Hallo, ne hatte bissher kein Antivirus Programm.
Hier die AdwCleaner Logfile: Code:
# AdwCleaner v3.310 - Bericht erstellt am 21/09/2014 um 10:10:03
# Aktualisiert 12/09/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Elvatan - ELVATAN-PC
# Gestartet von : C:\Users\Elvatan\Desktop\AdwCleaner_3.310.exe
# Option : Löschen
***** [ Dienste ] *****
[#] Dienst Gelöscht : Update ClearThink
[#] Dienst Gelöscht : Util ClearThink
Dienst Gelöscht : {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\PC Speed Maximizer
[!] Ordner Gelöscht : C:\Program Files (x86)\ClearThink
Ordner Gelöscht : C:\Users\Elvatan\AppData\Local\Temp\OCS
Ordner Gelöscht : C:\Users\Elvatan\AppData\Local\Temp\ClearThink
Ordner Gelöscht : C:\Users\Elvatan\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Users\Elvatan\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\Elvatan\AppData\Roaming\OpenCandy
Ordner Gelöscht : C:\Users\Elvatan\AppData\Roaming\wse_astromenda
Ordner Gelöscht : C:\Users\Elvatan\Documents\PC Speed Maximizer
Ordner Gelöscht : C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp
Ordner Gelöscht : C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae
Datei Gelöscht : C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
Datei Gelöscht : C:\Windows\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64.sys
Datei Gelöscht : C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\searchplugins\Askcom.xml
Datei Gelöscht : C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\searchplugins\astromenda.xml
Datei Gelöscht : C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\user.js
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp
Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASMANCS
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update ClearThink
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util ClearThink
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_ares-tube_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_ares-tube_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_tubebox_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_tubebox_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7e6d4e3e-fc66-4036-9799-ce5c625c4c56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{06e035f9-c6b3-4ae7-a839-ba68791f5499}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7e6d4e3e-fc66-4036-9799-ce5c625c4c56}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\UpdateStar
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar
Schlüssel Gelöscht : HKCU\Software\ClearThink
Schlüssel Gelöscht : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Myfree Codec
Schlüssel Gelöscht : HKLM\SOFTWARE\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\ClearThink
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Speedchecker Limited
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClearThink
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17280
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v32.0.2 (x86 de)
[ Datei : C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\prefs.js ]
Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Zeile gelöscht : user_pref("browser.search.defaultenginename", "Astromenda");
Zeile gelöscht : user_pref("browser.search.order.1", "Ask.com");
Zeile gelöscht : user_pref("browser.search.selectedEngine", "Astromenda");
Zeile gelöscht : user_pref("extensions.astrmndasr.hmpgUrl", "hxxp://astromenda.com/?f=1&a=ast_ir_14_38_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0EyCtA0EtBzy0F0E0C0BtN0D0Tzu0SzyzyyEtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytDyD1V[...]
Zeile gelöscht : user_pref("extensions.astrmndasr.newTabUrl", "hxxp://astromenda.com/?f=2&a=ast_ir_14_38_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0EyCtA0EtBzy0F0E0C0BtN0D0Tzu0SzyzyyEtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytDyD[...]
Zeile gelöscht : user_pref("extensions.astrmndasr.prtnrId", "WSE_Astromenda");
Zeile gelöscht : user_pref("extensions.astrmndasr.srchPrvdr", "Astromenda");
Zeile gelöscht : user_pref("extensions.astrmndasr.tlbrSrchUrl", "hxxp://astromenda.com/?f=3&a=ast_ir_14_38_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0EyCtA0EtBzy0F0E0C0BtN0D0Tzu0SzyzyyEtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytD[...]
-\\ Google Chrome v37.0.2062.120
[ Datei : C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gelöscht [Search Provider] : hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_ir_14_38_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0EyCtA0EtBzy0F0E0C0BtN0D0Tzu0SzyzyyEtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyByEtAyBzyyEtD0EtGtD0B0C0BtG0CyE0F0DtGyBzzzz0BtGtC0F0Fzy0DyE0E0CtDtBtByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzzzytCyEzy0DtCtCtGtAtCyCyCtGyEtDyDtBtGzz0AtC0BtGyD0F0FtB0C0DtByCtA0BtD0C2Q&cr=728625669&ir=
[ Datei : C:\Users\Gast.Elvatan-PC\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [11050 octets] - [21/09/2014 10:08:15]
AdwCleaner[S0].txt - [9746 octets] - [21/09/2014 10:10:03]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9806 octets] ########## Fix Log: Code:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-09-2014
Ran by Elvatan at 2014-09-21 10:16:06 Run:1
Running from C:\Users\Elvatan\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
C:\$Recycle.Bin\S-1-5-21-1967881942-375483174-3984753897-501\$223144b08af3774301b68382188b76e6
C:\ProgramData\4212136.pad
*****************
C:\$Recycle.Bin\S-1-5-21-1967881942-375483174-3984753897-501\$223144b08af3774301b68382188b76e6 => Moved successfully.
C:\ProgramData\4212136.pad => Moved successfully.
==== End of Fixlog ==== mbam loglife: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 21.09.2014
Suchlauf-Zeit: 10:23:57
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.09.21.02
Rootkit Datenbank: v2014.09.19.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Elvatan
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 398750
Verstrichene Zeit: 16 Min, 49 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Warnen
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 1
PUP.Optional.ClearThink.A, HKLM\SOFTWARE\WOW6432NODE\ClearThink, In Quarantäne, [341211dffa81d85e26516211e222a15f],
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 10
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\index-dir, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\databases, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Local Storage, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Astromenda, C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfkfdlcdbajamklbneflfbcmfgddmpae, In Quarantäne, [69dde60a34471422e4f23cbfcb375fa1],
PUP.Optional.DVDVideoSoftTB.A, C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp, In Quarantäne, [f551ca2672094ceab4aa7e8420e3c23e],
Dateien: 159
Malware.Packer.Krunchy, C:\Program Files (x86)\Eufloria\Uninstall.exe, In Quarantäne, [65e130c053285bdbbf40df7de7195ea2],
PUP.Optional.InstallCore, C:\$Recycle.Bin\S-1-5-21-1967881942-375483174-3984753897-1001\$RX2C7J3.exe, In Quarantäne, [49fdcb25e59660d680d8dbd93fc22dd3],
PUP.Optional.Bundlore, C:\Users\Elvatan\AppData\Local\Temp\OFDYN8JA.exe.part, In Quarantäne, [6cda8c649fdc62d4e3a1a97830d09769],
PUP.Optional.Bandoo, C:\Users\Elvatan\AppData\Local\Temp\j5oRQwa1.exe.part, In Quarantäne, [91b53db36615ed49a7cdd84290717e82],
PUP.Optional.Bandoo, C:\Users\Elvatan\AppData\Local\Temp\6fWNyedB.exe.part, In Quarantäne, [4ff707e96a11e74fafc5bc5e12ef1ae6],
PUP.Optional.InstallCore, C:\Users\Elvatan\AppData\Local\Temp\LazcN7br.exe.part, In Quarantäne, [91b56e824932c96dfe5a4e66d13019e7],
Adware.Linkular, C:\Users\Elvatan\AppData\Local\Temp\Qe1ZKoOr.exe.part, In Quarantäne, [d76f25cbceada591a3b3909ea06553ad],
PUP.Optional.Installrex, C:\Users\Elvatan\AppData\Local\Temp\bPluIJcm.exe.part, In Quarantäne, [9ea8df11afcc52e49fa83ae78d740df3],
PUP.Optional.Installrex, C:\Users\Elvatan\AppData\Local\Temp\v5znG54e.exe.part, In Quarantäne, [45017878dba0c76fbd8a7ea3b44d966a],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\QuotaManager-journal, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\cookies, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\cookies-journal, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\QuotaManager, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\website.ico, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\00f1e3b2a2c210e8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\03494ad3d4658bb9_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\03dbf93a51105404_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\05ff7aa027ded9b9_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\06103210ae5eb92b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\078715af32d09ffc_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\08bec7baf02dd388_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\0969af46c550ee80_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\0add1d50ec145475_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\0b0903a5c1305921_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\0f39e8e95c157b91_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1041015f9233625e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\10ba1a6dd717f76d_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\13ce238138dcb105_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1675d1bf1332844f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\195cd5fa09d0f84a_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1b7b2ed20d681aca_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1dafb2ed7113577d_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\8a89305e64fa0dc3_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\8ed0d33ffb8299c0_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\90ebfc4a14e5975b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\9178443d29a9fe94_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\91f3def3bf305e05_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\92233babc21bd554_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\946fb9fd37fa099e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\95ddd53adf512dbc_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\97dd353c55aff7f8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\9a48c20a6c6970e8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\9ae29e3aa2842aa4_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\9b2d4542638c8d16_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\9c7627e2abfdccd9_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a044ab34532a23c7_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a1628db2a5cd88af_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\34c65f273f242ede_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\358b1f8a07d41dc3_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\38628010c0fdbeaf_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\38d3919d59f50962_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\3dbc18b1febba295_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\3ed4670b633e734c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\3f44ef4184540b3b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\405ad2649fd135d3_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\47cff2ba15008159_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\c850463407472a22_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\c89f38f36e14b01c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\c97e1c023a3691fd_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\cc73100810e7a377_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ce6fbf4de7522baf_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\d3c58d3a88f5618a_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\d90f302dc6e9114e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\d9ba3aa2fec10a15_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\dcaa090adc9a65b2_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\de3ec9ddc2b44a14_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\df18a22241bb911e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e0ea107913adae0a_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e41d2684381c57ce_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e685b2ebc644ef56_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e8e2ce151826761e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e93f9019765cdcb6_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\657bf5b4dd0faf2b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\667fde6b487fc3a8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\67b8233399ef3c0a_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\6a46777b47d8863e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\70f3e0d4c0f07140_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\724344affef6866f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\7348fa989f594188_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\76dddbb58cb7031b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\77a00a687c34c785_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\77a4235f64006dba_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\7c000d76bf1f0157_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\7cc07ed3c66ea2df_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\8460ab8abbd96802_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\86285c0e2a5ab7a8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1db6eb5fae68ea2f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\1fff9c4cc604fcbd_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\209f183b64875f43_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\20d08ebe23d790a4_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\25aba580c575808f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\28b0dc98176c4830_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2ac84b0e8e18f672_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2ae4c6c7a9b3ec27_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2d5010af4a3ddd6c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2d5e1e7a317b7939_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2df1df3bd65e9142_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\2ed7a48cdf691d09_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\315a39b606bc4359_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\32712a6ecaa6edc5_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\327e2f346370c855_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\4a6caecf39036a67_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\5ff63e69bbe8fa3c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\8a2abd4eed83e9d6_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a283f7ba217bf39d_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\c69520283aa67006_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\e96840897e658496_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ea34829245485817_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\eaf9f1f07b129d5d_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\eb6c84d93c82f411_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ebfd932e35eb1606_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ecfb11388b7aa485_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ee368c55bdf4deb0_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\f449c9b01ddcc959_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\f5637b34d39b895b_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\f764108990553099_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\f7a72a7b132e4405_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\fb35cf784be698c4_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\fe9de08e3c2927fd_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\fee44e3190140457_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\fff1c369c68befd8_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\index, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a56cae2df3ec1166_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a67a7318862561a7_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\a682a844981d4e40_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\aaeefa4ab6eecc50_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\ad9048340356f07e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\b289f232b5094c1c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\b48c6ecf897cbf2c_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\b91c7ff467373a05_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\bb09c1ef5d2f052e_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\bc6570ebfbe9fdeb_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\bd1166fd9f46b3b6_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\bf1be18ed24f473f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\c0ee03a61ba116d7_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\4b62fe917181ed62_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\4daf3cbc2c7e199f_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\4fc1d6c2f5c967dd_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\56c9d35cac52d4eb_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\589ee6c1bbbdb758_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\59262bc76e7c5968_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\59f8199c46c0ac72_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\5c181b11e6e36c56_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\5df52657902dd1fb_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Cache\index-dir\the-real-index, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\databases\Databases.db, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\databases\Databases.db-journal, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache\data_0, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache\data_1, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache\data_2, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache\data_3, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\GPUCache\index, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000003.log, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\CURRENT, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOCK, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOG, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\MANIFEST-000002, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Local Storage\file__0.localstorage, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
PUP.Optional.Gameo.A, C:\Users\Elvatan\AppData\Local\Gameo\Local Storage\file__0.localstorage-journal, In Quarantäne, [7cca2ec2a4d7ab8b2963b9b2897b3dc3],
Physische Sektoren: 0
(No malicious items detected)
(end) FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Elvatan (administrator) on ELVATAN-PC on 21-09-2014 10:47:40
Running from C:\Users\Elvatan\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\Mouse\Amoumain.exe
(Sonix) C:\Windows\vspc1030.exe
(Spotify Ltd) C:\Users\Elvatan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [WheelMouse] => C:\Program Files\Mouse\Amoumain.exe [196608 2008-03-03] ()
HKLM\...\Run: [spc1030] => C:\Windows\vspc1030.exe [684032 2008-02-22] (Sonix)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1230704 2011-03-21] ()
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2011-07-05] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421736 2011-08-19] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-10-28] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [PlayNC Launcher] => [X]
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1939136 2014-08-28] (Valve Corporation)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [Spotify] => C:\Users\Elvatan\AppData\Roaming\Spotify\Spotify.exe [7880664 2012-12-30] (Spotify Ltd)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [Spotify Web Helper] => C:\Users\Elvatan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1199576 2012-12-30] (Spotify Ltd)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-10-28] (Samsung)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845168 2013-10-28] (Samsung)
HKU\S-1-5-21-1967881942-375483174-3984753897-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.)
Startup: C:\Users\Elvatan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x20950C16598ECB01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
SearchScopes: HKCU - {ADF93D82-34E1-4A3D-A527-92C2B1AB5840} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=MYC-ST&o=102869&src=crm&q={searchTerms}&locale=&apn_ptnrs=5J&apn_dtid=YYYYYYYYDE&apn_uid=cadc595c-aa82-4d6b-8ac2-e5c2049152f9&apn_sauid=9EEA8AA9-357D-4962-A101-078E4AADE1FA&
BHO-x32: ContributeBHO Class -> {074C1DC5-9320-4A9A-947D-C042949C6216} -> C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: DivX HiQ -> {593DDEC6-7468-4cdd-90E1-42DADAA222E9} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Skype Plug-In -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
DPF: HKLM-x32 {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default
FF Homepage: hxxp://www.movie4k.to/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\Elvatan\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npContribute.dll (Adobe Systems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: BYTubeD - Bulk YouTube video Downloader - C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\Extensions\bytubed@cs213.cse.iitk.ac.in [2013-06-24]
FF Extension: Astromenda NT - C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\Extensions\{424b0d11-e7fe-4a04-b7df-8f2c77f58aaf}.xpi [2014-09-20]
FF Extension: Adblock Plus - C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-03]
FF Extension: DownThemAll! - C:\Users\Elvatan\AppData\Roaming\Mozilla\Firefox\Profiles\i407fnp6.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2013-06-24]
FF Extension: Skype extension - C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2014-09-19]
FF HKLM-x32\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF Extension: Adobe Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2010-11-30]
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011-05-15]
FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa
FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011-05-15]
Chrome:
=======
CHR HomePage: Default ->
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.8) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.260.3) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U26) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Chrome NaCl) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll ()
CHR Plugin: (Adobe Contribute CS5 ) - C:\Program Files (x86)\Mozilla Firefox\plugins\npContribute.dll (Adobe Systems, Inc.)
CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (DivX HiQ) - C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae [2011-08-13]
CHR Extension: (Google Wallet) - C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-20]
CHR Extension: (DivX Plus Web Player HTML5 <video>) - C:\Users\Elvatan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2011-08-13]
CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx [2011-02-08]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx [2011-02-08]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-03-09] () [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16941856 2014-02-05] (NVIDIA Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 Amfilter; C:\Windows\System32\DRIVERS\Amfltx64.sys [12288 2007-10-15] ((Standard mouse types))
S3 Amusbprt; C:\Windows\System32\DRIVERS\Amusbx64.sys [17920 2008-02-13] (A4Tech Co.,Ltd.)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation)
S3 phaudlwr; C:\Windows\System32\DRIVERS\phaudlwr.sys [114608 2009-10-20] (Philips Applied Technologies)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 SPC1030; C:\Windows\System32\DRIVERS\spc1030.sys [3251456 2008-06-11] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-11-30] () [File not signed]
U3 affjw6xv; C:\Windows\System32\Drivers\affjw6xv.sys [0 ] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-21 10:45 - 2014-09-21 10:45 - 00024485 _____ () C:\Users\Elvatan\Desktop\mbam.txt
2014-09-21 10:22 - 2014-09-21 10:43 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-21 10:22 - 2014-09-21 10:22 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-09-21 10:22 - 2014-09-21 10:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-21 10:22 - 2014-09-21 10:22 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-21 10:22 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-09-21 10:22 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-09-21 10:17 - 2014-09-21 10:17 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Elvatan\Desktop\mbam-setup-2.0.2.1012.exe
2014-09-21 10:11 - 2014-09-21 10:11 - 00009930 _____ () C:\Users\Elvatan\Desktop\AdwCleaner[S0].txt
2014-09-21 10:09 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-21 10:07 - 2014-09-21 10:10 - 00000000 ____D () C:\AdwCleaner
2014-09-21 10:06 - 2014-09-21 10:06 - 01373475 _____ () C:\Users\Elvatan\Desktop\AdwCleaner_3.310.exe
2014-09-20 20:47 - 2014-09-20 20:48 - 00036192 _____ () C:\Users\Elvatan\Desktop\Addition.txt
2014-09-20 20:45 - 2014-09-21 10:48 - 00019437 _____ () C:\Users\Elvatan\Desktop\FRST.txt
2014-09-20 20:45 - 2014-09-21 10:47 - 00000000 ____D () C:\FRST
2014-09-20 20:04 - 2014-09-20 20:04 - 02105856 _____ (Farbar) C:\Users\Elvatan\Desktop\FRST64.exe
2014-09-20 19:46 - 2014-09-20 19:46 - 00000064 _____ () C:\Users\Elvatan\AppData\Roaming\WB.CFG
2014-09-20 18:48 - 2014-09-20 18:48 - 00000000 ___HD () C:\Users\Elvatan\AppData\Roaming\GoldenGate
2014-09-20 18:47 - 2014-09-20 18:47 - 98925600 _____ (NVIDIA Corporation) C:\Users\Elvatan\Downloads\258.96_desktop_win7_winvista_32bit_english_whql [1].exe
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall W2
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall W1
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TW2
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TW1
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TM
2014-09-20 18:47 - 2014-09-20 18:47 - 00000173 _____ () C:\Users\Elvatan\Desktop\Play Games Online.url
2014-09-20 18:47 - 2014-09-20 18:47 - 00000173 _____ () C:\Users\Elvatan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\StormFall
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Local\StormFall
2014-09-20 18:40 - 2014-07-02 19:44 - 00609240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-09-20 18:40 - 2014-07-02 12:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2014-09-20 18:34 - 2014-07-02 22:48 - 31512520 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 24196896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 22994208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 17555104 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 13922752 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 13835208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 12866008 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-09-20 18:34 - 2014-07-02 22:48 - 11283344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 11222048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 04247000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 03989960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 00944928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 00907096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 00903624 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-09-20 18:34 - 2014-07-02 22:48 - 00869152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-09-19 10:22 - 2014-09-19 10:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-18 20:55 - 2014-09-18 20:58 - 00000016 _____ () C:\Users\Elvatan\Desktop\Neues Textdokument.txt
2014-09-18 10:33 - 2014-09-18 10:37 - 00000000 ____D () C:\Users\Elvatan\Desktop\!!!!!!!!!!!!!!!!!!!!
2014-09-18 10:29 - 2014-09-18 10:29 - 00000000 ____D () C:\Users\Elvatan\Desktop\muyb-bestof2013-mix
2014-09-18 10:26 - 2014-09-18 10:28 - 155037716 _____ () C:\Users\Elvatan\Desktop\muyb-bestof2013-mix.zip
2014-09-17 20:28 - 2014-09-17 20:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-16 20:14 - 2014-09-16 20:16 - 00000000 ____D () C:\Users\Elvatan\Desktop\AhpK Facebook
2014-09-11 11:02 - 2014-09-11 11:04 - 00000000 ____D () C:\Users\Elvatan\Desktop\Meine Ohren
2014-09-11 09:03 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 09:03 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 09:03 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 09:03 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 09:03 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 09:03 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 09:03 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 09:03 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 09:03 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 09:03 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 09:03 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 09:03 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 09:03 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 09:03 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 09:03 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 09:03 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 09:03 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 09:03 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 09:03 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 09:03 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 09:03 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 09:03 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 09:03 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 09:03 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 09:03 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 09:03 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 09:03 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 09:03 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 09:03 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 09:03 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 09:03 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 09:03 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 09:03 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 09:03 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 09:03 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 09:03 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 09:03 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 09:03 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 09:03 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 09:03 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 09:03 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 09:03 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 09:03 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 09:03 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 09:03 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 09:03 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 09:03 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 09:03 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 09:03 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 09:03 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 09:03 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 09:03 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 09:03 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 09:03 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 09:03 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 09:03 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 08:56 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 08:56 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 15:50 - 2014-09-10 15:50 - 00291968 _____ () C:\Windows\Minidump\091014-17222-01.dmp
2014-09-10 14:19 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 14:19 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 14:19 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 14:19 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 14:18 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 14:18 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-10 14:18 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 14:18 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 14:18 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 14:18 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 14:18 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-07 15:52 - 2014-09-07 15:52 - 00006798 _____ () C:\Users\Elvatan\Desktop\elva zerk_report.txt
2014-09-07 11:49 - 2014-09-07 11:49 - 00291952 _____ () C:\Windows\Minidump\090714-20560-01.dmp
2014-09-05 09:51 - 2014-09-05 10:34 - 00000000 ____D () C:\Users\Elvatan\Desktop\Neuer Ordner
2014-09-05 08:28 - 2014-09-05 09:57 - 00000000 ____D () C:\Users\Elvatan\Desktop\awdawdawd
2014-09-04 10:04 - 2014-09-04 10:04 - 00007334 _____ () C:\Users\Elvatan\Desktop\OpenDocument Text (neu).odt
2014-09-04 10:04 - 2014-09-04 10:04 - 00000000 _____ () C:\Users\Elvatan\Desktop\Flash ActionScript File (neu).as
2014-09-04 10:03 - 2014-09-04 10:03 - 00009026 _____ () C:\Users\Elvatan\Desktop\OpenDocument Präsentation (neu).odp
2014-08-28 19:31 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 19:31 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 19:31 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-21 10:48 - 2014-09-20 20:45 - 00019437 _____ () C:\Users\Elvatan\Desktop\FRST.txt
2014-09-21 10:47 - 2014-09-20 20:45 - 00000000 ____D () C:\FRST
2014-09-21 10:47 - 2010-11-27 18:42 - 01513699 _____ () C:\Windows\WindowsUpdate.log
2014-09-21 10:45 - 2014-09-21 10:45 - 00024485 _____ () C:\Users\Elvatan\Desktop\mbam.txt
2014-09-21 10:43 - 2014-09-21 10:22 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-21 10:43 - 2012-12-30 19:50 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\Spotify
2014-09-21 10:43 - 2011-04-21 21:45 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-21 10:43 - 2011-04-17 19:56 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\Skype
2014-09-21 10:42 - 2012-02-01 10:19 - 00182888 _____ () C:\Windows\PFRO.log
2014-09-21 10:42 - 2011-12-23 10:54 - 00196822 _____ () C:\Windows\setupact.log
2014-09-21 10:42 - 2011-08-09 14:36 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-21 10:42 - 2010-11-30 18:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-09-21 10:42 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-21 10:22 - 2014-09-21 10:22 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-09-21 10:22 - 2014-09-21 10:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-21 10:22 - 2014-09-21 10:22 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-21 10:22 - 2013-03-15 20:38 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\Malwarebytes
2014-09-21 10:22 - 2013-03-15 20:38 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-09-21 10:21 - 2009-07-14 06:45 - 00023360 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-21 10:21 - 2009-07-14 06:45 - 00023360 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-21 10:17 - 2014-09-21 10:17 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Elvatan\Desktop\mbam-setup-2.0.2.1012.exe
2014-09-21 10:12 - 2011-08-09 14:36 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-21 10:11 - 2014-09-21 10:11 - 00009930 _____ () C:\Users\Elvatan\Desktop\AdwCleaner[S0].txt
2014-09-21 10:10 - 2014-09-21 10:07 - 00000000 ____D () C:\AdwCleaner
2014-09-21 10:10 - 2009-07-14 04:34 - 00000640 _____ () C:\Windows\win.ini
2014-09-21 10:06 - 2014-09-21 10:06 - 01373475 _____ () C:\Users\Elvatan\Desktop\AdwCleaner_3.310.exe
2014-09-20 20:48 - 2014-09-20 20:47 - 00036192 _____ () C:\Users\Elvatan\Desktop\Addition.txt
2014-09-20 20:04 - 2014-09-20 20:04 - 02105856 _____ (Farbar) C:\Users\Elvatan\Desktop\FRST64.exe
2014-09-20 19:46 - 2014-09-20 19:46 - 00000064 _____ () C:\Users\Elvatan\AppData\Roaming\WB.CFG
2014-09-20 18:48 - 2014-09-20 18:48 - 00000000 ___HD () C:\Users\Elvatan\AppData\Roaming\GoldenGate
2014-09-20 18:47 - 2014-09-20 18:47 - 98925600 _____ (NVIDIA Corporation) C:\Users\Elvatan\Downloads\258.96_desktop_win7_winvista_32bit_english_whql [1].exe
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall W2
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall W1
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TW2
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TW1
2014-09-20 18:47 - 2014-09-20 18:47 - 00003708 _____ () C:\Windows\System32\Tasks\StormFall TM
2014-09-20 18:47 - 2014-09-20 18:47 - 00000173 _____ () C:\Users\Elvatan\Desktop\Play Games Online.url
2014-09-20 18:47 - 2014-09-20 18:47 - 00000173 _____ () C:\Users\Elvatan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\StormFall
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall
2014-09-20 18:47 - 2014-09-20 18:47 - 00000000 ____D () C:\Users\Elvatan\AppData\Local\StormFall
2014-09-20 18:41 - 2011-09-01 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-09-20 18:41 - 2011-09-01 18:43 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-09-20 18:37 - 2010-11-30 17:51 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-09-20 17:33 - 2011-01-17 01:10 - 00003946 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{8C4BEF21-E732-4D91-AC6F-BDC77DE9E142}
2014-09-20 17:28 - 2012-08-05 10:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-19 10:22 - 2014-09-19 10:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-18 20:58 - 2014-09-18 20:55 - 00000016 _____ () C:\Users\Elvatan\Desktop\Neues Textdokument.txt
2014-09-18 10:37 - 2014-09-18 10:33 - 00000000 ____D () C:\Users\Elvatan\Desktop\!!!!!!!!!!!!!!!!!!!!
2014-09-18 10:29 - 2014-09-18 10:29 - 00000000 ____D () C:\Users\Elvatan\Desktop\muyb-bestof2013-mix
2014-09-18 10:28 - 2014-09-18 10:26 - 155037716 _____ () C:\Users\Elvatan\Desktop\muyb-bestof2013-mix.zip
2014-09-17 20:28 - 2014-09-17 20:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-17 20:28 - 2011-04-17 19:55 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-17 20:28 - 2011-04-17 19:55 - 00000000 ____D () C:\ProgramData\Skype
2014-09-16 20:16 - 2014-09-16 20:14 - 00000000 ____D () C:\Users\Elvatan\Desktop\AhpK Facebook
2014-09-14 14:55 - 2010-11-29 23:15 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\vlc
2014-09-14 14:13 - 2011-08-08 23:01 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\dvdcss
2014-09-14 09:23 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-12 00:37 - 2010-11-27 20:12 - 00000000 ____D () C:\Users\Elvatan\AppData\Roaming\TS3Client
2014-09-11 11:04 - 2014-09-11 11:02 - 00000000 ____D () C:\Users\Elvatan\Desktop\Meine Ohren
2014-09-11 09:01 - 2013-07-25 22:06 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 08:57 - 2010-11-30 17:49 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 08:55 - 2014-05-07 10:19 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-10 15:50 - 2014-09-10 15:50 - 00291968 _____ () C:\Windows\Minidump\091014-17222-01.dmp
2014-09-10 15:50 - 2014-08-02 21:00 - 483091384 _____ () C:\Windows\MEMORY.DMP
2014-09-10 15:50 - 2014-08-02 21:00 - 00000000 ____D () C:\Windows\Minidump
2014-09-07 15:52 - 2014-09-07 15:52 - 00006798 _____ () C:\Users\Elvatan\Desktop\elva zerk_report.txt
2014-09-07 11:49 - 2014-09-07 11:49 - 00291952 _____ () C:\Windows\Minidump\090714-20560-01.dmp
2014-09-05 10:34 - 2014-09-05 09:51 - 00000000 ____D () C:\Users\Elvatan\Desktop\Neuer Ordner
2014-09-05 09:57 - 2014-09-05 08:28 - 00000000 ____D () C:\Users\Elvatan\Desktop\awdawdawd
2014-09-05 04:10 - 2014-09-10 14:18 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 14:18 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-04 10:04 - 2014-09-04 10:04 - 00007334 _____ () C:\Users\Elvatan\Desktop\OpenDocument Text (neu).odt
2014-09-04 10:04 - 2014-09-04 10:04 - 00000000 _____ () C:\Users\Elvatan\Desktop\Flash ActionScript File (neu).as
2014-09-04 10:03 - 2014-09-04 10:03 - 00009026 _____ () C:\Users\Elvatan\Desktop\OpenDocument Präsentation (neu).odp
2014-09-04 10:01 - 2014-08-20 06:20 - 00000000 ____D () C:\Users\Elvatan\AppData\Local\Adobe
2014-09-03 20:44 - 2014-06-12 01:58 - 00000000 ____D () C:\Users\Elvatan\Desktop\Neuer Ordner (3)
2014-08-29 17:29 - 2009-07-14 06:45 - 04881080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-25 06:53 - 2010-11-27 19:03 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-08-23 04:07 - 2014-08-28 19:31 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 03:45 - 2014-08-28 19:31 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-23 02:59 - 2014-08-28 19:31 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
Some content of TEMP:
====================
C:\Users\Elvatan\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Elvatan\AppData\Local\Temp\drm_dyndata_7380014.dll
C:\Users\Elvatan\AppData\Local\Temp\drm_dyndata_7390005.dll
C:\Users\Elvatan\AppData\Local\Temp\fhxreo2e.dll
C:\Users\Elvatan\AppData\Local\Temp\GameuxInstallHelper.dll
C:\Users\Elvatan\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Elvatan\AppData\Local\Temp\Last.fm-2.1.33.exe
C:\Users\Elvatan\AppData\Local\Temp\nv3DVStreaming.dll
C:\Users\Elvatan\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Elvatan\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\Elvatan\AppData\Local\Temp\nvStInst.exe
C:\Users\Elvatan\AppData\Local\Temp\Quarantine.exe
C:\Users\Elvatan\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Elvatan\AppData\Local\Temp\virtual_ntdll.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-17 14:28
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
--- --- ---
Additional Scan Loglife: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-09-2014
Ran by Elvatan at 2014-09-21 10:49:21
Running from C:\Users\Elvatan\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.0 - )
AC Tool (HKLM-x32\...\AC Tool) (Version: - )
AC3Filter 1.63b (HKLM-x32\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky)
Activision(R) (x32 Version: 1.0 - Activision) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.3.9120 - Adobe Systems Inc.) Hidden
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Creative Suite 5 Master Collection (HKLM-x32\...\{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}) (Version: 5.0 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 11.4.402.278 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden
Adobe Reader X - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated)
Aion (HKCU\...\NCsoft-AionEU) (Version: - NCsoft)
Apple Application Support (HKLM-x32\...\{B3575D00-27EF-49C2-B9E0-14B3D954E992}) (Version: 1.5.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{439760BC-7737-4386-9B1D-A90A3E8A22EA}) (Version: 3.4.1.2 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive)
Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive)
Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive)
Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive)
Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version: - )
AudioCon (HKLM-x32\...\AudioCon) (Version: 1.0 - Basement Softworks)
BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - )
BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - )
Belkin F6D4050 Enhanced Wireless USB Adapter (HKLM-x32\...\InstallShield_{B97A0C89-29C0-4682-902C-364109A9857C}) (Version: 2.0.0.08 - Belkin)
Belkin F6D4050 Enhanced Wireless USB Adapter (x32 Version: 2.0.0.08 - Belkin) Hidden
Bonjour (HKLM\...\{CA0D2F09-F811-48D4-843E-C87696C6A9D9}) (Version: 3.0.0.2 - Apple Inc.)
Camtasia Studio 6 (HKLM-x32\...\{A589DA26-51BD-475D-8C32-E19E34145842}) (Version: 6.0.3 - TechSmith Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 3.14 - Piriform)
Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve)
Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
DAoC Portal (HKLM-x32\...\{951D4810-1C32-47D1-A5BD-7A1BFB526D94}) (Version: 2.1.0 - DAoC Portal)
DAOC-Charplan (HKLM-x32\...\DAOCCharplan) (Version: - )
Dark Age of Camelot (HKLM-x32\...\Dark Age of Camelot) (Version: - Electronic Arts)
DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios)
DC Universe Online Live (HKCU\...\SOE-DC Universe Online Live PSG) (Version: - Sony Online Entertainment)
DC Universe Online Live (HKCU\...\SOE-DC Universe Online Live) (Version: - Sony Online Entertainment)
Diablo II (HKLM-x32\...\Diablo II) (Version: - )
DivX-Setup (HKLM-x32\...\DivX Setup.divx.com) (Version: 2.5.0.8 - DivX, LLC)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Free M4a to MP3 Converter 6.2 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
Free YouTube Download version 3.0.16.923 (HKLM-x32\...\Free YouTube Download_is1) (Version: - DVDVideoSoft Ltd.)
Free YouTube to MP3 Converter version 3.12.9.725 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.9.725 - DVDVideoSoft Ltd.)
GearBunnyX and Classic 1.102 (HKLM-x32\...\GearBunnies_is1) (Version: - GearBunny Tools)
GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden
Genesis version Genesis Launcher 1.006 (HKLM-x32\...\{975e7799-c584-47f0-9c12-c1551f3e95f2}_is1) (Version: Genesis Launcher 1.006 - Pawel D. alias Laplume for Genesis.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.120 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games)
Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve)
Heroes of Newerth (HKLM-x32\...\hon) (Version: 2.0.33 - S2 Games)
Hex-Editor MX (HKLM-x32\...\{7FC7AD70-1DF3-4B84-9AA2-4FB680F45572}_is1) (Version: 6.0 - NEXT-Soft)
iTunes (HKLM\...\{997C9EC4-B53D-479D-81B7-0AEC8D174BA1}) (Version: 10.4.1.10 - Apple Inc.)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 22 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022F0}) (Version: 6.0.220 - Oracle)
Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.290 - Oracle)
Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios)
Last.fm Scrobbler 2.1.33 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm)
Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve)
LottaCam (HKCU\...\4231b8ca8eee684d) (Version: 0.0.0.4 - LottaCam)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
ManyCam 2.6.55 (remove only) (HKLM-x32\...\ManyCam) (Version: 2.6.55 - ManyCam LLC)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.60310.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Mozilla Firefox 32.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.2 (x86 de)) (Version: 32.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden
MyFreeCodec (HKCU\...\MyFreeCodec) (Version: - )
NCsoft Launcher (HKLM-x32\...\{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}) (Version: 1.5.19002 - NCsoft)
No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23)
NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.7 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.8.2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.2.1 - NVIDIA Corporation)
NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
NVIDIA Update 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 11.10.13 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.20 - NVIDIA Corporation)
OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org)
Opera 10.63 (HKLM-x32\...\{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}) (Version: 10.63 - Opera Software ASA)
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.2 - Frank Heindörfer, Philip Chinery)
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) Hidden
Python 2.7.1 (64-bit) (HKLM\...\{32939827-d8e5-470a-b126-870db3c69fd0}) (Version: 2.7.1150 - Python Software Foundation)
QuickTime (HKLM-x32\...\{C9E14402-3631-4182-B377-6B0DFB1C0339}) (Version: 7.70.80.34 - Apple Inc.)
RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.0-1.0.10926.49 - raidcall.com)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.1.13105_5 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.1.13105_5 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
SHIELD Streaming (Version: 1.7.321 - NVIDIA Corporation) Hidden
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - Firaxis Games)
Skype Toolbars (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.3.7280 - Skype Technologies S.A.)
Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.)
Smart-X7 7.80 (HKLM\...\WheelMouse) (Version: - )
Spider-Man(TM) - Dimensions (HKLM-x32\...\InstallShield_{14C36646-83C8-430E-92B3-16F998BDB4E0}) (Version: 1.0 - Activision)
Spotify (HKCU\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
StormFall (HKCU\...\StormFall) (Version: - StormFall)
SUPER © Version 2010.bld.42 (Nov 7, 2010) (HKLM-x32\...\SUPER ©) (Version: Version 2010.bld.42 (Nov 7, 2010) - eRightSoft)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.20935 - TeamViewer)
TM507 Webcam (HKLM-x32\...\{7F5A0E78-2B5A-4689-A91D-D60D83FC45E1}) (Version: - )
Tom Clancy's Splinter Cell Conviction (HKLM-x32\...\{6D8DDB4A-C263-40DE-BA16-AFDAD159D59A}) (Version: 1.00.000 - Ubisoft)
TubeBox! (HKLM-x32\...\{24F5BFDD-18E0-41F6-8A68-A22C742FC4A1}) (Version: 3.4.6 - Jens Lorek)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Uninstall 1.0.0.1 (HKLM-x32\...\Uninstall_is1) (Version: - )
VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0 - DivX, Inc) Hidden
Vegas Pro 10.0 (64-bit) (HKLM\...\{D3A82E80-D0A5-11DF-B425-0013D3D69929}) (Version: 10.0.388 - Sony)
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
VLC media player 1.0.5 (HKLM-x32\...\VLC media player) (Version: 1.0.5 - VideoLAN Team)
Warhammer Online - Wrath of Heroes (HKLM-x32\...\Warhammer Online - Wrath of Heroes) (Version: - Electronic Arts)
winLAME 2010 beta 1 (HKLM-x32\...\{63C16E81-327C-49B6-9643-4F5EFD8A6B2D}) (Version: 1.0.2010.1 - Michael Fink)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: 4.0.0.12911 - Blizzard Entertainment)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
05-09-2014 18:46:13 Windows Update
09-09-2014 15:36:38 Windows Update
11-09-2014 06:55:04 Windows Update
16-09-2014 18:07:59 Windows Update
19-09-2014 18:57:44 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2013-10-06 17:38 - 00000828 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {061A5FCA-78C4-43CC-949C-538D275CD01E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-09] (Google Inc.)
Task: {464F1F35-2BAC-422C-A766-210BF3C6CF00} - System32\Tasks\StormFall W1 => Chrome.exe --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31084&clickID=tDtDtByCtCzz0EyCtA0EtBzy0F0E0C0B&publisherID=1_1_9_33_34_61_62_72 --app-window-size=1680,1050
Task: {4A718983-C9C2-42AB-9420-1022A9A66518} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-09] (Google Inc.)
Task: {5A831A16-464A-4325-A5D3-2A6F54ADB6F7} - System32\Tasks\StormFall W2 => Chrome.exe --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31084&clickID=tDtDtByCtCzz0EyCtA0EtBzy0F0E0C0B&publisherID=1_1_9_33_34_61_62_72 --app-window-size=1680,1050
Task: {5AC2978C-5CD2-452B-948E-A94E0E0296E3} - System32\Tasks\StormFall TM => Chrome.exe --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31084&clickID=tDtDtByCtCzz0EyCtA0EtBzy0F0E0C0B&publisherID=1_1_9_33_34_61_62_72 --app-window-size=1680,1050
Task: {A6739049-091B-428D-98F5-62C063172C6F} - System32\Tasks\AdobeAAMUpdater-1.0-Elvatan-PC-Elvatan => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {BB4D78AF-20D5-472B-987D-F1D9229D86B8} - System32\Tasks\StormFall TW1 => Chrome.exe --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31084&clickID=tDtDtByCtCzz0EyCtA0EtBzy0F0E0C0B&publisherID=1_1_9_33_34_61_62_72 --app-window-size=1680,1050
Task: {C3169814-5515-499C-8188-2F166B2B5FFE} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
Task: {DA7DBD1A-3043-4ADB-9253-16DC0BF3BF30} - System32\Tasks\StormFall TW2 => Chrome.exe --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31084&clickID=tDtDtByCtCzz0EyCtA0EtBzy0F0E0C0B&publisherID=1_1_9_33_34_61_62_72 --app-window-size=1680,1050
Task: {DE6404B1-4FF4-4ED3-86A1-E67C358946C6} - System32\Tasks\{2AD11A42-21C7-4354-81C8-BECACA1B5038} => Firefox.exe hxxp://ui.skype.com/ui/0/5.3.0.108.259/de/abandoninstall?source=lightinstaller&page=tsChrome&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:offered-installed;madedefault
Task: {F2C3E660-D0E0-4453-AF40-6513B0D1E37E} - System32\Tasks\{2F8B607C-9B7C-43E3-BA66-EDC08E8330A6} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2014-08-27] (Skype Technologies S.A.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2011-09-07 13:02 - 2005-03-12 01:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll
2012-05-24 21:02 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2010-11-30 15:52 - 2010-03-15 12:28 - 00166400 _____ () C:\Program Files\WinRAR\rarext.dll
2011-09-02 21:34 - 2008-03-03 22:54 - 00196608 _____ () C:\Program Files\Mouse\Amoumain.exe
2011-03-21 20:56 - 2011-03-21 20:56 - 01230704 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2011-05-13 06:46 - 2011-05-13 06:46 - 00498760 _____ () C:\Program Files (x86)\ManyCam\Bin\cximagecrt.dll
2011-01-17 16:19 - 2011-06-23 18:42 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2011-03-21 20:57 - 2011-03-21 20:57 - 00096112 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2010-08-10 01:01 - 2010-08-10 01:01 - 00067872 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-09-19 10:22 - 2014-09-19 10:22 - 03734640 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:05EE1EEF
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
==================== Faulty Device Manager Devices =============
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/21/2014 10:16:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 32.0.2.5373, Zeitstempel: 0x541a8277
Name des fehlerhaften Moduls: mozalloc.dll, Version: 32.0.2.5373, Zeitstempel: 0x541a4d44
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000141b
ID des fehlerhaften Prozesses: 0xb44
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Error: (09/21/2014 10:03:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 32.0.2.5373, Zeitstempel: 0x541a8277
Name des fehlerhaften Moduls: mozalloc.dll, Version: 32.0.2.5373, Zeitstempel: 0x541a4d44
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000141b
ID des fehlerhaften Prozesses: 0x12bc
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Error: (09/20/2014 11:35:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Skype.exe, Version: 6.20.0.104, Zeitstempel: 0x53fd9215
Name des fehlerhaften Moduls: mshtml.dll, Version: 11.0.9600.17280, Zeitstempel: 0x53f27d67
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000afa2a
ID des fehlerhaften Prozesses: 0x798
Startzeit der fehlerhaften Anwendung: 0xSkype.exe0
Pfad der fehlerhaften Anwendung: Skype.exe1
Pfad des fehlerhaften Moduls: Skype.exe2
Berichtskennung: Skype.exe3
Error: (09/20/2014 08:07:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 32.0.2.5373, Zeitstempel: 0x541a8277
Name des fehlerhaften Moduls: mozalloc.dll, Version: 32.0.2.5373, Zeitstempel: 0x541a4d44
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000141b
ID des fehlerhaften Prozesses: 0x608
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Error: (09/20/2014 07:52:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: game.dll, Version: 1.111.0.0, Zeitstempel: 0x540dc224
Name des fehlerhaften Moduls: game.dll, Version: 1.111.0.0, Zeitstempel: 0x540dc224
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0026a260
ID des fehlerhaften Prozesses: 0xee0
Startzeit der fehlerhaften Anwendung: 0xgame.dll0
Pfad der fehlerhaften Anwendung: game.dll1
Pfad des fehlerhaften Moduls: game.dll2
Berichtskennung: game.dll3
Error: (09/20/2014 06:49:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvcplui.exe, Version: 7.8.760.0, Zeitstempel: 0x53b4501b
Name des fehlerhaften Moduls: nvsvs.dll, Version: 7.17.13.4052, Zeitstempel: 0x53b4538d
Ausnahmecode: 0xc0000409
Fehleroffset: 0x0000000000050785
ID des fehlerhaften Prozesses: 0x1360
Startzeit der fehlerhaften Anwendung: 0xnvcplui.exe0
Pfad der fehlerhaften Anwendung: nvcplui.exe1
Pfad des fehlerhaften Moduls: nvcplui.exe2
Berichtskennung: nvcplui.exe3
Error: (09/20/2014 06:42:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvcplui.exe, Version: 7.8.760.0, Zeitstempel: 0x53b4501b
Name des fehlerhaften Moduls: nvsvs.dll, Version: 7.17.13.4052, Zeitstempel: 0x53b4538d
Ausnahmecode: 0xc0000409
Fehleroffset: 0x0000000000050785
ID des fehlerhaften Prozesses: 0x1138
Startzeit der fehlerhaften Anwendung: 0xnvcplui.exe0
Pfad der fehlerhaften Anwendung: nvcplui.exe1
Pfad des fehlerhaften Moduls: nvcplui.exe2
Berichtskennung: nvcplui.exe3
Error: (09/20/2014 06:42:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvcplui.exe, Version: 7.8.760.0, Zeitstempel: 0x53b4501b
Name des fehlerhaften Moduls: nvsvs.dll, Version: 7.17.13.4052, Zeitstempel: 0x53b4538d
Ausnahmecode: 0xc0000409
Fehleroffset: 0x0000000000050785
ID des fehlerhaften Prozesses: 0x13cc
Startzeit der fehlerhaften Anwendung: 0xnvcplui.exe0
Pfad der fehlerhaften Anwendung: nvcplui.exe1
Pfad des fehlerhaften Moduls: nvcplui.exe2
Berichtskennung: nvcplui.exe3
Error: (09/20/2014 06:22:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvcplui.exe, Version: 7.6.730.0, Zeitstempel: 0x52f667c5
Name des fehlerhaften Moduls: nvsvs.dll, Version: 7.17.13.3489, Zeitstempel: 0x52f66c60
Ausnahmecode: 0xc0000409
Fehleroffset: 0x000000000005127d
ID des fehlerhaften Prozesses: 0xb08
Startzeit der fehlerhaften Anwendung: 0xnvcplui.exe0
Pfad der fehlerhaften Anwendung: nvcplui.exe1
Pfad des fehlerhaften Moduls: nvcplui.exe2
Berichtskennung: nvcplui.exe3
Error: (09/19/2014 11:19:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: game.dll, Version: 1.111.0.0, Zeitstempel: 0x540dc224
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000019
ID des fehlerhaften Prozesses: 0x12f8
Startzeit der fehlerhaften Anwendung: 0xgame.dll0
Pfad der fehlerhaften Anwendung: game.dll1
Pfad des fehlerhaften Moduls: game.dll2
Berichtskennung: game.dll3
System errors:
=============
Error: (09/10/2014 03:50:27 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x0000001a (0x0000000000005003, 0xfffff781c0000000, 0x0000000000005d78, 0xfffff8a00e293c09)C:\Windows\MEMORY.DMP091014-17222-01
Error: (09/10/2014 03:50:09 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 10.09.2014 um 15:47:49 unerwartet heruntergefahren.
Error: (09/07/2014 11:49:20 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x00000050 (0xfffffffdffd090f0, 0x0000000000000000, 0xfffff80002e0feea, 0x0000000000000005)C:\Windows\MEMORY.DMP090714-20560-01
Error: (09/07/2014 11:49:12 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 07.09.2014 um 11:47:04 unerwartet heruntergefahren.
Error: (09/05/2014 09:25:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (09/05/2014 09:25:35 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht.
Error: (09/04/2014 00:01:23 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (08/30/2014 07:09:51 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Defender" wurde mit folgendem Fehler beendet:
%%-2147024882
Error: (08/21/2014 04:22:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "TeamViewer 8" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/21/2014 04:22:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst TeamViewer 8 erreicht.
Microsoft Office Sessions:
=========================
Error: (09/21/2014 10:16:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe32.0.2.5373541a8277mozalloc.dll32.0.2.5373541a4d44800000030000141bb4401cfd573e17d3420C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll89291f40-4167-11e4-a276-002618e63e29
Error: (09/21/2014 10:03:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe32.0.2.5373541a8277mozalloc.dll32.0.2.5373541a4d44800000030000141b12bc01cfd5723711ef40C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllccfd7b00-4165-11e4-b276-002618e63e29
Error: (09/20/2014 11:35:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Skype.exe6.20.0.10453fd9215mshtml.dll11.0.9600.1728053f27d67c0000005000afa2a79801cfd4f3a812c6d0C:\Program Files (x86)\Skype\Phone\Skype.exeC:\Windows\SysWOW64\mshtml.dll00dc88b0-410e-11e4-8ec2-002618e63e29
Error: (09/20/2014 08:07:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe32.0.2.5373541a8277mozalloc.dll32.0.2.5373541a4d44800000030000141b60801cfd4fba51bad40C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllf7cac7e0-40f0-11e4-8ec2-002618e63e29
Error: (09/20/2014 07:52:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: game.dll1.111.0.0540dc224game.dll1.111.0.0540dc224c00000050026a260ee001cfd4f783bfa010C:\Program Files (x86)\Electronic Arts\Dark Age of Camelot\game.dllC:\Program Files (x86)\Electronic Arts\Dark Age of Camelot\game.dlldbfb1990-40ee-11e4-8ec2-002618e63e29
Error: (09/20/2014 06:49:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvcplui.exe7.8.760.053b4501bnvsvs.dll7.17.13.405253b4538dc00004090000000000050785136001cfd4f2ded14300C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exeC:\Program Files\NVIDIA Corporation\Display\nvsvs.dll1e5fbce0-40e6-11e4-9bf1-002618e63e29
Error: (09/20/2014 06:42:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvcplui.exe7.8.760.053b4501bnvsvs.dll7.17.13.405253b4538dc00004090000000000050785113801cfd4f1d558e770C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exeC:\Program Files\NVIDIA Corporation\Display\nvsvs.dll13d41c90-40e5-11e4-9bf1-002618e63e29
Error: (09/20/2014 06:42:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvcplui.exe7.8.760.053b4501bnvsvs.dll7.17.13.405253b4538dc0000409000000000005078513cc01cfd4f1c3026290C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exeC:\Program Files\NVIDIA Corporation\Display\nvsvs.dll0cf206d0-40e5-11e4-9bf1-002618e63e29
Error: (09/20/2014 06:22:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvcplui.exe7.6.730.052f667c5nvsvs.dll7.17.13.348952f66c60c0000409000000000005127db0801cfd4eefc62fb60C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exeC:\Program Files\NVIDIA Corporation\Display\nvsvs.dll628a7080-40e2-11e4-9bf1-002618e63e29
Error: (09/19/2014 11:19:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: game.dll1.111.0.0540dc224unknown0.0.0.000000000c00000050000001912f801cfd443b8b2a330C:\Program Files (x86)\Electronic Arts\Dark Age of Camelot\game.dllunknown98f08420-4042-11e4-aceb-002618e63e29
==================== Memory info ===========================
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 6000+
Percentage of memory in use: 49%
Total physical RAM: 4095.18 MB
Available physical RAM: 2049.44 MB
Total Pagefile: 8188.53 MB
Available Pagefile: 6229.38 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.41 GB) (Free:372.94 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 27D771A4)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Btw ich habe die von dir angegebenden Programme entfernen können.
WSE_Astromenda
McAfee Security Scan |