutil.A, C:\Users\Nat\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B, Quarantined, [333877280675d660c91eb501c63c4db3],
PUP.Optional.Managera.A, C:\Users\Nat\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42, Quarantined, [69029d028bf0d066ce1a2b8b29d95ba5],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599, Quarantined, [afbce5ba7605b482925d9721e22047b9],
Files: 40
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsb5967.exe, Quarantined, [2f3c6a35eb90bc7a74e50584c63b639d],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsc404C.exe, Quarantined, [87e4edb2ef8cef47f5649dec6b9647b9],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsfF6D7.exe, Quarantined, [1a518c1346356acc4712deab7190ac54],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsgEBAA.exe, Quarantined, [6506bce3611a81b5d584018846bbef11],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsi5DCD.exe, Quarantined, [1b50c0dfd7a41422bb9ec7c2f90807f9],
PUP.Optional.SearchProtect.A, C:\Users\Nat\AppData\Local\Temp\nsi652D.tmp, Quarantined, [6ffc059aa8d3270f5924eaa95aa720e0],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsiF1C5.exe, Quarantined, [e18ae0bf08734aec5efb3752f50cb64a],
PUP.Optional.SearchProtect.A, C:\Users\Nat\AppData\Local\Temp\SPSetup.exe, Quarantined, [5b10425da5d6de58a7d6672cd52caa56],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nspAA46.exe, Quarantined, [9ad129762c4f0d29e9700188e51c12ee],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nssB0FE.exe, Quarantined, [e685049be9927fb79cbd4d3c8b767a86],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nst453E.exe, Quarantined, [beadc6d962194cea5bfecfba3dc439c7],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsv4985.exe, Quarantined, [a9c27d220f6c58dea8b17910ce3314ec],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsw64C4.exe, Quarantined, [c3a8b6e94239fe3884d5028727da19e7],
PUP.Optional.SearchProtect.A, C:\Users\Nat\AppData\Local\Temp\nswFEDD.tmp, Quarantined, [3e2da0ff76051b1b3e3fade6768b9c64],
PUP.Optional.Conduit.A, C:\Users\Nat\AppData\Local\Temp\nsxA469.exe, Quarantined, [2b400f90f6858aac50091772e31edf21],
PUP.Optional.SearchProtect.A, C:\Users\Nat\AppData\Local\Temp\uttB265.tmp.exe, Quarantined, [90db36693348ba7c5ee5078118e9f30d],
PUP.Optional.Conduit.A, C:\Windows\Temp\nsa7258.exe, Quarantined, [de8dc6d96219cc6a88d1fd8c49b82ed2],
PUP.Optional.Conduit.A, C:\Windows\Temp\nsk8C49.exe, Quarantined, [98d3b3ecb1ca79bd20391079669b20e0],
PUP.Optional.Conduit.A, C:\Windows\Temp\nsu3A50.exe, Quarantined, [2a41029df3889c9ab4a51574cb36738d],
PUP.Optional.Conduit.A, C:\Windows\Temp\nsy5C41.exe, Quarantined, [e586722d87f450e668f1bdcc738e2cd4],
PUP.Optional.Ciuvo.A, C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_api.ciuvo.com_0.localstorage, Quarantined, [204ba9f63e3d84b2a0acb9093ac824dc],
PUP.Optional.Ciuvo.A, C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_api.ciuvo.com_0.localstorage-journal, Quarantined, [036839661c5f270fcc808d353fc36997],
PUP.Optional.SelectNGo.A, C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, Quarantined, [dc8fb4ebe39889ad767eac197a88946c],
PUP.Optional.SelectNGo.A, C:\Users\Nat\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal, Quarantined, [2e3d6f3006755ed851a3547131d1b749],
PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{e63d9559-e4c3-499e-867a-a3c9d0a21400}Gw64.sys, Quarantined, [0566801fc7b445f1f580cf48b4503dc3],
PUP.Optional.Extutil.A, C:\Users\Nat\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\bk.js, Quarantined, [333877280675d660c91eb501c63c4db3],
PUP.Optional.Extutil.A, C:\Users\Nat\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\cs.js, Quarantined, [333877280675d660c91eb501c63c4db3],
PUP.Optional.Extutil.A, C:\Users\Nat\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\manifest.json, Quarantined, [333877280675d660c91eb501c63c4db3],
PUP.Optional.Managera.A, C:\Users\Nat\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\cs.js, Quarantined, [69029d028bf0d066ce1a2b8b29d95ba5],
PUP.Optional.Managera.A, C:\Users\Nat\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\manifest.json, Quarantined, [69029d028bf0d066ce1a2b8b29d95ba5],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\GoogleCrashHandler.exe, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\GoogleUpdate.exe, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\GoogleUpdateBroker.exe, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\GoogleUpdateHelper.msi, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\GoogleUpdateOnDemand.exe, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\goopdate.dll, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\goopdateres_en.dll, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\npGoogleUpdate4.dll, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\psmachine.dll, Quarantined, [afbce5ba7605b482925d9721e22047b9],
PUP.Optional.GlobalUpdate.A, C:\Users\Nat\AppData\Local\Temp\comh.365599\psuser.dll, Quarantined, [afbce5ba7605b482925d9721e22047b9],
Physical Sectors: 0
(No malicious items detected)
(end)
5. Addition.txt und frst.txt wieder im Anhang! Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-07-2014
Ran by SYU at 2014-07-14 13:38:48
Running from C:\Users\Nat\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9}
==================== Installed Programs ======================
µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.32126 - BitTorrent Inc.)
Acer Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.3006 - Acer Incorporated)
Acer Games (HKCU\...\Pokki_03d432a7e610c3e908213e7689d4342ce2111caf) (Version: 1.1.9.43466 - Pokki)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8101 - Acer Incorporated)
Acer Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.3104.3 - Acer Incorporated)
Acer Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.3104.6 - Acer Incorporated)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.3104 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8100 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.00.3000 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8100 - Acer Incorporated)
Acer Remote Files (HKLM\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 1.00.3007 - Acer Incorporated)
Adobe Bridge 1.0 (x32 Version: 001.000.001 - Adobe Systems) Hidden
Adobe Common File Installer (x32 Version: 1.00.001 - Adobe System Incorporated) Hidden
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Help Center 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Photoshop CS2 (x32 Version: 9.0 - Adobe Systems, Inc.) Hidden
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Adobe Stock Photos 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
Assassin's Creed II (HKLM-x32\...\Steam App 33230) (Version: - Ubisoft Montreal)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3126.57 - CyberLink Corp.)
CyberLink PowerDVD 12 (x32 Version: 12.0.3126.57 - CyberLink Corp.) Hidden
CyberLink YouCam 6 (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.2326.0 - CyberLink Corp.)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5C78021E-3C8E-4EDF-97EA-E9B8D808FD6D}) (Version: - Microsoft)
eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM)
ETDWare PS/2-X64 11.6.28.201_WHQL (HKLM\...\Elantech) (Version: 11.6.28.201 - ELAN Microelectronic Corp.)
Ether One (HKLM-x32\...\Steam App 265950) (Version: - White Paper Games)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.8100 - Acer Incorporated)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3316 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Intel(R) Rapid Storage Technology (Version: 12.8.0.1016 - Intel Corporation) Hidden
Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.8100 - Acer Incorporated)
Luxor Evolved (x32 Version: 2.2.0.98 - WildTangent) Hidden
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
McAfee LiveSafe – Internet Security (HKLM-x32\...\MSC) (Version: 12.8.958 - McAfee, Inc.)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Standard 2010 (HKLM-x32\...\Office14.STANDARD) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Standard 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0 - Microsoft Corporation) Hidden
Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden
Nero BackItUp (x32 Version: 12.5.11000 - Nero AG) Hidden
Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{551AC8F2-FEA2-4B45-ACF7-C98681233CC9}) (Version: 12.5.01200 - Nero AG)
Nero BackItUp Help (CHM) (x32 Version: 12.0.13000 - Nero AG) Hidden
Nero ControlCenter (x32 Version: 11.0.15900 - Nero AG) Hidden
Nero ControlCenter Help (CHM) (x32 Version: 12.0.12000 - Nero AG) Hidden
Nero Core Components (x32 Version: 11.0.20900 - Nero AG) Hidden
Nero Launcher (x32 Version: 12.2.7000 - Nero AG) Hidden
Nero RescueAgent (x32 Version: 12.0.3001 - Nero AG) Hidden
Nero RescueAgent Help (CHM) (x32 Version: 12.0.7000 - Nero AG) Hidden
Nero Update (x32 Version: 11.0.11800.31.0 - Nero AG) Hidden
Norton Online Backup (HKLM-x32\...\{E625FCA0-E43E-4D3B-92FF-4851308A0366}) (Version: 2.8.0.44 - Symantec Corporation)
Norton Online Backup (x32 Version: 4.5.0.9 - Symantec Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2009 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2009 - Acer)
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.314 - Qualcomm Atheros Communications)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.20 - Qualcomm Atheros Inc.)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.23 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.28145 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7027 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden
Spielkanäle (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 9.2.0.11 - WildTangent, Inc.)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
The Chronicles of Emerland Solitaire (x32 Version: 3.0.2.32 - WildTangent) Hidden
The Walking Dead (HKLM-x32\...\Steam App 207610) (Version: - )
Trinklit Supreme (x32 Version: 2.2.0.98 - WildTangent) Hidden
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.STANDARD_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.STANDARD_{C0BDC1DE-C35E-422B-8CBD-C1D555468720}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.STANDARD_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.STANDARD_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.STANDARD_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)
Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version: - Microsoft)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Vegas Pro 12.0 (64-bit) (HKLM\...\{64A98EF1-2680-11E3-A909-F04DA23A5C58}) (Version: 12.0.726 - Sony)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.3-2 - Wacom Technology Corp.)
WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.)
WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.10.20 - WildTangent) Hidden
Year Walk (HKLM-x32\...\Steam App 269050) (Version: - Simogo)
==================== Restore Points =========================
28-06-2014 15:40:32 Installed Classic Shell
30-06-2014 17:24:39 Installed Microsoft Office Standard 2010
03-07-2014 20:17:02 Windows Update
09-07-2014 23:03:04 Windows Update
==================== Hosts content: ==========================
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {03EB6CDE-D53F-4E6A-9094-60AD93533249} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2013-07-10] (Acer Incorporated)
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0CC8D043-E156-4F6C-9B98-D45AFC5619B7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-10] (Microsoft Corporation)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {2F2D8E3B-8F31-483E-BBDF-66E290D43974} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-07-09] ()
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {3BA911A7-EB02-4095-A14A-0F56FD0A6B7A} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2013-08-02] (Acer Incorporate)
Task: {3D531712-735E-4F54-8C4B-983ABB0C849B} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4D79843B-E73B-487A-89AC-9588F9B3187D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {6839F854-A713-4D89-A6E1-802941B03BCD} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2013-07-26] (Acer Incorporated)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6B78D0C7-846A-4FC0-AA1A-89D2B1F82B23} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated)
Task: {6DCD7AB1-6096-446E-B222-69C75534222F} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-08-02] (Acer Incorporate)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {87C507D3-AD85-47BC-8136-6EF5741EFDC9} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-07-05] (Acer Incorporated)
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {95D088EE-FACD-4DC7-ACAD-F2EA973022FA} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {9EEB8F1C-2E71-4CDF-8E82-F0B1787C78FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-28] (Google Inc.)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6848986-627B-4C82-B1E2-582EA4DB3200} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {E794D5F2-FC94-44A8-A3E4-3EFB10432321} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-28] (Google Inc.)
Task: {F4A24E3B-3F2B-4D48-BD77-9CE1B21DCCE0} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {F52DE7F0-B371-4A79-981C-1265F0A5290C} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {F9FE13F4-9D0B-4D4A-B111-C6941F364A4B} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {FEE124FE-3F28-470A-88CA-3A7CB0719901} - System32\Tasks\Norton Online Backup ARA => C:\Program Files (x86)\Norton Online Backup ARA\Engine\4.5.0.9\\Ara.exe [2013-08-07] (Symantec Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-07-04 12:59 - 2013-12-17 03:17 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll
2013-12-24 02:22 - 2013-12-24 02:22 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-12-24 02:20 - 2013-12-24 02:20 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2013-12-24 02:26 - 2013-12-24 02:26 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2014-01-15 06:57 - 2013-09-30 16:12 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-07-04 00:17 - 2014-07-13 16:52 - 00012288 _____ () C:\Program Files (x86)\Google\Chrome\Application\WTSAPI32.dll
2014-06-28 16:03 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll
2014-06-28 16:03 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll
2014-06-28 16:03 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll
2014-06-28 16:03 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll
2014-06-28 16:03 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll
2014-07-14 12:13 - 2014-06-06 06:38 - 03852912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-04-16 06:15 - 2013-09-04 01:53 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Nat\SkyDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
==================== EXE Association (whitelisted) =============
==================== MSCONFIG/TASK MANAGER disabled items =========
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/14/2014 01:11:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 30.0.0.5269, Zeitstempel: 0x53914233
Name des fehlerhaften Moduls: mozalloc.dll, Version: 30.0.0.5269, Zeitstempel: 0x53911393
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000141b
ID des fehlerhaften Prozesses: 0x12fc
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5
Error: (07/13/2014 10:15:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x1e14
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "asmv2:clrClassInvocation1". Fehler in Manifest- oder Richtliniendatei "asmv2:clrClassInvocation2" in Zeile asmv2:clrClassInvocation3.
Das asmv2:clrClassInvocation-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^entryPoint-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird.
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "asmv2:clrClassInvocation1". Fehler in Manifest- oder Richtliniendatei "asmv2:clrClassInvocation2" in Zeile asmv2:clrClassInvocation3.
Das asmv2:clrClassInvocation-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^entryPoint-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird.
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "asmv2:clrClassInvocation1". Fehler in Manifest- oder Richtliniendatei "asmv2:clrClassInvocation2" in Zeile asmv2:clrClassInvocation3.
Das asmv2:clrClassInvocation-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^entryPoint-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird.
Error: (07/12/2014 05:40:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x1b90
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
Error: (07/12/2014 05:39:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x1f78
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
Error: (07/12/2014 05:38:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x1c54
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
Error: (07/12/2014 05:34:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x18ec
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
Error: (07/12/2014 05:28:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: yearwalk.exe, Version: 4.2.2.12621, Zeitstempel: 0x524d9d94
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17031, Zeitstempel: 0x5308893d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0003fd12
ID des fehlerhaften Prozesses: 0x1d7c
Startzeit der fehlerhaften Anwendung: 0xyearwalk.exe0
Pfad der fehlerhaften Anwendung: yearwalk.exe1
Pfad des fehlerhaften Moduls: yearwalk.exe2
Berichtskennung: yearwalk.exe3
Vollständiger Name des fehlerhaften Pakets: yearwalk.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: yearwalk.exe5
System errors:
=============
Error: (07/14/2014 01:11:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Quick Platform CNG-Schlüsselisolation" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (07/14/2014 01:00:17 AM) (Source: bowser) (EventID: 8003) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "FRITZ-NAS",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{715A2EE1-3321-486A-9D06-FF33CA3122B7}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (07/13/2014 10:48:41 AM) (Source: DCOM) (EventID: 10010) (User: HAL9000)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Error: (07/13/2014 10:48:11 AM) (Source: DCOM) (EventID: 10010) (User: HAL9000)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Error: (07/13/2014 10:47:32 AM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: 1053TrustedInstallerNicht verfügbar{752073A1-23F2-4396-85F0-8FDB879ED0ED}
Error: (07/13/2014 10:47:32 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Modules Installer" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/13/2014 10:47:32 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Modules Installer erreicht.
Error: (07/12/2014 05:26:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/12/2014 05:26:24 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht.
Error: (07/11/2014 00:03:41 PM) (Source: DCOM) (EventID: 10010) (User: HAL9000)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Microsoft Office Sessions:
=========================
Error: (07/14/2014 01:11:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe30.0.0.526953914233mozalloc.dll30.0.0.526953911393800000030000141b12fc01cf9f4e9316864cC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll8ba04e0e-0b47-11e4-8262-202564959667
Error: (07/13/2014 10:15:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd121e1401cf9ed739d99af7C:\Program Files (x86)\Steam\steamapps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dll798f5a74-0aca-11e4-8260-202564959667
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: asmv2:clrClassInvocationurn:schemas-microsoft-com:asm.v1^entryPointC:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.ManifestC:\Program Files (x86)\Acer\Office Addin 2003\PowerPointAddIn2003.dll.Manifest4
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: asmv2:clrClassInvocationurn:schemas-microsoft-com:asm.v1^entryPointC:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.ManifestC:\Program Files (x86)\Acer\Office Addin 2003\ExcelAddIn2003.dll.Manifest4
Error: (07/13/2014 10:51:12 AM) (Source: SideBySide) (EventID: 72) (User: )
Description: asmv2:clrClassInvocationurn:schemas-microsoft-com:asm.v1^entryPointC:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.ManifestC:\Program Files (x86)\Acer\Office Addin 2003\WordAddIn2003.dll.Manifest4
Error: (07/12/2014 05:40:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd121b9001cf9de799dca683C:\Program Files (x86)\Steam\steamapps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dlld866dbc8-09da-11e4-8260-202564959667
Error: (07/12/2014 05:39:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd121f7801cf9de7816881feC:\Program Files (x86)\Steam\steamapps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dllc003a7ea-09da-11e4-8260-202564959667
Error: (07/12/2014 05:38:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd121c5401cf9de7529fd0e7C:\Program Files (x86)\Steam\SteamApps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dll9175c310-09da-11e4-8260-202564959667
Error: (07/12/2014 05:34:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd1218ec01cf9de6bf6bf18fC:\Program Files (x86)\Steam\steamapps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dll01476f94-09da-11e4-8260-202564959667
Error: (07/12/2014 05:28:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: yearwalk.exe4.2.2.12621524d9d94ntdll.dll6.3.9600.170315308893dc00000050003fd121d7c01cf9de5dd006685C:\Program Files (x86)\Steam\steamapps\common\YearWalk\yearwalk.exeC:\Windows\SYSTEM32\ntdll.dll1c2035a4-09d9-11e4-8260-202564959667
==================== Memory info ===========================
Percentage of memory in use: 42%
Total physical RAM: 3978.27 MB
Available physical RAM: 2270.26 MB
Total Pagefile: 6922.27 MB
Available Pagefile: 4969.93 MB
Total Virtual: 131072 MB
Available Virtual: 131071.84 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:447.95 GB) (Free:370.93 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 5FCAB0D8)
Partition: GPT Partition Type.
==================== End Of Log ============================ |