![]() |
Log-Analyse und Auswertung: Wallpaper 337 Löschen?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
| ![]() Wallpaper 337 Löschen? Walpaper 337 Löschen? Ich kenne mich nicht wirklich gut mit dam pc aus aber ich habe mir ein spiel welches sich aufgehängt hat neu gedownloadet und Instaliert und am nächsten tag habe ich noch ein anderes programm gelöscht, wiel es störete (speed my pc up) und dan kam wallpaper 337 und ich wies nicht wie ich es löschen kann hat jemand da ne ahnung? |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Wallpaper 337 Löschen? Hi,
__________________Systemscan mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Start > Computer (Rechtsklick) > Eigenschaften)
__________________ |
![]() | #3 |
| ![]() Wallpaper 337 Löschen? FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-06-2013 02 Ran by Jan (administrator) on 26-06-2013 15:10:05 Running from C:\Users\Jan\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (eSafe Security Co., Ltd.) C:\ProgramData\eSafe\eGdpSvc.exe (Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\Omiga Plus\omigaplusSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Iminent) C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe (Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe () C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Safer Networking Limited) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Overwolf) C:\Program Files (x86)\Overwolf\Overwolf.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidFind.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apntex.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe () C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe (Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\Omiga Plus\omigaplus.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Iminent) C:\Program Files (x86)\Iminent\Iminent.exe (Iminent) C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe () C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\\deploy\LoLLauncher.exe (Adobe Systems Inc.) C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\\deploy\LolClient.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe (Microsoft Corporation) C:\Windows\system32\taskmgr.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Microsoft) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [InstantUpdate] C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe [124520 2012-04-07] () HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12448872 2012-02-14] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 [1158248 2012-02-08] (Realtek Semiconductor) HKLM\...\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe [576376 2012-02-02] (Alps Electric Co., Ltd.) HKLM\...\Run: [AtherosBtStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" [1021056 2012-03-08] (Atheros Communications) HKLM\...\Run: [AthBtTray] "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" [800896 2012-03-08] (Atheros Commnucations) HKLM\...\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" [4123 2012-01-20] () HKLM\...\Run: [Power Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated) HKLM-x32\...\RunOnce: [SPUpdSentinel] "C:\Program Files (x86)\Common Files\Umbrella\umbrella_bkp.exe" -SERVICEARGS=c [2839592 2013-05-24] (Iminent) HKCU\...\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2144088 2009-01-26] (Safer Networking Limited) HKCU\...\Run: [Global Registration] "C:\Program Files (x86)\Acer\Registration\GREG.exe" /boot [855144 2012-02-29] (Acer Incorporated) HKCU\...\Run: [KPeerNexonEU] C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2012-08-09] (NEXON Inc.) HKCU\...\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent [35256 2013-06-11] (Overwolf) HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [18642024 2013-02-28] (Skype Technologies S.A.) HKCU\...\Runonce: [Del3689548] cmd.exe /Q /D /c del "C:\Users\Jan\AppData\Local\Temp\0.del" [x] HKLM-x32\...\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [341360 2011-09-20] (Egis Technology Inc.) HKLM-x32\...\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [BackupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k [296984 2012-01-05] (NTI Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-23] (Dritek System Inc.) HKLM-x32\...\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [291608 2012-02-26] (Intel Corporation) HKLM-x32\...\Run: [] [x] HKLM-x32\...\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [1568976 2012-06-20] (Ask) HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 2012-08-09] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-05-30] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421776 2012-06-07] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252296 2012-01-17] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [Iminent] C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C" [1074736 2013-04-02] (Iminent) HKLM-x32\...\Run: [IminentMessenger] C:\Program Files (x86)\Iminent\Iminent.Messengers.exe [884784 2013-04-02] (Iminent) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-05-15] (LogMeIn Inc.) HKU\Default\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162408 2011-09-13] () HKU\Default User\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162408 2011-09-13] () AppInit_DLLs: C:\Windows\system32\nvinitx.dll [245432 2012-12-03] (NVIDIA Corporation) AppInit_DLLs-x32: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll [2521552 2013-06-03] () Startup: C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Product Registration.lnk ShortcutTarget: Product Registration.lnk -> C:\Users\Jan\AppData\Local\Temp\is-DO1KD.tmp\ATR1.exe (No File) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = V9 Portal Site ? My Homepage ? The best and most complete navigation site of the US! HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = V9 Portal Site ? My Homepage ? The best and most complete navigation site of the US! HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = V9 Portal Site ? My Homepage ? The best and most complete navigation site of the US! HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = V9 Portal Site ? My Homepage ? The best and most complete navigation site of the US! URLSearchHook: (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File URLSearchHook: (No Name) - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File HKLM SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com HKLM-x32 SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com HKCU SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&affID=119556&babsrc=SP_ss&mntrId=3C66446D573C2BF9 SearchScopes: HKCU - {23AD092A-10BB-4AF3-85AD-ED51B0839F19} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Qvo6.com SearchScopes: HKCU - {F46C026D-982A-4424-8A1B-3C74EC098459} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=e1514491-06b5-4fac-9579-d53b70c44836&apn_sauid=B8571A6D-C5EF-4891-A347-334872015ED7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\\bh\delta.dll (Delta-search.com) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar plus Web Protection - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\\deltaTlbr.dll (Delta-search.com) Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default FF user.js: detected! => C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\user.js FF NewTab: user_pref("browser.newtab.url", ""); FF SelectedSearchEngine: v9 FF Homepage: hxxp://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=HitachiXHTS547575A9E384_J2140059D63VGAD63VGAX&ts=1369916174 FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2625848&SearchSource=2&CUI=UN90618407734584855&UM=newgdp&q= FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: DealPly Shopping - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\Extensions\addon@dealplyshopping.com FF Extension: Delta Toolbar - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\Extensions\ffxtlbr@delta.com FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\Extensions\toolbar@ask.com FF Extension: DVDVideoSoftTB DE - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\Extensions\{0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} FF Extension: No Name - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\wgy5vlr3.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (Unity Player) - C:\Users\Jan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll No File CHR Plugin: (Java Deployment Toolkit - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation) CHR Extension: (Google Docs) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (PriceGong) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok\5.6.11_0 CHR Extension: (YouTube) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\ CHR Extension: (Delta Toolbar) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0 CHR Extension: (Gmail) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224 2012-05-02] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032 2012-05-02] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [465360 2012-05-02] (Avira Operations GmbH & Co. KG) R2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [3085264 2013-06-03] () S3 DCDhcpService; C:\Program Files (x86)\Acer\WDAgent\DCDhcpService.exe [111776 2012-02-10] (Atheros Communication Inc.) R2 eSafeSvc; C:\ProgramData\eSafe\eGdpSvc.exe [360512 2013-05-29] (eSafe Security Co., Ltd.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation) S3 npggsvc; C:\Windows\SysWow64\GameMon.des [5124464 2012-12-16] (INCA Internet Co., Ltd.) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation) R2 omigaplussvc; C:\Program Files (x86)\Omiga Plus\omigaplusSvc.exe [424104 2013-06-25] (Taiwan Shui Mu Chih Ching Technology Limited.) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [18360 2013-06-11] (Overwolf Ltd) R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) R2 SProtection; C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe [2839592 2013-05-24] (Iminent) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe [72864 2012-02-19] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [98848 2012-04-25] (Avira GmbH) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132832 2012-04-27] (Avira GmbH) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [27760 2012-05-02] (Avira GmbH) S3 dump_wmimmc; \??\C:\Program Files (x86)\Games-Masters.com\CABAL Online (Europe)\GameGuard\dump_wmimmc.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-06-26 15:09 - 2013-06-26 15:09 - 00000000 ____D C:\FRST 2013-06-26 15:08 - 2013-06-26 15:08 - 01931844 ____A (Farbar) C:\Users\Jan\Desktop\FRST64.exe 2013-06-25 14:33 - 2013-06-25 14:37 - 00000000 ____D C:\Users\Jan\AppData\Roaming\337 Wallpaper 2013-06-25 14:31 - 2013-06-26 15:03 - 00000000 ____D C:\Program Files (x86)\Omiga Plus 2013-06-25 14:31 - 2013-06-25 16:10 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Omiga Plus 2013-06-25 14:31 - 2013-06-25 14:31 - 00000000 ____D C:\Users\Jan\AppData\Roaming\337 2013-06-24 22:15 - 2013-06-24 22:22 - 00000000 ____D C:\Users\Jan\Desktop\mmmmmh 2013-06-22 14:58 - 2013-06-22 14:58 - 00001726 ____A C:\Users\Public\Desktop\League of Legends spielen .lnk 2013-06-22 14:49 - 2013-06-22 14:49 - 00000000 ____D C:\Riot Games 2013-06-21 15:08 - 2013-06-21 15:08 - 03461416 ____A C:\Users\Jan\Downloads\LeagueofLegends (1).exe 2013-06-21 15:08 - 2013-06-21 15:08 - 00000000 ____D C:\Users\Jan\.swt 2013-06-21 14:03 - 2013-06-26 15:00 - 00000784 ____A C:\Windows\setupact.log 2013-06-21 14:03 - 2013-06-21 14:03 - 00000000 ____A C:\Windows\setuperr.log 2013-06-19 09:26 - 2013-06-19 09:26 - 02647845 ____A C:\Users\Jan\Downloads\IMG_1673 (1).MOV 2013-06-18 19:17 - 2013-06-18 19:17 - 00000000 ____D C:\Users\Jan\AppData\Roaming\File Scout 2013-06-18 19:17 - 2013-05-28 15:05 - 00163328 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerUpdateService.exe 2013-06-15 03:00 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 03:00 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 03:00 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 03:00 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 03:00 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 03:00 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 03:00 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 03:00 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 03:00 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 03:00 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 03:00 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 03:00 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-15 02:51 - 2013-06-15 02:56 - 71684158 ____A C:\Users\Jan\Downloads\KayneCraft3.5x128.zip 2013-06-13 20:31 - 2013-06-13 20:31 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Blender Foundation 2013-06-13 14:58 - 2013-06-13 14:58 - 00001901 ____A C:\Users\Public\Desktop\Blender.lnk 2013-06-13 14:57 - 2013-06-13 14:57 - 00000000 ____D C:\Program Files\Blender Foundation 2013-06-13 13:19 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 13:19 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 13:19 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 13:19 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 13:19 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 13:19 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 13:19 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 13:19 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 15:37 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 15:36 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 15:36 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 15:36 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 15:36 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 15:36 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 15:36 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 15:36 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 15:36 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 15:36 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 15:36 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 15:36 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 15:36 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 15:36 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 15:36 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 15:36 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 15:36 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 15:36 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 15:36 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-06 19:21 - 2013-06-06 19:21 - 00000000 ____D C:\Users\Jan\AppData\Local\Craften_Dev_Team 2013-06-06 19:20 - 2013-06-06 19:20 - 02484499 ____A (Craften Dev Team ) C:\Users\Jan\Downloads\craftenterminal.exe 2013-06-06 19:20 - 2013-06-06 19:20 - 00001107 ____A C:\Users\Public\Desktop\Craften Terminal.lnk 2013-06-06 19:20 - 2013-06-06 19:20 - 00000000 ____D C:\Program Files (x86)\Craften Terminal 2013-05-29 18:35 - 2013-05-29 18:36 - 02647845 ____A C:\Users\Jan\Downloads\IMG_1673.MOV ==================== One Month Modified Files and Folders ======= 2013-06-26 15:10 - 2012-07-16 19:51 - 00000000 ____D C:\Users\Jan\AppData\Local\PMB Files 2013-06-26 15:09 - 2013-06-26 15:09 - 00000000 ____D C:\FRST 2013-06-26 15:09 - 2009-07-14 06:45 - 00016976 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-06-26 15:09 - 2009-07-14 06:45 - 00016976 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-06-26 15:08 - 2013-06-26 15:08 - 01931844 ____A (Farbar) C:\Users\Jan\Desktop\FRST64.exe 2013-06-26 15:08 - 2012-12-07 22:52 - 00001104 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-06-26 15:08 - 2012-12-07 22:52 - 00001100 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-06-26 15:04 - 2013-02-02 22:05 - 00000000 ____D C:\Users\Jan\AppData\Local\Overwolf 2013-06-26 15:04 - 2012-07-16 17:00 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype 2013-06-26 15:03 - 2013-06-25 14:31 - 00000000 ____D C:\Program Files (x86)\Omiga Plus 2013-06-26 15:03 - 2013-04-23 21:24 - 00000000 ____D C:\ProgramData\eSafe 2013-06-26 15:02 - 2012-09-13 12:32 - 00000000 ____D C:\Users\Jan\AppData\Local\LogMeIn Hamachi 2013-06-26 15:00 - 2013-06-21 14:03 - 00000784 ____A C:\Windows\setupact.log 2013-06-26 15:00 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-06-25 23:40 - 2012-10-12 10:46 - 01885690 ____A C:\Windows\WindowsUpdate.log 2013-06-25 23:39 - 2012-07-16 19:51 - 00000000 ____D C:\ProgramData\PMB Files 2013-06-25 23:23 - 2012-04-20 13:04 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-06-25 16:10 - 2013-06-25 14:31 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Omiga Plus 2013-06-25 15:45 - 2013-02-18 14:27 - 00000000 ____D C:\Users\Jan\AppData\Roaming\.minecraft 2013-06-25 14:37 - 2013-06-25 14:33 - 00000000 ____D C:\Users\Jan\AppData\Roaming\337 Wallpaper 2013-06-25 14:31 - 2013-06-25 14:31 - 00000000 ____D C:\Users\Jan\AppData\Roaming\337 2013-06-25 14:30 - 2013-04-23 21:24 - 00000000 ____D C:\Program Files (x86)\Desk 365 2013-06-24 22:26 - 2012-11-09 17:49 - 00000000 ____D C:\Users\Jan\AppData\Roaming\FileZilla 2013-06-24 22:24 - 2013-03-31 16:37 - 00000875 ____A C:\Users\Jan\Desktop\teeworlds - Verknüpfung.lnk 2013-06-24 22:22 - 2013-06-24 22:15 - 00000000 ____D C:\Users\Jan\Desktop\mmmmmh 2013-06-24 22:08 - 2012-05-17 18:39 - 00654166 ____A C:\Windows\System32\perfh007.dat 2013-06-24 22:08 - 2012-05-17 18:39 - 00130006 ____A C:\Windows\System32\perfc007.dat 2013-06-24 22:08 - 2009-07-14 07:13 - 01498506 ____A C:\Windows\System32\PerfStringBackup.INI 2013-06-24 12:08 - 2012-07-16 22:30 - 00000000 ____D C:\Users\Jan\AppData\Local\CrashDumps 2013-06-22 15:27 - 2012-12-07 16:15 - 00000000 ____D C:\BrickForce 2013-06-22 14:58 - 2013-06-22 14:58 - 00001726 ____A C:\Users\Public\Desktop\League of Legends spielen .lnk 2013-06-22 14:49 - 2013-06-22 14:49 - 00000000 ____D C:\Riot Games 2013-06-22 14:49 - 2012-04-20 12:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-06-21 15:08 - 2013-06-21 15:08 - 03461416 ____A C:\Users\Jan\Downloads\LeagueofLegends (1).exe 2013-06-21 15:08 - 2013-06-21 15:08 - 00000000 ____D C:\Users\Jan\.swt 2013-06-21 15:08 - 2012-07-16 15:30 - 00000000 ____D C:\users\Jan 2013-06-21 14:19 - 2012-11-05 14:22 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Minecraft Version Changer 2013-06-21 14:03 - 2013-06-21 14:03 - 00000000 ____A C:\Windows\setuperr.log 2013-06-21 13:32 - 2012-11-03 17:04 - 00000000 ____D C:\Users\Jan\AppData\Roaming\TS3Client 2013-06-21 13:32 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther 2013-06-20 15:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF 2013-06-19 09:26 - 2013-06-19 09:26 - 02647845 ____A C:\Users\Jan\Downloads\IMG_1673 (1).MOV 2013-06-18 19:17 - 2013-06-18 19:17 - 00000000 ____D C:\Users\Jan\AppData\Roaming\File Scout 2013-06-17 22:14 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-15 02:56 - 2013-06-15 02:51 - 71684158 ____A C:\Users\Jan\Downloads\KayneCraft3.5x128.zip 2013-06-13 20:31 - 2013-06-13 20:31 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Blender Foundation 2013-06-13 14:58 - 2013-06-13 14:58 - 00001901 ____A C:\Users\Public\Desktop\Blender.lnk 2013-06-13 14:58 - 2012-11-28 22:33 - 00000000 ____D C:\Users\Jan\.thumbnails 2013-06-13 14:57 - 2013-06-13 14:57 - 00000000 ____D C:\Program Files\Blender Foundation 2013-06-13 13:20 - 2012-12-05 20:53 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-13 13:16 - 2013-02-02 22:07 - 00000000 ____D C:\Program Files (x86)\Overwolf 2013-06-12 21:23 - 2012-04-20 13:04 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 21:23 - 2012-04-20 13:04 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-08 16:08 - 2013-06-15 03:00 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 03:00 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 03:00 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 03:00 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 03:00 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 03:00 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 03:00 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 03:00 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 03:00 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 03:00 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 03:00 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 03:00 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-06 19:21 - 2013-06-06 19:21 - 00000000 ____D C:\Users\Jan\AppData\Local\Craften_Dev_Team 2013-06-06 19:20 - 2013-06-06 19:20 - 02484499 ____A (Craften Dev Team ) C:\Users\Jan\Downloads\craftenterminal.exe 2013-06-06 19:20 - 2013-06-06 19:20 - 00001107 ____A C:\Users\Public\Desktop\Craften Terminal.lnk 2013-06-06 19:20 - 2013-06-06 19:20 - 00000000 ____D C:\Program Files (x86)\Craften Terminal 2013-06-04 21:52 - 2013-04-12 15:49 - 00000000 ____D C:\ProgramData\BrowserProtect 2013-06-03 13:58 - 2013-04-30 23:55 - 00001905 ____A C:\Users\Public\Desktop\LOL Recorder.lnk 2013-06-03 13:58 - 2013-04-30 23:55 - 00000000 ____D C:\Program Files (x86)\LOLReplay 2013-05-30 14:16 - 2012-12-07 22:54 - 00002501 ____A C:\Users\Jan\Desktop\Google Chrome.lnk 2013-05-30 14:14 - 2013-04-23 21:23 - 00000000 ____D C:\Users\Jan\AppData\Roaming\eIntaller 2013-05-29 18:36 - 2013-05-29 18:35 - 02647845 ____A C:\Users\Jan\Downloads\IMG_1673.MOV 2013-05-28 22:23 - 2013-04-23 21:24 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Desk 365 2013-05-28 15:05 - 2013-06-18 19:17 - 00163328 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerUpdateService.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 22:06 ==================== End Of Log ============================ --- --- --- FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-06-2013 02 Ran by Jan at 2013-06-26 15:10:28 Running from C:\Users\Jan\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= clear.fi SDK - MVP 2 (x32 Version: 2.0.1505) clear.fi SDK- Movie 2 (x32 Version: 2.0.1502) ???? ??? Windows Live (x32 Version: 15.4.3502.0922) ???? Windows Live (x32 Version: 15.4.3502.0922) ?????? ??????? ?? Windows Live (x32 Version: 15.4.3502.0922) ???????? ?????????? Windows Live (x32 Version: 15.4.3502.0922) ?????????? Windows Live (x32 Version: 15.4.3502.0922) ??????????? ?? Windows Live (x32 Version: 15.4.3502.0922) 7-Zip 9.21 (x32 Version: Acer Backup Manager (x32 Version: Acer Crystal Eye Webcam (x32 Version: 1.5.2108.00) Acer ePower Management (x32 Version: 6.00.3010) Acer eRecovery Management (x32 Version: 5.00.3508) Acer Games (x32 Version: Acer Instant Update Service (Version: 1.00.3004) Acer Registration (x32 Version: 1.04.3506) Acer ScreenSaver (x32 Version: 1.1.0913.2011) Acer Updater (x32 Version: 1.02.3501) Adobe AIR (x32 Version: Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224) Adobe Reader X (10.1.0) MUI (x32 Version: 10.1.0) Adobe Reader X (10.1.4) - Deutsch (x32 Version: 10.1.4) Agatha Christie - Death on the Nile (x32 Version: ALPS Touch Pad Driver (Version: 7.109.2020.209) Apple Application Support (x32 Version: 2.1.9) Apple Mobile Device Support (Version: Apple Software Update (x32 Version: Ask Toolbar (x32 Version: AssaultCube v1.1.0.4 (x32 Version: v1.1.0.4) Atheros Bluetooth Suite (64) (Version: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (x32 Version: Avira Free Antivirus (x32 Version: Avira SearchFree Toolbar plus Web Protection Updater (HKCU Version: Backup Manager V3 (x32 Version: Bejeweled 3 (x32 Version: Bing Bar (x32 Version: 7.0.765.0) Blender (Version: 2.67b) Bonjour (Version: Brick-Force (x32 Version: ) BrowserProtect (x32) CABAL Online Europe (Europe) (x32) CCleaner (Version: 3.20) CD Label Designer (x32 Version: CD Label Designer 5.0) Chuzzle Deluxe (x32 Version: clear.fi Media (x32 Version: 2.00.3004) clear.fi Photo (x32 Version: 2.00.3004) Combat Arms EU (x32) Craften Terminal 3.3.4897.28268 (x32 Version: 3.3.4897.28268) CyberLink MediaEspresso (x32 Version: 6.5.1720_38230) D3DX10 (x32 Version: 15.4.2368.0902) DealPly (HKCU) DealPly (remove only) (x32 Version: Delta Chrome Toolbar (x32) Delta toolbar (x32 Version: Dolby Home Theater v4 (x32 Version: 7.2.7000.7) DVDVideoSoftTB DE Toolbar (x32 Version: eBay Worldwide (x32 Version: 2.2.0409) Empire Earth II (x32 Version: 1.02) eSafe Security Control (x32 Version: Evernote v. 4.5.2 (x32 Version: FATE (x32 Version: FileZilla Client 3.5.3 (x32 Version: 3.5.3) Final Drive: Nitro (x32 Version: FlatOut (x32 Version: 1.00.0000) Fooz Kids (x32 Version: 3.1.2) Fooz Kids Platform (x32 Version: 2.1) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922) Free Studio version (x32 Version: Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922) Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922) Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922) Galeria fotografii uslugi Windows Live (x32 Version: 15.4.3502.0922) Galerie de photos Windows Live (x32 Version: 15.4.3502.0922) Galerie foto Windows Live (x32 Version: 15.4.3502.0922) GIMP 2.8.2 (Version: 2.8.2) Google Chrome (x32 Version: 27.0.1453.116) Google Earth (x32 Version: Google Update Helper (x32 Version: Identity Card (x32 Version: 1.00.3501) Iminent (x32 Version: Insaniquarium Deluxe (x32 Version: Intel(R) Control Center (x32 Version: Intel(R) Management Engine Components (x32 Version: Intel(R) OpenCL CPU Runtime (x32) Intel(R) Processor Graphics (x32 Version: Intel(R) Rapid Storage Technology (x32 Version: Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: Intel® Trusted Connect Service Client (Version: IrfanView (remove only) (x32 Version: 4.32) iTunes (Version: Java Auto Updater (x32 Version: Java(TM) 7 Update 5 (64-bit) (Version: 7.0.50) Java(TM) 7 Update 5 (x32 Version: 7.0.50) Jewel Match 3 (x32 Version: Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: John Deere Drive Green (x32 Version: Junk Mail filter update (x32 Version: 15.4.3502.0922) Kobo (x32 Version: 2.1.5) Launch Manager (x32 Version: 5.1.15) League of Legends (x32 Version: 1.3) LogMeIn Hamachi (x32 Version: LOLReplay (x32 Version: Mesh Runtime (x32 Version: 15.4.5722.2) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Home and Student 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.4763.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Single Image 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.4763.1000) Microsoft Silverlight (x32 Version: 4.0.50401.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Moorhuhnjagd AYCS (x32) Mozilla Firefox 20.0.1 (x86 de) (x32 Version: 20.0.1) Mozilla Maintenance Service (x32 Version: 20.0.1) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MyWinLocker (Version: MyWinLocker 4 (x32 Version: MyWinLocker Suite (x32 Version: newsXpresso (x32 Version: Nexon Game Manager (x32) Norton Online Backup (x32 Version: 2.1.17869) NTI Media Maker 9 (x32 Version: NVIDIA Grafiktreiber 310.70 (Version: 310.70) NVIDIA Install Application (Version: 2.1002.95.599) NVIDIA Optimus 1.11.3 (Version: 1.11.3) NVIDIA PhysX (x32 Version: 9.12.1031) NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031) NVIDIA Systemsteuerung 310.70 (Version: 310.70) NVIDIA Update 1.11.3 (Version: 1.11.3) NVIDIA Update Components (Version: 1.11.3) Omiga Plus (x32 Version: 1.6.6) OpenAL (x32) OpenOffice.org 3.4 (x32 Version: 3.4.9590) Overwolf (x32 Version: 0.42.248) Pando Media Booster (x32 Version: Penguins! (x32 Version: PhoenixRC (x32 Version: 3.00.12) Plants vs. Zombies - Game of the Year (x32 Version: Poczta uslugi Windows Live (x32 Version: 15.4.3502.0922) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922) Polar Bowler (x32 Version: Pošta Windows Live (x32 Version: 15.4.3502.0922) PriceGong 2.6.11 (x32 Version: 2.6.11) Qualcomm Atheros Direct Connect (x32 Version: 3.1) Qualcomm Atheros WiFi Driver Installation (x32 Version: 3.1) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922) Realtek High Definition Audio Driver (x32 Version: Realtek PCIE Card Reader (x32 Version: 6.1.7601.85) RollerCoaster Tycoon 3 (x32) S?????? f?t???af??? t?? Windows Live (x32 Version: 15.4.3502.0922) Scratch (x32 Version: Shredder (Version: Shredder (x32 Version: Siedler3 (x32) Skype™ 6.3 (x32 Version: 6.3.105) Slingo Deluxe (x32 Version: Split/Second (x32 Version: 1.00.0000) Spybot - Search & Destroy (x32 Version: 1.6.2) TeamSpeak 3 Client (x32 Version: 3.0.10) Torchlight (x32 Version: Überwachungstool für die Intel® Turbo-Boost-Technik 2.5 (Version: Unity Web Player (HKCU Version: ) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update Installer for WildTangent Games App (x32) Virtual Villagers 4 - The Tree of Life (x32 Version: VLC media player 2.0.2 (x32 Version: 2.0.2) Wedding Dash (x32 Version: Welcome Center (x32 Version: 1.02.3507) WildTangent Games App (Acer Games) (x32 Version: Windows Live ??? (x32 Version: 15.4.3502.0922) Windows Live ???? (x32 Version: 15.4.3502.0922) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3538.0513) Windows Live Fotogaléria (x32 Version: 15.4.3502.0922) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live Fotogalleri (x32 Version: 15.4.3502.0922) Windows Live Fotograf Galerisi (x32 Version: 15.4.3502.0922) Windows Live Fotótár (x32 Version: 15.4.3502.0922) Windows Live Galeria de Fotos (x32 Version: 15.4.3502.0922) Windows Live Galerija fotografija (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3538.0513) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) Windows Liven asennustyökalu (x32 Version: 15.4.3502.0922) Windows Liven sähköposti (x32 Version: 15.4.3502.0922) Windows Liven valokuvavalikoima (x32 Version: 15.4.3502.0922) WinRAR 4.20 (64-Bit) (Version: 4.20.0) World of Tanks (x32) World of Warcraft (x32 Version: XMedia Recode Version (x32 Version: Zuma Deluxe (x32 Version: ==================== Restore Points ========================= 18-06-2013 13:10:48 Windows Update 21-06-2013 12:57:33 Entfernt League of Legends 22-06-2013 12:49:24 Installiert League of Legends 25-06-2013 12:32:49 Windows Update ==================== Scheduled Tasks (whitelisted) ============= Task: {0249A80B-8121-4698-AA39-3964D838B80F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07] (Google Inc.) Task: {0521FB00-B6E5-4FBF-8D1D-5ADE97A61C0C} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {0D0E9A11-5290-4118-950E-F0138AEAF447} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => C:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {24F0E574-BCF0-4C57-96F1-FA05F1131B4E} - System32\Tasks\DealPly => C:\Users\Jan\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE [2013-03-19] () Task: {26C4952D-5551-4EFB-9299-CAFA606B7F5D} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files (x86)\Omiga Plus\omigaplus.exe [2013-06-25] (Taiwan Shui Mu Chih Ching Technology Limited.) Task: {26DAF95B-CC37-479D-8D16-D867354C4A11} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {42DEAB31-ED47-4FDF-9AB2-27ADF93AC3FE} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2011-05-20] (CyberLink) Task: {56563666-6930-42F9-B8B8-AAF8BAF19FD0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {5CF41A39-F624-4B40-999B-2B9412466608} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-06-22] (Piriform Ltd) Task: {62D3A074-4BC0-4CB3-A39B-BB32ABAB623F} - System32\Tasks\EPUpdater => C:\Users\Jan\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-06-06] () Task: {64FBDC2E-636E-46F5-AFAD-A0AF441947B2} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe [2013-05-28] (Adobe Systems Incorporated) Task: {6802FF22-93A6-462D-99C2-447EF68A8837} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe No File Task: {89CD3E03-9181-4724-9CFA-EE156ADC3F1F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07] (Google Inc.) Task: {918EA11A-6750-4F3D-8914-6FDDA300A1AE} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-02-07] (Acer Incorporated) Task: {99530C5B-EF20-4AA8-8E91-60AA661CB125} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe [2013-05-28] (Adobe Systems Incorporated) Task: {B549B0C2-FAB6-4A9E-83F0-34F79C94813F} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {BB87FB1D-0593-4564-A267-2B6CA1C742CD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-28] (Adobe Systems Incorporated) Task: {CFAB3AEA-86FD-4496-8B3D-A18F93CEF1D1} - System32\Tasks\Recovery Management\Burn Notification => C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [2012-03-15] (Acer) Task: {D2D2DF73-F35F-4503-B01B-DD7A10A7A9F4} - System32\Tasks\DealPlyUpdate => C:\Program No File Task: {D5A879CF-9DD1-4344-8A20-3DBA0FC1942C} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-02-08] () Task: {DDB66EC0-A49D-4441-A01A-38FD80356815} - System32\Tasks\Acer Registration - Reminder Recall task => C:\Program Files (x86)\Acer\Registration\GREG.exe [2012-02-29] (Acer Incorporated) Task: {F60D856A-CB91-4C40-8C90-E1904C3BB04C} - System32\Tasks\{F0009C25-8080-441C-B516-22E8A3FF2BBA} => C:\program files (x86)\mozilla firefox\firefox.exe [2013-05-12] (Mozilla Corporation) Task: C:\Windows\Tasks\Acer Registration - Reminder Recall task.job => ? Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= Name: Bluetooth USB Module Description: Bluetooth USB Module Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Atheros Communications Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (06/26/2013 03:09:45 PM) (Source: Application Hang) (User: ) Description: Programm FRST64.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1fbc Startzeit: 01ce726e4bb18719 Endzeit: 4 Anwendungspfad: C:\Users\Jan\Downloads\FRST64.exe Berichts-ID: a54099e9-de61-11e2-8215-e840f2f1de4b Error: (06/26/2013 03:00:50 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/25/2013 11:23:01 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: FlashPlayerUpdateService.exe, Version: 11.6.602.180, Zeitstempel: 0x51a4ab8c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002e243 ID des fehlerhaften Prozesses: 0x1e80 Startzeit der fehlerhaften Anwendung: 0xFlashPlayerUpdateService.exe0 Pfad der fehlerhaften Anwendung: FlashPlayerUpdateService.exe1 Pfad des fehlerhaften Moduls: FlashPlayerUpdateService.exe2 Berichtskennung: FlashPlayerUpdateService.exe3 Error: (06/25/2013 10:23:01 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: FlashPlayerUpdateService.exe, Version: 11.6.602.180, Zeitstempel: 0x51a4ab8c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002e243 ID des fehlerhaften Prozesses: 0x1ce8 Startzeit der fehlerhaften Anwendung: 0xFlashPlayerUpdateService.exe0 Pfad der fehlerhaften Anwendung: FlashPlayerUpdateService.exe1 Pfad des fehlerhaften Moduls: FlashPlayerUpdateService.exe2 Berichtskennung: FlashPlayerUpdateService.exe3 Error: (06/25/2013 09:23:01 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: FlashPlayerUpdateService.exe, Version: 11.6.602.180, Zeitstempel: 0x51a4ab8c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002e243 ID des fehlerhaften Prozesses: 0x4bc Startzeit der fehlerhaften Anwendung: 0xFlashPlayerUpdateService.exe0 Pfad der fehlerhaften Anwendung: FlashPlayerUpdateService.exe1 Pfad des fehlerhaften Moduls: FlashPlayerUpdateService.exe2 Berichtskennung: FlashPlayerUpdateService.exe3 Error: (06/25/2013 08:35:38 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/25/2013 03:23:00 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: FlashPlayerUpdateService.exe, Version: 11.6.602.180, Zeitstempel: 0x51a4ab8c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002e243 ID des fehlerhaften Prozesses: 0x1cd4 Startzeit der fehlerhaften Anwendung: 0xFlashPlayerUpdateService.exe0 Pfad der fehlerhaften Anwendung: FlashPlayerUpdateService.exe1 Pfad des fehlerhaften Moduls: FlashPlayerUpdateService.exe2 Berichtskennung: FlashPlayerUpdateService.exe3 Error: (06/25/2013 02:33:52 PM) (Source: Application Hang) (User: ) Description: Programm plusapp.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1b34 Startzeit: 01ce71a02148fcb7 Endzeit: 5 Anwendungspfad: C:\Users\Jan\AppData\Roaming\337\337 Wallpaper\plusapp.exe Berichts-ID: 7a55cb0f-dd93-11e2-9e34-e840f2f1de4b Error: (06/25/2013 02:25:50 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/24/2013 10:23:01 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: FlashPlayerUpdateService.exe, Version: 11.6.602.180, Zeitstempel: 0x51a4ab8c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002e243 ID des fehlerhaften Prozesses: 0x1ac0 Startzeit der fehlerhaften Anwendung: 0xFlashPlayerUpdateService.exe0 Pfad der fehlerhaften Anwendung: FlashPlayerUpdateService.exe1 Pfad des fehlerhaften Moduls: FlashPlayerUpdateService.exe2 Berichtskennung: FlashPlayerUpdateService.exe3 System errors: ============= Error: (06/25/2013 02:29:07 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/25/2013 02:29:07 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Media Player-Netzwerkfreigabedienst erreicht. Error: (06/22/2013 06:13:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) Rapid Storage Technology" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/22/2013 06:13:19 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Rapid Storage Technology erreicht. Error: (06/17/2013 06:01:14 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) Rapid Storage Technology" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/17/2013 06:01:14 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Rapid Storage Technology erreicht. Error: (06/15/2013 06:53:36 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/15/2013 06:53:36 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Error: (06/15/2013 06:53:36 PM) (Source: DCOM) (User: ) Description: 1053WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (05/24/2013 06:10:16 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Fehlerberichterstattungsdienst erreicht. Microsoft Office Sessions: ========================= Error: (06/26/2013 03:09:45 PM) (Source: Application Hang)(User: ) Description: FRST64.exe3.3.8.11fbc01ce726e4bb187194C:\Users\Jan\Downloads\FRST64.exea54099e9-de61-11e2-8215-e840f2f1de4b Error: (06/26/2013 03:00:50 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/25/2013 11:23:01 PM) (Source: Application Error)(User: ) Description: FlashPlayerUpdateService.exe11.6.602.18051a4ab8cntdll.dll6.1.7601.177254ec49b8fc00000050002e2431e8001ce71ea2b313e2aC:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeC:\Windows\SysWOW64\ntdll.dll697fe773-dddd-11e2-b9e0-e840f2f1de4b Error: (06/25/2013 10:23:01 PM) (Source: Application Error)(User: ) Description: FlashPlayerUpdateService.exe11.6.602.18051a4ab8cntdll.dll6.1.7601.177254ec49b8fc00000050002e2431ce801ce71e1c96c8b9fC:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeC:\Windows\SysWOW64\ntdll.dll07bc465b-ddd5-11e2-b9e0-e840f2f1de4b Error: (06/25/2013 09:23:01 PM) (Source: Application Error)(User: ) Description: FlashPlayerUpdateService.exe11.6.602.18051a4ab8cntdll.dll6.1.7601.177254ec49b8fc00000050002e2434bc01ce71d967a9fbfbC:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeC:\Windows\SysWOW64\ntdll.dlla5ff832e-ddcc-11e2-b9e0-e840f2f1de4b Error: (06/25/2013 08:35:38 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/25/2013 03:23:00 PM) (Source: Application Error)(User: ) Description: FlashPlayerUpdateService.exe11.6.602.18051a4ab8cntdll.dll6.1.7601.177254ec49b8fc00000050002e2431cd401ce71a71cfb0ad3C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeC:\Windows\SysWOW64\ntdll.dll5ac39235-dd9a-11e2-9e34-e840f2f1de4b Error: (06/25/2013 02:33:52 PM) (Source: Application Hang)(User: ) Description: plusapp.exe0.0.0.01b3401ce71a02148fcb75C:\Users\Jan\AppData\Roaming\337\337 Wallpaper\plusapp.exe7a55cb0f-dd93-11e2-9e34-e840f2f1de4b Error: (06/25/2013 02:25:50 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/24/2013 10:23:01 PM) (Source: Application Error)(User: ) Description: FlashPlayerUpdateService.exe11.6.602.18051a4ab8cntdll.dll6.1.7601.177254ec49b8fc00000050002e2431ac001ce71189f05eac4C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeC:\Windows\SysWOW64\ntdll.dlldd5c80f4-dd0b-11e2-9ea4-e840f2f1de4b ==================== Memory info =========================== Percentage of memory in use: 20% Total physical RAM: 16222.36 MB Available physical RAM: 12823.92 MB Total Pagefile: 32442.89 MB Available Pagefile: 28623.25 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:683.04 GB) (Free:544.46 GB) NTFS (Disk=0 Partition=3) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 1DB2A8AB) Partition 1: (Not Active) - (Size=16 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=683 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
![]() | #4 | |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Wallpaper 337 Löschen?Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #5 |
| ![]() Wallpaper 337 Löschen? Weist du ich wies nicht ob das so wichtig ist wallpaper zu entfernen es sind ja nur hintergründe und deswegenen ein computerschaden zu riskieren weil ich irgent was falschmache möchte ich nicht verstehst du. ich lasse meinen Onkel mal drübergucken der ist programirer der wohnt halt nen bissel weiter weg macht aber nix kommt sowieso zu mir aber trotzdem danke |
![]() | #6 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Wallpaper 337 Löschen? Alles klar.
__________________ --> Wallpaper 337 Löschen? |
![]() |
Themen zu Wallpaper 337 Löschen? |
ahnung, anderes, aufgehängt, gelöscht, löschen, löschen?, neu, programm, speed, spiel, wallpaper, walpaper337, wirklich |