|
Plagegeister aller Art und deren Bekämpfung: wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.07.2013, 09:47 | #1 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? Utility Chest Internet Explorer Toolbar und Utility Chest Firefox Toolbar lassen sich einfach nicht entfernen! Wer kann mir bitte helfen? Danke Lisei |
15.07.2013, 10:37 | #2 |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
15.07.2013, 10:47 | #3 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar?FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2013 Ran by lisa (administrator) on 15-07-2013 11:41:52 Running from C:\Users\lisa\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe () C:\Program Files (x86)\AAVUpdateManager\aavus.exe (ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Nero AG) C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe (Star Finanz - Software Entwicklung und Vertriebs GmbH) C:\Program Files (x86)\StarMoney Business 5.0\ouservice\StarMoneyOnlineUpdate.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\2.0.189\SSScheduler.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Facebook) C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-11] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [Easy-PrintToolBox] - C:\Program Files (x86)\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon [398944 2006-10-17] (CANON INC.) HKLM\...\Run: [BDAgent] - "C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe" [1091200 2013-06-14] (Bitdefender) HKLM\...\Run: [MSC] - "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1281512 2013-01-27] (Microsoft Corporation) HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [Google Update] - "C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-09-30] (Google Inc.) HKCU\...\Run: [AlcoholAutomount] - "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\axcmd.exe" /automount [203928 2009-09-30] (Alcohol Soft Development Team) HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-01] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [QuickTime Task] - "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [103992 2011-05-23] (Hewlett-Packard Development Company L.P.) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AppleSyncNotifier] - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2011-11-02] (Apple Inc.) HKLM-x32\...\Run: [ISUSPM Startup] - C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [221184 2006-08-25] (Macrovision Corporation) HKLM-x32\...\Run: [ISUSScheduler] - "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start [81920 2006-08-25] (Macrovision Corporation) HKLM-x32\...\Run: [avast] - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot [1653008 2013-06-17] (Simply Super Software) HKLM-x32\...\Run: [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\2.0.189\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk ShortcutTarget: Facebook Messenger.lnk -> C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook) Startup: C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch URLSearchHook: (No Name) - {7a55cbb2-2b2e-4a41-9de1-6ac5d2c2be0a} - No File StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SearchScopes: HKLM - {840CBA39-00BA-4137-9607-C2B1076209F6} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {840CBA39-00BA-4137-9607-C2B1076209F6} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {84dc9f6c-c9a5-4c64-ab67-d6ef60f963c8} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^ZO^xdm071^YYA^de&si=EL_UT_GER_189&ptb=011AB152-6CF6-4676-B8FF-5063541F1C9B&ind=2013071314&n=77fd07d2&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} HKCU SearchScopes: DefaultScope {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=NRO&o=101917&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^EV&apn_dtid=^YYYYYY^YY^DE&apn_uid=ACA9B707-1D63-4F8A-B514-AD85E1025CB9&apn_sauid=B833E935-8980-4B50-9736-9193F1336D24 SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=NRO&o=101917&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^EV&apn_dtid=^YYYYYY^YY^DE&apn_uid=ACA9B707-1D63-4F8A-B514-AD85E1025CB9&apn_sauid=B833E935-8980-4B50-9736-9193F1336D24 SearchScopes: HKCU - {4F0EDE64-5B3B-4425-8598-3C26DF5FF8BF} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms} SearchScopes: HKCU - {840CBA39-00BA-4137-9607-C2B1076209F6} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {84dc9f6c-c9a5-4c64-ab67-d6ef60f963c8} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^ZO^xdm071^YYA^de&si=EL_UT_GER_189&ptb=011AB152-6CF6-4676-B8FF-5063541F1C9B&ind=2013071314&n=77fd07d2&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ*´Ñ;áa´[¦†8*º~RÙxœòÜ8'£-)x*ä* URL = BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: avast! Ad Blocker - {FFCB3198-32F3-4E8B-9539-4324694ED663} - C:\Program Files (x86)\AVAST Software\avast! Ad Blocker IE\Adblocker64.dll (AVAST Software) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: No Name - {58f7b5ca-1162-42e8-8bbc-d543b4edd780} - No File BHO-x32: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) BHO-x32: avast! Ad Blocker - {FFCB3198-32F3-4E8B-9539-4324694ED663} - C:\Program Files (x86)\AVAST Software\avast! Ad Blocker IE\Adblocker32.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default FF NewTab: hxxp://www.google.com/firefox FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com/firefox FF Keyword.URL: hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=011AB152-6CF6-4676-B8FF-5063541F1C9B&n=77fd07d9&ind=2013071321&p2=^ZO^xdm071^YYA^de&si=EL_UT_GER_189&searchfor= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @Nero.com/KM - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @UtilityChest_49.com/Plugin - C:\Program Files (x86)\UtilityChest_49\bar\1.bin\NP49Stub.dll (MindSpark) FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll No File FF Plugin-x32: @videolan.org/vlc,version=2.0.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\lisa\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\lisa\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\ask-web-search.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\askcom.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\bingp.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\BrowserDefender.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\toggle.xml FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com FF Extension: adblocker - C:\Program Files (x86)\Mozilla Firefox\extensions\adblocker@avast.com.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files\T-Mobile\InternetManager_H\OCx64\addon FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [49ffxtbr@UtilityChest_49.com] C:\Program Files (x86)\UtilityChest_49\bar\1.bin FF Extension: Utility Chest - C:\Program Files (x86)\UtilityChest_49\bar\1.bin FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ Chrome: ======= CHR Extension: (Ashampoo DE) - C:\Users\lisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkjoiggkbepedjmjjbhhecjiimlckcga\2.3.19.11_0 CHR StartMenuInternet: Google Chrome - "C:\Users\lisa\AppData\Local\Google\Chrome\Application\chrome.exe" ==================== Services (Whitelisted) ================= R2 AAV UpdateService; C:\Program Files (x86)\AAVUpdateManager\aavus.exe [128296 2008-10-24] () R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-04-01] (Advanced Micro Devices, Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [344928 2011-01-28] () R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [99936 2006-11-10] () S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-08-13] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\2.0.189\McCHSvc.exe [227232 2010-09-02] (McAfee, Inc.) R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [120728 2012-10-02] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () S3 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [75384 2013-06-14] (Bitdefender) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1227800 2013-04-18] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [659992 2013-04-18] (Secunia) R2 StarMoney Business 5.0 OnlineUpdate; C:\Program Files (x86)\StarMoney Business 5.0\ouservice\StarMoneyOnlineUpdate.exe [699680 2012-12-21] (Star Finanz - Software Entwicklung und Vertriebs GmbH) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 Update Server; C:\Program Files\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe [466736 2011-11-04] (BitDefender) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe [67904 2013-06-14] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe [1957912 2013-06-14] (Bitdefender) S2 RoxLiveShare9; "C:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe" [x] ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-07-10] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-07-10] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-07-10] () R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [705552 2013-06-14] (BitDefender) R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2013-06-14] (BitDefender) S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [587024 2013-06-14] (BitDefender) R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93160 2013-06-14] (BitDefender LLC) R0 bdfsfltr; C:\Windows\System32\DRIVERS\bdfsfltr.sys [442088 2012-02-07] (BitDefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-23] (BitDefender LLC) S3 bdsandbox; C:\Windows\system32\drivers\bdsandbox.sys [79952 2012-02-07] (BitDefender SRL) R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [103944 2010-01-19] (BitDefender) R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16512 2011-08-13] (Bytemobile, Inc.) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [212992 2011-08-13] (Huawei Technologies Co., Ltd.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-04-18] (Secunia) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39552 2011-08-13] (Bytemobile, Inc.) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39552 2011-08-13] (Bytemobile, Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [329800 2011-11-04] (BitDefender S.R.L.) S3 catchme; \??\C:\Uninstall.exe\catchme.sys [x] S3 CpqDfw; system32\drivers\CpqDfw.sys [x] S3 motusbdevice; system32\DRIVERS\motusbdevice.sys [x] S0 sptd; No ImagePath ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-15 11:41 - 2013-07-15 11:41 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64.exe 2013-07-15 11:41 - 2013-07-15 11:41 - 00000000 ____D C:\FRST 2013-07-15 11:22 - 2013-07-15 11:22 - 00417464 _____ C:\Windows\Minidump\071513-36613-01.dmp 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer.exe 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer(1).exe 2013-07-15 10:03 - 2013-07-15 10:06 - 00008192 ___SH C:\Users\lisa\AppData\Roaming\Thumbs.db 2013-07-14 23:46 - 2013-07-14 23:46 - 00208783 _____ C:\Users\lisa\Documents\InfoTool Nero 9.txt 2013-07-14 23:13 - 2013-07-14 23:13 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0(1).exe 2013-07-14 23:12 - 2013-07-14 23:12 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0.exe 2013-07-14 20:22 - 2013-07-14 20:22 - 00000000 ____D C:\Users\lisa\AppData\Local\{EC15B68B-6816-4ED0-9BF6-BCC7B1097587} 2013-07-14 17:09 - 2013-07-14 17:10 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(2).exe 2013-07-14 00:59 - 2013-07-14 00:59 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-07-13 22:59 - 2013-07-13 23:01 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(1).exe 2013-07-13 22:43 - 2013-07-13 22:45 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup.exe 2013-07-13 21:36 - 2013-07-13 21:36 - 00000000 ____D C:\Users\lisa\Documents\Alcohol 120% 2013-07-13 21:32 - 2013-07-13 21:32 - 00001140 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk 2013-07-13 21:32 - 2013-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft 2013-07-13 20:53 - 2013-07-13 20:53 - 00000000 ____D C:\Users\lisa\AppData\Local\{FF367AD6-BB10-4AA7-BB00-3C9D0B6B4FBB} 2013-07-13 20:44 - 2013-07-13 20:44 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-07-13 20:40 - 2013-07-13 20:40 - 00503352 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys.vir 2013-07-13 20:29 - 2013-07-13 20:35 - 90917712 _____ (Apple Inc.) C:\Users\lisa\Downloads\iTunes64Setup.exe 2013-07-13 20:11 - 2013-07-13 21:29 - 00000000 ____D C:\Users\lisa\AppData\Local\UtilityChest_49 2013-07-13 20:11 - 2013-07-13 20:11 - 00000000 ____D C:\Users\lisa\AppData\Local\IAC 2013-07-13 20:11 - 2013-07-13 20:11 - 00000000 ____D C:\Program Files (x86)\UtilityChest_49 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Canneverbe Limited 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\ProgramData\Canneverbe Limited 2013-07-13 19:56 - 2013-07-13 20:48 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP 2013-07-13 19:53 - 2013-07-13 19:54 - 05257392 _____ (Canneverbe Limited ) C:\Users\lisa\Downloads\cdbxp_setup_4.5.1.3868.exe 2013-07-13 19:03 - 2013-07-13 19:07 - 42411544 _____ (Opera Software ASA) C:\Users\lisa\Downloads\Opera_15.0.1147.138_Setup.exe 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Users\lisa\AppData\Local\Secunia PSI 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-07-13 18:58 - 2013-07-13 18:58 - 03270960 _____ (Secunia) C:\Users\lisa\Downloads\PSISetup7009.exe 2013-07-13 18:52 - 2013-07-13 18:53 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Users\lisa\Documents\Microsoft_Security_Essentials_4.2.233 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-07-13 11:43 - 2013-07-13 11:49 - 00001099 _____ C:\Users\Public\Desktop\Trojan Remover.lnk 2013-07-13 11:43 - 2013-07-13 11:49 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\Documents\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-13 11:41 - 2013-07-13 11:42 - 20553576 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup687.exe 2013-07-13 11:39 - 2013-07-13 11:40 - 10273304 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup-9x.exe 2013-07-13 01:49 - 2013-07-13 01:49 - 00000000 ____D C:\Users\lisa\AppData\Local\{B1FAA66D-D904-4281-BD2E-EE9150A2E361} 2013-07-12 14:38 - 2013-07-15 11:22 - 773705530 _____ C:\Windows\MEMORY.DMP 2013-07-12 09:17 - 2013-07-12 09:16 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-12 09:17 - 2013-07-12 09:16 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-12 09:06 - 2013-07-12 09:11 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64.exe 2013-07-11 23:17 - 2013-07-11 23:17 - 09833328 _____ (SurfRight B.V.) C:\Users\lisa\Downloads\HitmanPro_x64.exe 2013-07-11 22:46 - 2013-07-11 22:46 - 01069944 _____ (Solid State Networks) C:\Users\lisa\Downloads\install_reader11_de_mssd_aaa_aih.exe 2013-07-11 08:20 - 2013-07-11 08:20 - 00000000 ____D C:\Program Files (x86)\AVAST Software 2013-07-10 15:23 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-10 15:23 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-10 15:23 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-10 15:23 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-10 15:23 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-10 15:23 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-10 13:18 - 2013-07-14 06:20 - 00002075 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2013-07-10 13:18 - 2013-07-10 13:18 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-07-10 13:18 - 2013-05-09 10:59 - 00033400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2013-07-10 13:17 - 2013-07-15 11:27 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-07-10 13:17 - 2013-07-10 13:46 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2013-07-10 13:17 - 2013-07-10 13:18 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2013-07-10 13:17 - 2013-07-10 13:18 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys 2013-07-10 13:17 - 2013-07-10 13:17 - 00000000 ____D C:\Program Files\AVAST Software 2013-07-10 13:17 - 2013-05-09 10:59 - 00080816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00072016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00065336 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2013-07-10 13:17 - 2013-05-09 10:58 - 00287840 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2013-07-10 13:17 - 2013-05-09 10:58 - 00041664 _____ (AVAST Software) C:\Windows\avastSS.scr 2013-07-10 13:16 - 2013-07-10 13:17 - 00000000 ____D C:\ProgramData\AVAST Software 2013-07-10 08:23 - 2013-07-10 08:24 - 00000000 ____D C:\Users\lisa\AppData\Local\{B9C81A33-A766-4FFA-B0EC-940466292242} 2013-07-10 08:23 - 2013-07-10 08:23 - 00000000 ____D C:\Users\lisa\AppData\Local\{CF9FD8B7-9FED-4AF2-9BA8-1D5319B0D3A1} 2013-07-10 07:54 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-10 07:54 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-10 07:54 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-10 07:54 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-10 07:48 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-10 07:47 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-10 07:47 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-09 22:05 - 2013-07-09 22:05 - 00000000 ____D C:\Users\lisa\AppData\Local\{80FEA29E-5D68-4C42-9BD5-C0E56AAE8C2D} 2013-07-09 15:36 - 2013-07-09 16:18 - 117478104 _____ C:\Users\lisa\Downloads\avast_free_antivirus_setup_8.0.1489.300.exe 2013-07-09 13:15 - 2013-07-09 13:15 - 00001051 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk 2013-07-09 11:58 - 2013-07-09 13:18 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64(1).exe 2013-07-09 11:36 - 2013-07-09 11:36 - 00448512 _____ (OldTimer Tools) C:\Users\lisa\Downloads\TFC.exe 2013-07-09 11:14 - 2013-07-09 11:14 - 00001069 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-09 11:14 - 2013-07-09 11:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-09 11:14 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-09 10:44 - 2013-07-09 11:06 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-07-09 10:35 - 2013-07-09 13:08 - 190843736 _____ (Emsisoft GmbH ) C:\Users\lisa\Downloads\EmsisoftAntiMalwareSetup.exe 2013-07-09 10:27 - 2013-07-09 10:28 - 00002654 _____ C:\DelFix.txt 2013-07-09 08:08 - 2013-07-09 08:08 - 00044446 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 1. AZ Schießanlage Scheibenwerkstatt 25.08.2013.xlsx 2013-07-09 08:06 - 2013-07-09 08:25 - 00046081 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standortsch. Nesselgraben 07.07.2013.xlsx 2013-07-09 08:05 - 2013-07-09 08:05 - 00044448 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standort sch. Nesselgraben 07.07.2013.xlsx 2013-07-09 07:52 - 2013-07-09 07:52 - 00000000 ____D C:\Users\lisa\AppData\Local\{7FF8E44C-711E-4F38-802E-51F96F6F44B2} 2013-07-09 07:49 - 2013-07-09 07:49 - 00023136 _____ C:\Users\lisa\Downloads\MC900349383.WMF 2013-07-09 07:49 - 2013-07-09 07:49 - 00006358 _____ C:\Users\lisa\Downloads\MC900312702.WMF 2013-07-08 09:33 - 2013-07-08 09:33 - 00012870 _____ C:\Program Files (x86)\Schön Kliniken B`gadener Land Kostenangebot Station 3 30.08.2012 1.xlsx 2013-07-07 23:06 - 2013-07-07 23:06 - 00000000 _____ C:\Users\lisa\AppData\Local\rx_image.Cache 2013-07-07 21:38 - 2013-07-07 23:23 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Roxio 2013-07-07 21:16 - 2013-07-07 21:16 - 00001416 _____ C:\Windows\xpsp1hfm.log 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\Sonic 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\InstallShield 2013-07-07 21:16 - 2006-10-27 12:21 - 00058880 _____ (Sonic Solutions) C:\Windows\system32\Drivers\RxFilter.sys 2013-07-07 21:16 - 2006-10-26 19:04 - 00121856 _____ (Sonic Solutions) C:\Windows\system32\cdrtc.dll 2013-07-07 21:16 - 2006-10-26 19:04 - 00096256 _____ (Sonic Solutions) C:\Windows\system32\cdral.dll 2013-07-07 21:14 - 2013-07-08 00:00 - 00000000 ____D C:\ProgramData\Roxio 2013-07-07 21:14 - 2013-07-07 21:14 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-07 20:01 - 2013-07-07 20:27 - 359799446 _____ (Roxio ) C:\Users\lisa\Downloads\roxiowoctrialv9dol_wtd.exe 2013-07-07 18:42 - 2013-07-07 18:42 - 00000271 _____ C:\Users\lisa\Documents\Best of 2013 CD 1 2013 07.07.2013.nra 2013-07-07 17:02 - 2013-07-07 17:02 - 00002682 _____ C:\Users\Public\Desktop\Nero StartSmart.lnk 2013-07-07 16:31 - 2013-07-07 16:45 - 207203576 _____ (Nero AG) C:\Users\lisa\Downloads\Nero-9.4.44.0b_update.exe 2013-07-07 16:24 - 2013-07-07 16:24 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec(1).exe 2013-07-07 16:03 - 2013-07-07 16:03 - 00205339 _____ C:\Users\lisa\Documents\nero 9 InfoTool.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec.exe 2013-07-07 14:10 - 2013-07-07 14:26 - 21151576 _____ (Mozilla) C:\Users\lisa\Downloads\FirefoxSetup21.0.exe 2013-07-07 12:42 - 2013-07-08 10:47 - 00040641 _____ C:\Users\lisa\Downloads\Addition.txt 2013-07-07 12:26 - 2013-07-07 12:26 - 00000000 _____ C:\t3l4.16 2013-07-07 12:19 - 2013-07-07 12:22 - 00000000 ____D C:\Users\lisa\Desktop\BitDefender Support Tool 2013-07-07 09:26 - 2013-07-07 09:27 - 03517580 _____ C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio.zip 2013-07-06 13:28 - 2013-07-06 13:28 - 00000207 _____ C:\Windows\tweaking.com-regbackup-LISA-LISA-Microsoft-Windows-7-Home-Premium-(64-Bit).dat 2013-07-06 13:27 - 2013-07-06 13:27 - 00000000 ____D C:\RegBackup 2013-07-06 12:31 - 2013-07-07 10:51 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-07-06 11:47 - 2013-07-07 09:33 - 00000000 ____D C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio 2013-07-05 20:59 - 2013-07-09 09:56 - 00000000 ____D C:\Windows\erdnt 2013-07-05 20:59 - 2013-07-05 20:59 - 01820782 _____ (Swearware) C:\Users\lisa\Downloads\Nicht bestätigt 957803.crdownload 2013-07-04 14:13 - 2013-07-15 09:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-04 14:08 - 2013-07-04 14:08 - 00002964 _____ C:\Windows\System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} 2013-07-04 14:06 - 2013-07-04 14:08 - 00003195 _____ C:\Windows\IE10_main.log 2013-07-04 14:05 - 2013-07-04 14:05 - 00861184 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe 2013-07-04 12:59 - 2013-07-04 12:59 - 00347424 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\MicrosoftFixit.IEPerformance.MATSKB.Run.exe 2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-03 18:19 - 2013-07-03 18:19 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup (1).exe 2013-07-03 15:41 - 2013-07-03 15:44 - 00014593 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Kostenangebot Hochstaufen Kaserne 03.07.2013.xlsx 2013-07-03 13:17 - 2013-07-03 13:17 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForlisa 2013-07-03 13:16 - 2013-07-03 17:13 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForlisa.job 2013-07-02 21:28 - 2013-07-13 09:47 - 00002360 _____ C:\Users\lisa\Desktop\Google Chrome.lnk 2013-07-02 18:38 - 2013-07-02 18:38 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup.exe 2013-07-02 15:51 - 2013-07-02 15:51 - 00003108 _____ C:\Windows\System32\Tasks\RegClean Pro 2013-07-02 15:37 - 2013-07-15 09:06 - 00029654 _____ C:\Windows\PFRO.log 2013-07-02 10:25 - 2013-07-02 11:36 - 00001081 _____ C:\Users\lisa\Desktop\Continue Download Helper Installation.lnk 2013-07-02 08:50 - 2013-07-15 11:22 - 00003114 _____ C:\Windows\setupact.log 2013-07-02 08:50 - 2013-07-02 15:40 - 00000000 ____D C:\Users\TEMP.lisa-lisa.002 2013-07-02 08:50 - 2013-07-02 08:50 - 00000000 _____ C:\Windows\setuperr.log 2013-07-02 08:03 - 2013-07-02 08:03 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Bitdefender 2013-07-02 08:02 - 2013-07-02 08:02 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\VirtualStore 2013-07-02 08:01 - 2013-07-02 18:36 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Vorlagen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Startmenü 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Netzwerkumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Lokale Einstellungen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Eigene Dateien 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Druckumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Musik 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Bilder 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Verlauf 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Anwendungsdaten 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Anwendungsdaten 2013-07-02 08:01 - 2012-02-26 21:28 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Macromedia 2013-07-02 08:01 - 2011-08-18 13:48 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\Microsoft Help 2013-07-01 21:13 - 2013-07-09 10:27 - 00000000 ____D C:\Windows\ERUNT 2013-07-01 16:27 - 2013-07-01 16:27 - 00040844 _____ C:\Users\lisa\Documents\Addition.txt 2013-07-01 10:46 - 2013-07-01 10:46 - 00297313 _____ C:\Users\lisa\Documents\Malwarebytes Anti-Malware 1.pptx 2013-07-01 08:54 - 2013-07-01 08:54 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Bitdefender 2013-07-01 08:52 - 2013-07-02 18:36 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Vorlagen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Startmenü 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Netzwerkumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Lokale Einstellungen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Eigene Dateien 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Druckumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Musik 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Bilder 2013-07-01 08:52 - 2012-02-26 21:28 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Macromedia 2013-06-30 19:49 - 2013-07-02 18:36 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-06-30 19:38 - 2013-06-30 19:44 - 00029898 _____ C:\Users\lisa\Documents\cc_20130630_190551.reg 2013-06-30 18:58 - 2013-06-30 19:04 - 00005852 _____ C:\Users\lisa\Documents\cc_20130630_185817.reg 2013-06-30 18:18 - 2013-06-30 18:18 - 00003028 _____ C:\Windows\System32\Tasks\{787FA377-97EF-4F2B-9BF9-0CA25C8C8488} 2013-06-30 17:44 - 2013-06-30 17:44 - 00003164 _____ C:\Windows\System32\Tasks\{88BB02C1-26F5-42AF-AC8C-B574552B0CF9} 2013-06-30 17:43 - 2013-06-30 17:43 - 00003164 _____ C:\Windows\System32\Tasks\{B7D53088-892F-40E5-A607-DFA653D1BA4F} 2013-06-30 17:41 - 2013-07-02 18:37 - 00000000 ____D C:\Program Files (x86)\FromDocToPDF_65EI 2013-06-30 16:18 - 2013-06-30 16:18 - 00000000 ____D C:\ProgramData\bdch 2013-06-30 11:37 - 2013-06-30 11:37 - 00003164 _____ C:\Windows\System32\Tasks\{111EF72A-8BCA-4E71-B1CF-403E0747619A} 2013-06-17 18:53 - 2013-07-15 11:21 - 02018557 _____ C:\Windows\WindowsUpdate.log 2013-06-17 18:42 - 2013-06-17 18:42 - 00000176 _____ C:\Users\lisa\Documents\cc_20130617_184239.reg 2013-06-17 16:40 - 2013-06-17 16:42 - 00000429 _____ C:\Windows\system32\avgrep.txt 2013-06-17 13:23 - 2013-06-17 13:24 - 00130010 _____ C:\Users\lisa\Documents\cc_20130617_132325.reg 2013-06-17 11:44 - 2013-06-17 11:45 - 00000634 _____ C:\Users\lisa\Desktop\ccsetup402 - Verknüpfung.lnk 2013-06-17 09:13 - 2013-07-01 21:23 - 00000000 ____D C:\Users\TEMP.lisa-lisa 2013-06-17 05:22 - 2013-06-17 05:22 - 00003024 _____ C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2013-06-16 20:49 - 2013-06-16 20:54 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300 (1).exe 2013-06-16 20:43 - 2013-06-16 20:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300.exe 2013-06-16 20:09 - 2013-07-02 18:38 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Systweak 2013-06-16 12:54 - 2013-06-16 12:56 - 03758488 _____ (Systweak Inc ) C:\Users\lisa\Downloads\rcpsetup_3335_ggde.exe 2013-06-16 10:00 - 2013-06-17 14:53 - 00000000 ____D C:\Windows\pss 2013-06-15 22:39 - 2013-06-15 22:40 - 00393048 _____ (Softonic ) C:\Users\lisa\Downloads\SoftonicDownloader_fuer_hijackthis.exe 2013-06-15 21:53 - 2013-07-13 18:53 - 00001912 _____ C:\Windows\epplauncher.mif 2013-06-15 21:00 - 2013-06-15 21:38 - 13503464 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\mseinstall.exe 2013-06-15 19:15 - 2013-06-15 19:19 - 00000000 ____D C:\Program Files (x86)\GUM8868.tmp 2013-06-15 19:15 - 2013-06-15 19:15 - 04167680 _____ C:\Program Files (x86)\GUT8869.tmp 2013-06-15 19:02 - 2013-06-15 19:06 - 00781800 _____ (Google Inc.) C:\Users\lisa\Downloads\ChromeSetup.exe 2013-06-15 18:01 - 2013-06-15 18:01 - 00002994 _____ C:\Windows\System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} ==================== One Month Modified Files and Folders ======= 2013-07-15 11:43 - 2011-09-30 21:55 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA.job 2013-07-15 11:41 - 2013-07-15 11:41 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64.exe 2013-07-15 11:41 - 2013-07-15 11:41 - 00000000 ____D C:\FRST 2013-07-15 11:39 - 2013-06-17 18:53 - 02018557 _____ C:\Windows\WindowsUpdate.log 2013-07-15 11:35 - 2011-12-25 11:53 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-15 11:34 - 2012-04-08 12:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-15 11:33 - 2009-07-14 06:45 - 00031856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-15 11:33 - 2009-07-14 06:45 - 00031856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-15 11:27 - 2013-07-10 13:17 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-07-15 11:24 - 2011-12-25 11:53 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-15 11:23 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-15 11:22 - 2013-07-15 11:22 - 00417464 _____ C:\Windows\Minidump\071513-36613-01.dmp 2013-07-15 11:22 - 2013-07-12 14:38 - 773705530 _____ C:\Windows\MEMORY.DMP 2013-07-15 11:22 - 2013-07-02 08:50 - 00003114 _____ C:\Windows\setupact.log 2013-07-15 11:22 - 2012-07-03 09:31 - 00000000 ____D C:\Windows\Minidump 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer.exe 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer(1).exe 2013-07-15 10:08 - 2011-11-30 01:16 - 00000000 ____D C:\Program Files (x86)\StarMoney Business 5.0 2013-07-15 10:06 - 2013-07-15 10:03 - 00008192 ___SH C:\Users\lisa\AppData\Roaming\Thumbs.db 2013-07-15 09:06 - 2013-07-04 14:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-15 09:06 - 2013-07-02 15:37 - 00029654 _____ C:\Windows\PFRO.log 2013-07-14 23:55 - 2013-04-24 23:45 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job 2013-07-14 23:46 - 2013-07-14 23:46 - 00208783 _____ C:\Users\lisa\Documents\InfoTool Nero 9.txt 2013-07-14 23:21 - 2012-08-05 13:44 - 00001107 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-14 23:13 - 2013-07-14 23:13 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0(1).exe 2013-07-14 23:12 - 2013-07-14 23:12 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0.exe 2013-07-14 21:53 - 2011-08-09 19:42 - 00003930 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{CD07F68E-55A8-423B-91F6-DEB030304064} 2013-07-14 20:22 - 2013-07-14 20:22 - 00000000 ____D C:\Users\lisa\AppData\Local\{EC15B68B-6816-4ED0-9BF6-BCC7B1097587} 2013-07-14 17:10 - 2013-07-14 17:09 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(2).exe 2013-07-14 06:20 - 2013-07-10 13:18 - 00002075 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2013-07-14 01:43 - 2011-09-30 21:55 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job 2013-07-14 00:59 - 2013-07-14 00:59 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-07-13 23:01 - 2013-07-13 22:59 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(1).exe 2013-07-13 22:45 - 2013-07-13 22:43 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup.exe 2013-07-13 21:36 - 2013-07-13 21:36 - 00000000 ____D C:\Users\lisa\Documents\Alcohol 120% 2013-07-13 21:32 - 2013-07-13 21:32 - 00001140 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk 2013-07-13 21:32 - 2013-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft 2013-07-13 21:29 - 2013-07-13 20:11 - 00000000 ____D C:\Users\lisa\AppData\Local\UtilityChest_49 2013-07-13 21:25 - 2012-07-11 12:21 - 00638061 _____ C:\Users\lisa\Documents\iTunes-Diagnose.spx 2013-07-13 20:53 - 2013-07-13 20:53 - 00000000 ____D C:\Users\lisa\AppData\Local\{FF367AD6-BB10-4AA7-BB00-3C9D0B6B4FBB} 2013-07-13 20:49 - 2011-08-11 13:17 - 00000376 _____ C:\Users\lisa\AppData\Roamingprivacy.xml 2013-07-13 20:48 - 2013-07-13 19:56 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP 2013-07-13 20:48 - 2012-05-21 14:19 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-13 20:48 - 2012-05-21 14:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 20:44 - 2013-07-13 20:44 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-07-13 20:44 - 2013-06-10 12:59 - 00001743 _____ C:\Users\Public\Desktop\iTunes.lnk 2013-07-13 20:40 - 2013-07-13 20:40 - 00503352 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys.vir 2013-07-13 20:35 - 2013-07-13 20:29 - 90917712 _____ (Apple Inc.) C:\Users\lisa\Downloads\iTunes64Setup.exe 2013-07-13 20:11 - 2013-07-13 20:11 - 00000000 ____D C:\Users\lisa\AppData\Local\IAC 2013-07-13 20:11 - 2013-07-13 20:11 - 00000000 ____D C:\Program Files (x86)\UtilityChest_49 2013-07-13 20:06 - 2011-08-17 13:21 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Canneverbe Limited 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\ProgramData\Canneverbe Limited 2013-07-13 19:54 - 2013-07-13 19:53 - 05257392 _____ (Canneverbe Limited ) C:\Users\lisa\Downloads\cdbxp_setup_4.5.1.3868.exe 2013-07-13 19:19 - 2012-05-27 14:14 - 00001026 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-07-13 19:16 - 2011-05-07 16:30 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2013-07-13 19:16 - 2011-05-07 16:20 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-07-13 19:15 - 2012-04-08 12:26 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-13 19:15 - 2012-04-08 12:26 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-13 19:15 - 2011-08-18 08:20 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-13 19:07 - 2013-07-13 19:03 - 42411544 _____ (Opera Software ASA) C:\Users\lisa\Downloads\Opera_15.0.1147.138_Setup.exe 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Users\lisa\AppData\Local\Secunia PSI 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-07-13 18:58 - 2013-07-13 18:58 - 03270960 _____ (Secunia) C:\Users\lisa\Downloads\PSISetup7009.exe 2013-07-13 18:53 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-07-13 18:53 - 2013-06-15 21:53 - 00001912 _____ C:\Windows\epplauncher.mif 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Users\lisa\Documents\Microsoft_Security_Essentials_4.2.233 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-07-13 18:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-07-13 11:49 - 2013-07-13 11:43 - 00001099 _____ C:\Users\Public\Desktop\Trojan Remover.lnk 2013-07-13 11:49 - 2013-07-13 11:43 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\Documents\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-13 11:42 - 2013-07-13 11:41 - 20553576 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup687.exe 2013-07-13 11:40 - 2013-07-13 11:39 - 10273304 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup-9x.exe 2013-07-13 09:47 - 2013-07-02 21:28 - 00002360 _____ C:\Users\lisa\Desktop\Google Chrome.lnk 2013-07-13 01:49 - 2013-07-13 01:49 - 00000000 ____D C:\Users\lisa\AppData\Local\{B1FAA66D-D904-4281-BD2E-EE9150A2E361} 2013-07-13 01:38 - 2011-09-30 21:55 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA 2013-07-13 01:38 - 2011-09-30 21:55 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core 2013-07-12 23:09 - 2011-08-21 09:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-12 20:30 - 2011-12-25 11:53 - 00004102 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-12 20:30 - 2011-12-25 11:53 - 00003850 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-12 17:23 - 2013-01-07 19:59 - 00000000 ____D C:\Program Files (x86)\HTC 2013-07-12 10:29 - 2012-05-27 14:51 - 00000000 ____D C:\Windows\System32\Tasks\Games 2013-07-12 09:16 - 2013-07-12 09:17 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-12 09:16 - 2013-07-12 09:17 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-12 09:16 - 2011-05-07 16:39 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll 2013-07-12 09:16 - 2011-05-07 16:39 - 00000000 ____D C:\Program Files\Java 2013-07-12 09:11 - 2013-07-12 09:06 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64.exe 2013-07-11 23:17 - 2013-07-11 23:17 - 09833328 _____ (SurfRight B.V.) C:\Users\lisa\Downloads\HitmanPro_x64.exe 2013-07-11 22:46 - 2013-07-11 22:46 - 01069944 _____ (Solid State Networks) C:\Users\lisa\Downloads\install_reader11_de_mssd_aaa_aih.exe 2013-07-11 08:20 - 2013-07-11 08:20 - 00000000 ____D C:\Program Files (x86)\AVAST Software 2013-07-11 08:03 - 2007-01-02 03:25 - 00000000 ____D C:\Windows\Panther 2013-07-11 08:02 - 2009-07-14 06:45 - 00312288 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 08:01 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 08:01 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-10 13:46 - 2013-07-10 13:17 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2013-07-10 13:18 - 2013-07-10 13:18 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-07-10 13:18 - 2013-07-10 13:17 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2013-07-10 13:18 - 2013-07-10 13:17 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys 2013-07-10 13:17 - 2013-07-10 13:17 - 00000000 ____D C:\Program Files\AVAST Software 2013-07-10 13:17 - 2013-07-10 13:16 - 00000000 ____D C:\ProgramData\AVAST Software 2013-07-10 08:24 - 2013-07-10 08:23 - 00000000 ____D C:\Users\lisa\AppData\Local\{B9C81A33-A766-4FFA-B0EC-940466292242} 2013-07-10 08:23 - 2013-07-10 08:23 - 00000000 ____D C:\Users\lisa\AppData\Local\{CF9FD8B7-9FED-4AF2-9BA8-1D5319B0D3A1} 2013-07-09 22:05 - 2013-07-09 22:05 - 00000000 ____D C:\Users\lisa\AppData\Local\{80FEA29E-5D68-4C42-9BD5-C0E56AAE8C2D} 2013-07-09 16:18 - 2013-07-09 15:36 - 117478104 _____ C:\Users\lisa\Downloads\avast_free_antivirus_setup_8.0.1489.300.exe 2013-07-09 13:18 - 2013-07-09 11:58 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64(1).exe 2013-07-09 13:15 - 2013-07-09 13:15 - 00001051 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk 2013-07-09 13:08 - 2013-07-09 10:35 - 190843736 _____ (Emsisoft GmbH ) C:\Users\lisa\Downloads\EmsisoftAntiMalwareSetup.exe 2013-07-09 11:36 - 2013-07-09 11:36 - 00448512 _____ (OldTimer Tools) C:\Users\lisa\Downloads\TFC.exe 2013-07-09 11:14 - 2013-07-09 11:14 - 00001069 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-09 11:14 - 2013-07-09 11:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-09 11:06 - 2013-07-09 10:44 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-07-09 10:28 - 2013-07-09 10:27 - 00002654 _____ C:\DelFix.txt 2013-07-09 10:27 - 2013-07-01 21:13 - 00000000 ____D C:\Windows\ERUNT 2013-07-09 09:58 - 2009-07-14 05:20 - 00000000 ___RD C:\Users\Default 2013-07-09 09:56 - 2013-07-05 20:59 - 00000000 ____D C:\Windows\erdnt 2013-07-09 09:54 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-07-09 08:55 - 2011-05-08 01:56 - 05948700 _____ C:\Windows\system32\perfh007.dat 2013-07-09 08:55 - 2011-05-08 01:56 - 01829660 _____ C:\Windows\system32\perfc007.dat 2013-07-09 08:55 - 2009-07-14 07:13 - 00006256 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-09 08:25 - 2013-07-09 08:06 - 00046081 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standortsch. Nesselgraben 07.07.2013.xlsx 2013-07-09 08:08 - 2013-07-09 08:08 - 00044446 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 1. AZ Schießanlage Scheibenwerkstatt 25.08.2013.xlsx 2013-07-09 08:05 - 2013-07-09 08:05 - 00044448 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standort sch. Nesselgraben 07.07.2013.xlsx 2013-07-09 07:52 - 2013-07-09 07:52 - 00000000 ____D C:\Users\lisa\AppData\Local\{7FF8E44C-711E-4F38-802E-51F96F6F44B2} 2013-07-09 07:49 - 2013-07-09 07:49 - 00023136 _____ C:\Users\lisa\Downloads\MC900349383.WMF 2013-07-09 07:49 - 2013-07-09 07:49 - 00006358 _____ C:\Users\lisa\Downloads\MC900312702.WMF 2013-07-08 13:20 - 2011-08-13 11:08 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-07-08 13:19 - 2011-11-04 15:06 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-07-08 10:47 - 2013-07-07 12:42 - 00040641 _____ C:\Users\lisa\Downloads\Addition.txt 2013-07-08 09:33 - 2013-07-08 09:33 - 00012870 _____ C:\Program Files (x86)\Schön Kliniken B`gadener Land Kostenangebot Station 3 30.08.2012 1.xlsx 2013-07-08 08:30 - 2011-08-13 11:38 - 00000000 ____D C:\Users\lisa\AppData\Local\CrashDumps 2013-07-08 08:00 - 2013-06-12 15:38 - 00013727 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 4.AZ 11.06.2013.xlsx 2013-07-08 00:01 - 2011-08-09 19:41 - 00069888 _____ C:\Users\lisa\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-08 00:00 - 2013-07-07 21:14 - 00000000 ____D C:\ProgramData\Roxio 2013-07-07 23:23 - 2013-07-07 21:38 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Roxio 2013-07-07 23:06 - 2013-07-07 23:06 - 00000000 _____ C:\Users\lisa\AppData\Local\rx_image.Cache 2013-07-07 21:16 - 2013-07-07 21:16 - 00001416 _____ C:\Windows\xpsp1hfm.log 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\Sonic 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\InstallShield 2013-07-07 21:14 - 2013-07-07 21:14 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-07 21:12 - 2011-08-09 19:42 - 00000000 ___RD C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-07 20:35 - 2011-08-17 14:42 - 00000000 ____D C:\ProgramData\Nero 2013-07-07 20:27 - 2013-07-07 20:01 - 359799446 _____ (Roxio ) C:\Users\lisa\Downloads\roxiowoctrialv9dol_wtd.exe 2013-07-07 18:42 - 2013-07-07 18:42 - 00000271 _____ C:\Users\lisa\Documents\Best of 2013 CD 1 2013 07.07.2013.nra 2013-07-07 17:02 - 2013-07-07 17:02 - 00002682 _____ C:\Users\Public\Desktop\Nero StartSmart.lnk 2013-07-07 16:45 - 2013-07-07 16:31 - 207203576 _____ (Nero AG) C:\Users\lisa\Downloads\Nero-9.4.44.0b_update.exe 2013-07-07 16:24 - 2013-07-07 16:24 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec(1).exe 2013-07-07 16:03 - 2013-07-07 16:03 - 00205339 _____ C:\Users\lisa\Documents\nero 9 InfoTool.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec.exe 2013-07-07 14:49 - 2011-10-05 20:41 - 00000119 _____ C:\Users\lisa\AppData\Roaming\default.rss 2013-07-07 14:26 - 2013-07-07 14:10 - 21151576 _____ (Mozilla) C:\Users\lisa\Downloads\FirefoxSetup21.0.exe 2013-07-07 12:26 - 2013-07-07 12:26 - 00000000 _____ C:\t3l4.16 2013-07-07 12:22 - 2013-07-07 12:19 - 00000000 ____D C:\Users\lisa\Desktop\BitDefender Support Tool 2013-07-07 10:51 - 2013-07-06 12:31 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-07-07 10:49 - 2013-06-14 08:09 - 00003160 _____ C:\Windows\System32\Tasks\SidebarExecute 2013-07-07 10:43 - 2009-07-14 04:34 - 00000439 _____ C:\Windows\win.ini 2013-07-07 09:33 - 2013-07-06 11:47 - 00000000 ____D C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio 2013-07-07 09:27 - 2013-07-07 09:26 - 03517580 _____ C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio.zip 2013-07-06 14:32 - 2012-12-05 09:29 - 00003220 _____ C:\Windows\System32\Tasks\HPCeeScheduleForLISA-LISA$ 2013-07-06 14:32 - 2012-12-05 09:29 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForLISA-LISA$.job 2013-07-06 14:24 - 2012-08-05 13:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-06 14:24 - 2012-04-02 22:50 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-07-06 14:24 - 2011-08-17 13:22 - 00000000 ____D C:\Users\lisa\AppData\Local\Microsoft Help 2013-07-06 14:24 - 2011-08-09 19:28 - 00000000 ____D C:\Users\lisa 2013-07-06 14:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-07-06 13:28 - 2013-07-06 13:28 - 00000207 _____ C:\Windows\tweaking.com-regbackup-LISA-LISA-Microsoft-Windows-7-Home-Premium-(64-Bit).dat 2013-07-06 13:27 - 2013-07-06 13:27 - 00000000 ____D C:\RegBackup 2013-07-06 13:02 - 2011-08-10 09:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-07-06 13:02 - 2011-08-10 09:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-07-06 10:49 - 2012-12-27 16:01 - 00000000 ____D C:\Users\lisa\AppData\Local\Recovery Toolbox for Excel 2013-07-05 20:59 - 2013-07-05 20:59 - 01820782 _____ (Swearware) C:\Users\lisa\Downloads\Nicht bestätigt 957803.crdownload 2013-07-04 14:08 - 2013-07-04 14:08 - 00002964 _____ C:\Windows\System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} 2013-07-04 14:08 - 2013-07-04 14:06 - 00003195 _____ C:\Windows\IE10_main.log 2013-07-04 14:05 - 2013-07-04 14:05 - 00861184 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe 2013-07-04 12:59 - 2013-07-04 12:59 - 00347424 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\MicrosoftFixit.IEPerformance.MATSKB.Run.exe 2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-03 18:19 - 2013-07-03 18:19 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup (1).exe 2013-07-03 17:38 - 2011-05-07 16:21 - 00000000 ____D C:\Program Files (x86)\HP Games 2013-07-03 17:13 - 2013-07-03 13:16 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForlisa.job 2013-07-03 17:10 - 2011-12-25 11:54 - 00000000 ____D C:\Program Files\Google 2013-07-03 17:10 - 2011-12-25 11:50 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-03 17:05 - 2012-04-08 00:16 - 00000000 ____D C:\Program Files (x86)\Skin Pack 2013-07-03 17:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-07-03 16:54 - 2011-09-30 21:55 - 00000000 ____D C:\Users\lisa\AppData\Local\Google 2013-07-03 16:44 - 2013-06-14 08:07 - 00000000 ____D C:\ProgramData\AVG2013 2013-07-03 15:55 - 2013-06-12 16:38 - 00012808 _____ C:\Users\lisa\Documents\Staatliches Hochbauamt Traunstein 4. AZ 11.06.2013 Seite 2.xlsx 2013-07-03 15:44 - 2013-07-03 15:41 - 00014593 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Kostenangebot Hochstaufen Kaserne 03.07.2013.xlsx 2013-07-03 13:17 - 2013-07-03 13:17 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForlisa 2013-07-02 18:38 - 2013-07-02 18:38 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup.exe 2013-07-02 18:38 - 2013-06-16 20:09 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Systweak 2013-07-02 18:38 - 2012-04-08 00:18 - 00000000 ____D C:\Windows\Neon Skin Pack 2013-07-02 18:38 - 2011-08-20 11:10 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2013-07-02 18:38 - 2011-05-07 16:41 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard 2013-07-02 18:38 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-02 18:38 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Portable Devices 2013-07-02 18:38 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-02 18:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing 2013-07-02 18:37 - 2013-06-30 17:41 - 00000000 ____D C:\Program Files (x86)\FromDocToPDF_65EI 2013-07-02 18:37 - 2013-06-10 12:59 - 00000000 ____D C:\Program Files\iTunes 2013-07-02 18:37 - 2013-06-10 12:59 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-07-02 18:37 - 2013-06-10 10:07 - 00000000 ____D C:\Program Files (x86)\Video Download Converter 2013-07-02 18:37 - 2013-05-31 13:39 - 00000000 ____D C:\Program Files (x86)\QuickTime 2013-07-02 18:37 - 2013-01-05 16:52 - 00000000 ____D C:\Program Files (x86)\Steuersparer 2013 2013-07-02 18:37 - 2012-12-27 16:01 - 00000000 ____D C:\Program Files (x86)\Recovery Toolbox for Excel 2013-07-02 18:37 - 2012-11-15 21:11 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-07-02 18:37 - 2012-07-24 19:56 - 00000000 ____D C:\Program Files (x86)\Portrait Professional 10 Test 2013-07-02 18:37 - 2012-07-24 18:25 - 00000000 ____D C:\Program Files (x86)\PhotoScape 2013-07-02 18:37 - 2012-07-17 10:53 - 00000000 ____D C:\Program Files (x86)\iThmb Converter 2013-07-02 18:37 - 2012-05-30 09:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor 2013-07-02 18:37 - 2012-05-13 13:04 - 00000000 ____D C:\Program Files (x86)\Origin 2013-07-02 18:37 - 2012-04-15 18:36 - 00000000 ____D C:\Program Files (x86)\VideoPerformer 2013-07-02 18:37 - 2012-04-07 20:51 - 00000000 ____D C:\Program Files (x86)\YouTube Song Downloader 2013-07-02 18:37 - 2012-04-07 20:51 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-07-02 18:37 - 2012-04-02 22:50 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-07-02 18:37 - 2011-12-25 12:20 - 00000000 ____D C:\Program Files (x86)\IrfanView 2013-07-02 18:37 - 2011-12-24 19:57 - 00000000 ____D C:\Program Files\Paint.NET 2013-07-02 18:37 - 2011-12-03 22:38 - 00000000 ____D C:\Program Files\Bonjour 2013-07-02 18:37 - 2011-09-08 21:52 - 00000000 ____D C:\Program Files (x86)\Safari 2013-07-02 18:37 - 2011-08-17 13:50 - 00000000 ____D C:\Program Files (x86)\Microsoft Works 2013-07-02 18:37 - 2011-08-13 10:28 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-02 18:37 - 2011-07-10 18:20 - 00000000 ____D C:\Program Files (x86)\HP SimplePass 2011 2013-07-02 18:37 - 2011-07-10 18:19 - 00000000 ____D C:\Program Files\Common Files\AuthenTec 2013-07-02 18:36 - 2013-07-02 08:01 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000 2013-07-02 18:36 - 2013-07-01 08:52 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001 2013-07-02 18:36 - 2013-06-30 19:49 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-07-02 18:36 - 2013-01-21 21:12 - 00000000 ____D C:\Program Files (x86)\7-Zip 2013-07-02 18:36 - 2013-01-14 16:04 - 00000000 ____D C:\Program Files (x86)\AAVUpdateManager 2013-07-02 18:36 - 2013-01-06 18:03 - 00000000 ____D C:\KronosFaktura 2013-07-02 18:36 - 2012-07-13 14:54 - 00000000 ____D C:\Program Files (x86)\Dream Aquarium 2013-07-02 18:36 - 2012-05-27 14:05 - 00000000 ____D C:\Program Files (x86)\Desktop Media 2013-07-02 18:36 - 2012-05-21 11:52 - 00000000 ____D C:\Program Files (x86)\CD-LabelPrint 2013-07-02 18:36 - 2012-04-15 18:36 - 00000000 ____D C:\Program Files (x86)\AC3File 2013-07-02 18:36 - 2011-12-03 22:38 - 00000000 ____D C:\Program Files (x86)\Bonjour 2013-07-02 18:36 - 2011-08-20 11:10 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2013-07-02 15:51 - 2013-07-02 15:51 - 00003108 _____ C:\Windows\System32\Tasks\RegClean Pro 2013-07-02 15:40 - 2013-07-02 08:50 - 00000000 ____D C:\Users\TEMP.lisa-lisa.002 2013-07-02 11:36 - 2013-07-02 10:25 - 00001081 _____ C:\Users\lisa\Desktop\Continue Download Helper Installation.lnk 2013-07-02 11:25 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-07-02 08:50 - 2013-07-02 08:50 - 00000000 _____ C:\Windows\setuperr.log 2013-07-02 08:03 - 2013-07-02 08:03 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Bitdefender 2013-07-02 08:02 - 2013-07-02 08:02 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\VirtualStore 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Vorlagen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Startmenü 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Netzwerkumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Lokale Einstellungen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Eigene Dateien 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Druckumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Musik 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Bilder 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Verlauf 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Anwendungsdaten 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Anwendungsdaten 2013-07-01 21:23 - 2013-06-17 09:13 - 00000000 ____D C:\Users\TEMP.lisa-lisa 2013-07-01 16:27 - 2013-07-01 16:27 - 00040844 _____ C:\Users\lisa\Documents\Addition.txt 2013-07-01 10:46 - 2013-07-01 10:46 - 00297313 _____ C:\Users\lisa\Documents\Malwarebytes Anti-Malware 1.pptx 2013-07-01 08:54 - 2013-07-01 08:54 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Bitdefender 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Vorlagen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Startmenü 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Netzwerkumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Lokale Einstellungen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Eigene Dateien 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Druckumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Musik 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Bilder 2013-06-30 19:44 - 2013-06-30 19:38 - 00029898 _____ C:\Users\lisa\Documents\cc_20130630_190551.reg 2013-06-30 19:04 - 2013-06-30 18:58 - 00005852 _____ C:\Users\lisa\Documents\cc_20130630_185817.reg 2013-06-30 18:18 - 2013-06-30 18:18 - 00003028 _____ C:\Windows\System32\Tasks\{787FA377-97EF-4F2B-9BF9-0CA25C8C8488} 2013-06-30 17:44 - 2013-06-30 17:44 - 00003164 _____ C:\Windows\System32\Tasks\{88BB02C1-26F5-42AF-AC8C-B574552B0CF9} 2013-06-30 17:43 - 2013-06-30 17:43 - 00003164 _____ C:\Windows\System32\Tasks\{B7D53088-892F-40E5-A607-DFA653D1BA4F} 2013-06-30 16:18 - 2013-06-30 16:18 - 00000000 ____D C:\ProgramData\bdch 2013-06-30 11:37 - 2013-06-30 11:37 - 00003164 _____ C:\Windows\System32\Tasks\{111EF72A-8BCA-4E71-B1CF-403E0747619A} 2013-06-17 18:42 - 2013-06-17 18:42 - 00000176 _____ C:\Users\lisa\Documents\cc_20130617_184239.reg 2013-06-17 16:42 - 2013-06-17 16:40 - 00000429 _____ C:\Windows\system32\avgrep.txt 2013-06-17 14:53 - 2013-06-16 10:00 - 00000000 ____D C:\Windows\pss 2013-06-17 13:24 - 2013-06-17 13:23 - 00130010 _____ C:\Users\lisa\Documents\cc_20130617_132325.reg 2013-06-17 13:18 - 2012-09-09 19:38 - 00000000 ____D C:\Users\lisa\Tracing 2013-06-17 11:45 - 2013-06-17 11:44 - 00000634 _____ C:\Users\lisa\Desktop\ccsetup402 - Verknüpfung.lnk 2013-06-17 05:22 - 2013-06-17 05:22 - 00003024 _____ C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2013-06-16 20:54 - 2013-06-16 20:49 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300 (1).exe 2013-06-16 20:50 - 2013-06-16 20:43 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300.exe 2013-06-16 17:28 - 2011-05-07 16:19 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-06-16 17:22 - 2011-02-10 21:23 - 00000000 ____D C:\SWSetup 2013-06-16 13:15 - 2011-08-09 19:28 - 00000000 ____D C:\Users\lisa\AppData\Local\VirtualStore 2013-06-16 12:56 - 2013-06-16 12:54 - 03758488 _____ (Systweak Inc ) C:\Users\lisa\Downloads\rcpsetup_3335_ggde.exe 2013-06-15 22:40 - 2013-06-15 22:39 - 00393048 _____ (Softonic ) C:\Users\lisa\Downloads\SoftonicDownloader_fuer_hijackthis.exe 2013-06-15 22:07 - 2013-01-21 21:15 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-06-15 21:38 - 2013-06-15 21:00 - 13503464 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\mseinstall.exe 2013-06-15 19:19 - 2013-06-15 19:15 - 00000000 ____D C:\Program Files (x86)\GUM8868.tmp 2013-06-15 19:15 - 2013-06-15 19:15 - 04167680 _____ C:\Program Files (x86)\GUT8869.tmp 2013-06-15 19:06 - 2013-06-15 19:02 - 00781800 _____ (Google Inc.) C:\Users\lisa\Downloads\ChromeSetup.exe 2013-06-15 18:17 - 2013-06-02 20:12 - 00000000 ____D C:\Program Files (x86)\MiPony 2013-06-15 18:01 - 2013-06-15 18:01 - 00002994 _____ C:\Windows\System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} 2013-06-15 11:36 - 2012-02-08 09:27 - 00000000 ____D C:\ProgramData\BDLogging ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-13 00:30 ==================== End Of Log ============================ |
15.07.2013, 10:48 | #4 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar?Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-07-2013 Ran by lisa at 2013-07-15 11:44:54 Running from C:\Users\lisa\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Update for Microsoft Office 2007 (KB2508958) (x32) "Nero SoundTrax Help (x32 Version: 4.0.15.0) 7-Zip 9.22beta (x32) AAVUpdateManager (x32 Version: 18.00.0000) AC3File 0.7b (x32 Version: 0.7b) Adobe AIR (x32 Version: 3.7.0.2090) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620) Adobe Shockwave Player 12.0 (x32 Version: 12.0.3.133) Advertising Center (x32 Version: 0.0.0.2) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95) Age of Mythology (x32) AMD APP SDK Runtime (Version: 2.4.595.9) AMD Fuel (Version: 2011.0401.2259.39449) AMD System Monitor (x32 Version: 1.0.5) AMD VISION Engine Control Center (x32 Version: 2011.0401.2259.39449) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.0.136) Ashampoo Photo Commander 9 v.9.4.2 (x32 Version: 9.4.2) ATI Catalyst Install Manager (Version: 3.0.820.0) AuthenTec TrueAPI (Version: 1.2.1.33) AutoUpdate (x32 Version: 1.1) avast! Ad Blocker (x32 Version: 1.0.0.0) avast! Free Antivirus (x32 Version: 8.0.1489.0) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95) Big Rig Europe (x32 Version: 2.2.0.95) Bing Bar (x32 Version: 7.0.610.0) Blasterball 3 (x32 Version: 2.2.0.95) Bonjour (Version: 3.0.0.10) Bounce Symphony (x32 Version: 2.2.0.95) Cake Mania (x32 Version: 2.2.0.95) Canon Easy-PhotoPrint EX (x32) Canon Easy-WebPrint EX (x32) Canon iP2500 series Canon iP2500 series Benutzerregistrierung (x32) Canon MP830 Canon Utilities Easy-PhotoPrint (x32) Canon Utilities Easy-PrintToolBox (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0401.2259.39449) Catalyst Control Center InstallProxy (x32 Version: 2011.0401.2259.39449) Catalyst Control Center Localization All (x32 Version: 2011.0401.2259.39449) CCC Help Chinese Standard (x32 Version: 2011.0401.2258.39449) CCC Help Chinese Traditional (x32 Version: 2011.0401.2258.39449) CCC Help Czech (x32 Version: 2011.0401.2258.39449) CCC Help Danish (x32 Version: 2011.0401.2258.39449) CCC Help Dutch (x32 Version: 2011.0401.2258.39449) CCC Help English (x32 Version: 2011.0401.2258.39449) CCC Help Finnish (x32 Version: 2011.0401.2258.39449) CCC Help French (x32 Version: 2011.0401.2258.39449) CCC Help German (x32 Version: 2011.0401.2258.39449) CCC Help Greek (x32 Version: 2011.0401.2258.39449) CCC Help Hungarian (x32 Version: 2011.0401.2258.39449) CCC Help Italian (x32 Version: 2011.0401.2258.39449) CCC Help Japanese (x32 Version: 2011.0401.2258.39449) CCC Help Korean (x32 Version: 2011.0401.2258.39449) CCC Help Norwegian (x32 Version: 2011.0401.2258.39449) CCC Help Polish (x32 Version: 2011.0401.2258.39449) CCC Help Portuguese (x32 Version: 2011.0401.2258.39449) CCC Help Russian (x32 Version: 2011.0401.2258.39449) CCC Help Spanish (x32 Version: 2011.0401.2258.39449) CCC Help Swedish (x32 Version: 2011.0401.2258.39449) CCC Help Thai (x32 Version: 2011.0401.2258.39449) CCC Help Turkish (x32 Version: 2011.0401.2258.39449) ccc-utility64 (Version: 2011.0401.2259.39449) CD-LabelPrint (x32) Chuzzle Deluxe (x32 Version: 2.2.0.95) Crazy Chicken Kart 2 (x32 Version: 2.2.0.95) CyberLink YouCam (x32 Version: 3.5.1.3922) D3DX10 (x32 Version: 15.4.2368.0902) DC Software (x32) defender Total Security 2012 (Version: 15.0.27) Desktop Media 1.7 (x32) Die Sims™ 3 (x32 Version: 1.50.56) Die Sims™ 3 Design-Garten-Accessoires (x32 Version: 7.0.55) Die Sims™ 3 Einfach tierisch (x32 Version: 10.0.96) Die*Sims*Mittelalter (x32 Version: 1.0.0) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95) DivX (x32 Version: 6.0) DolbyFiles (x32 Version: 2.0) Dream Aquarium (x32) Energy Star Digital Logo (x32 Version: 1.0.1) ESET Online Scanner v3 (x32) ESU for Microsoft Windows 7 (x32 Version: 1.0.0) Evernote v. 4.2.2 (x32 Version: 4.2.2.3979) Facebook Messenger 2.1.4814.0 (x32 Version: 2.1.4814.0) Farm Frenzy (x32 Version: 2.2.0.95) FATE (x32 Version: 2.2.0.95) Fishdom (x32 Version: 2.2.0.95) Foxit Reader (x32 Version: 4.3.1.118) Free 3GP Video Converter version 5.0.6.221 (x32 Version: 5.0.6.221) Free YouTube to iPhone Converter version 2.11.17.221 (x32 Version: 2.11.17.221) Google Chrome (HKCU Version: 28.0.1500.72) Google Update Helper (x32 Version: 1.3.21.153) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000) High-Definition Video Playback (x32 Version: 11.1.11500.4.273) HP 3D DriveGuard (Version: 4.1.9.1) HP Auto (Version: 1.0.12935.3667) HP Client Services (Version: 1.1.12938.3539) HP Connection Manager (x32 Version: 4.1.22.1) HP Customer Experience Enhancements (x32 Version: 6.0.1.7) HP Documentation (x32 Version: 1.2.0.0) HP DVB-T TV Tuner 8.0.64.43 (x32 Version: 8.0.64.43) HP Games (x32 Version: 1.0.2.4) HP On Screen Display (x32 Version: 1.3.5) HP Power Manager (x32 Version: 1.4.4) HP Quick Launch (x32 Version: 2.5.2) HP Setup (x32 Version: 8.6.4530.3651) HP Setup Manager (x32 Version: 1.1.13253.3682) HP SimplePass 2011 (x32 Version: 5.1.0.495) HP Software Framework (x32 Version: 4.1.13.1) HP Support Assistant (x32 Version: 7.0.39.15) HTC BMP USB Driver (x32 Version: 1.0.5375) iCloud (Version: 2.1.2.8) iDevice Manager (x32 Version: 1.3.2.0) IDT Audio (x32 Version: 1.0.6329.0) ImagXpress (x32 Version: 7.0.74.0) Internet Explorer (Enable DEP) Internet Manager (x32 Version: 22.001.18.00.748) Internet-TV für Windows Media Center (x32 Version: 4.2.2.0) IPTInstaller (x32 Version: 4.0.8) IrfanView (remove only) (x32 Version: 4.36) iThmb Converter Version 1.73.0.539 (x32 Version: 1.73.0.539) iTunes (Version: 11.0.4.4) Java 7 Update 25 (64-bit) (Version: 7.0.250) Jewel Quest Solitaire (x32 Version: 2.2.0.95) Junk Mail filter update (x32 Version: 15.4.3502.0922) K-Lite Codec Pack 6.0.4 (Basic) (x32 Version: 6.0.4) KronosFaktura 8.05 (x32) Mah Jong Medley (x32 Version: 2.2.0.95) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) McAfee Security Scan Plus (x32 Version: 2.0.189.1) Menu Templates - Starter Kit (x32 Version: 9.6.0.0) Mesh Runtime (x32 Version: 15.4.5722.2) Messenger Companion (x32 Version: 15.4.3502.0922) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320) Microsoft .NET Framework 4 Extended (Version: 4.0.30320) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Games for Windows - LIVE (x32 Version: 3.0.89.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.0.19.0) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42) Microsoft Security Client (Version: 4.2.0223.1) Microsoft Security Essentials (Version: 4.2.223.1) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0) MobileMe Control Panel (Version: 3.1.8.0) MotoCast (x32 Version: 2.0.31) MotoHelper MergeModules (x32 Version: 1.2.0) Motorola Device Manager (x32 Version: 2.2.35) Motorola Device Software Update (x32 Version: 1.0.41) MOTOROLA MEDIA LINK (x32 Version: 1.9.0002.0) Motorola Mobile Drivers Installation 5.9.0 (Version: 5.9.0) Movie Templates - Starter Kit (x32 Version: 9.6.0.0) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) MSXML4 Parser (x32 Version: 1.0.0) Mystery P.I. - The London Caper (x32 Version: 2.2.0.95) Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95) NAVIGON Fresh 3.4.1 (x32 Version: 3.4.1) Neon Skin Pack 2.0-X86 (x32 Version: 2.0-X86) Nero 10 Movie ThemePack Basic (x32 Version: 10.6.10000.1.0) Nero 9 (x32) Nero Audio Pack 1 (x32 Version: 11.0.11500.110.0) Nero BackItUp (x32 Version: 5.2.22001) Nero BackItUp and Burn (x32 Version: 1.2.0031) Nero Burning ROM Help (x32 Version: 9.2.2.100) Nero BurnRights (x32 Version: 2.99.6.100) Nero BurnRights (x32 Version: 3.4.13.100) Nero BurnRights (x32 Version: 3.6.26001) Nero ControlCenter (x32 Version: 9.0.0.1) Nero Core Components 10 (x32 Version: 2.0.20100.9.13) Nero Core Components 11 (x32 Version: 11.0.16300.1.23) Nero CoverDesigner (x32 Version: 1.0.0.0) Nero CoverDesigner Help (x32 Version: 4.2.2.100) Nero Disc Copy Gadget (x32 Version: 2.4.43.0) Nero Disc Copy Gadget Help (x32 Version: 2.2.7.0) Nero DiscSpeed (x32 Version: 4.99.5.105) Nero DiscSpeed (x32 Version: 5.4.13.100) Nero DriveSpeed (x32 Version: 3.99.5.105) Nero DriveSpeed (x32 Version: 4.4.12.100) Nero Express (x32 Version: 9.6.16000) Nero Express Help (x32 Version: 9.2.2.100) Nero InfoTool (x32 Version: 5.99.5.105) Nero InfoTool (x32 Version: 6.4.12.100) Nero Installer (x32 Version: 4.4.9.0) Nero Kwik Media (x32 Version: 1.14.12000.23.100) Nero Kwik Media (x32 Version: 10.6.12300) Nero Kwik Media Help (CHM) (x32 Version: 11.0.10300) Nero Live (x32 Version: 1.2.4.0) Nero Live Help (x32 Version: 1.0.162.0) Nero Move it (x32 Version: 1.2.0.0) Nero Move it (x32) Nero Move it Help (x32 Version: 1.0.0.0) Nero PhotoSnap (x32 Version: 2.4.29.0) Nero PhotoSnap Help (x32 Version: 1.53.2.0) Nero Prerequisite Installer 1.0 (x32 Version: 11.0.11500) Nero Recode (x32 Version: 4.4.40.0) Nero Recode Help (x32 Version: 3.53.0.0) Nero Rescue Agent (x32 Version: 2.4.14.100) Nero RescueAgent (x32 Version: 2.6.26000) Nero RescueAgent Help (x32 Version: 1.99.0.1) Nero SharedVideoCodecs (x32 Version: 1.0.11500.1.5) Nero ShowTime (x32 Version: 4.99.0.0) Nero ShowTime (x32 Version: 5.4.27.100) Nero StartSmart (x32 Version: 9.4.40.100) Nero StartSmart Help (x32 Version: 9.2.4.100) Nero Update (x32 Version: 11.0.11500.28.0) Nero Vision (x32 Version: 0.0.0.2) Nero Vision (x32 Version: 6.4.19.100) Nero WaveEditor (x32 Version: 5.4.39.0) Nero WaveEditor Help (x32 Version: 5.0.15.0) nero.prerequisites.msi (x32 Version: 11.0.20010) NeroBurningROM (x32 Version: 1.0.0.0) NeroExpress (x32 Version: 1.0.0.0) NeroLiveGadget (x32 Version: 1.0.8.100) NeroLiveGadget Help (x32 Version: 1.0.6.100) neroxml (x32 Version: 1.0.0) Origin (x32 Version: 8.5.2.23) Paint.NET v3.5.10 (Version: 3.60.0) Pando Media Booster (x32 Version: 2.6.0.8) Penguins! (x32 Version: 2.2.0.95) PhotoScape (x32) PIXMA Extended Survey Program (x32) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95) Polar Bowler (x32 Version: 2.2.0.95) Portrait Professional 10.8 Test (x32 Version: 10.8) QuickTime (x32 Version: 7.74.80.86) Ralink RT5390 802.11b/g/n WiFi Adapter (x32 Version: 3.02.02.0) Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011) Realtek PCIE Card Reader (x32 Version: 6.1.7600.80) Recovery Manager (x32 Version: 2.0.0) Recovery Toolbox for Excel 2.0 (x32) Revo Uninstaller 1.93 (x32 Version: 1.93) Safari (x32 Version: 5.34.57.2) Samsung Kies (x32 Version: 2.3.2.12064_9) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.6.0) Secunia PSI (3.0.0.7009) (x32 Version: 3.0.0.7009) Slingo Deluxe (x32 Version: 2.2.0.95) Sony Ericsson Update Engine (x32 Version: 2.13.6.201305161305) Sony PC Companion 2.10.155 (x32 Version: 2.10.155) SoundTrax (x32 Version: 4.4.39.0) StarMoney (x32 Version: 3.0.2.50) StarMoney Business 5.0 (x32 Version: 5.0) Steuer-Sparer 2011 (x32 Version: 16.16) Steuer-Sparer 2012 (x32 Version: 17.11) Steuersparer 2013 (x32 Version: 20.00.8137) Synaptics TouchPad Driver (Version: 15.3.29.0) Trojan Remover 6.8.7 (x32 Version: 6.8.7) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3000.132) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) Update Installer for WildTangent Games App (x32) Utility Chest Firefox Toolbar (x32) Utility Chest Internet Explorer Toolbar (x32) Validity WBF DDK (Version: 4.3.205.0) Video Download Converter version 1.0.0.0 (x32 Version: 1.0.0.0) VideoPerformer (x32) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) VLC media player 2.0.7 (x32 Version: 2.0.7) Wedding Dash (x32 Version: 2.2.0.95) WildTangent Games App (x32 Version: 4.0.10.2) Windows 7 Upgrade Advisor (x32 Version: 2.0.5000.0) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3502.0922) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) WMV9/VC-1 Video Playback (Version: 1.00.0000) YouTube Song Downloader (x32 Version: 8.2) Zuma Deluxe (x32 Version: 2.2.0.95) ==================== Restore Points ========================= 12-07-2013 07:16:30 Installed Java 7 Update 25 (64-bit) 12-07-2013 21:00:18 Windows Update 13-07-2013 18:02:52 Windows Update 13-07-2013 18:40:04 SPTD setup V1.74 14-07-2013 17:00:09 Windows-Sicherung ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-07-09 09:54 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {010D9916-4941-49A5-9024-089B7FCFFDFA} - System32\Tasks\User_Feed_Synchronization-{CD07F68E-55A8-423B-91F6-DEB030304064} => C:\Windows\system32\msfeedssync.exe [2013-06-02] (Microsoft Corporation) Task: {0A645107-32E2-44F9-AEE3-5A9ED980F284} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Total Care Tune-Up => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe [2012-09-27] (Hewlett-Packard Company) Task: {0F4CE7E5-23CF-4BC8-9A51-B661E5669215} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {1114018D-734D-49D2-900B-DAAA23A34ED8} - System32\Tasks\HPCeeScheduleForLISA-LISA$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {146CF4BD-1A94-4B5E-A961-B5CDBCF83915} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-03-22] (CyberLink) Task: {16B5E95F-ED17-4812-B343-9E82BBCFCC4A} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation) Task: {1EF97B79-C558-42F8-B196-8D1EFC0983AA} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {1FE65070-0AAC-4ECD-956A-47BB04BFBFAD} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {2095EE74-43BB-4094-ABAC-6B3CE5164161} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe No File Task: {296FBB7A-E4AB-4CFB-9F93-009A43248B2F} - System32\Tasks\MotoCast Update => C:\Program Files (x86)\Motorola Mobility\MotoCast\LiveUpdate\MotoCastUpdate.exe [2012-07-24] () Task: {3ACA1A4B-8A20-42E6-9D0E-70F213988B30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {454959D6-1CC3-4C25-83DC-0C59C015F44D} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {51C1519C-F72D-4EBD-8431-D20FEA691F11} - System32\Tasks\lisa NBAgent => C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe No File Task: {53C86463-8FC9-41CA-B4A6-493A9E07104E} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe No File Task: {5C6E47BF-6673-44E9-9643-EA9D5BDED0E4} - System32\Tasks\Google Updater and Installer => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {652F9DBA-622F-4C77-A8BD-BF8FB5CD7621} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company) Task: {6DED4C69-EE1B-4C9C-B193-7986E52963E5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {72DA8517-98DC-49E7-9652-BBF5FE68FD9C} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe No File Task: {7435C28C-4390-44D2-81D9-78187CFD3FC4} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-24] (Facebook Inc.) Task: {7439D853-5AD9-4372-AB6C-79A318AE395D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-13] (Adobe Systems Incorporated) Task: {7CA5B2D5-8F8D-4055-A0E2-57FA24DBED9D} - System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} => C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe [2013-07-04] (Microsoft Corporation) Task: {84610A55-9124-4735-8ABC-F61A0CD18608} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {8D71C492-D709-46F5-AF76-29CF6D94E8C9} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {93D2D9DD-F492-439C-9704-91523C972A98} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {94E636B5-54B2-4E9E-B840-A0C5DA703381} - System32\Tasks\HPCeeScheduleForlisa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {9658F7BB-0CFF-4767-AE0D-97EBBCE13275} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {96735A06-4936-4FB2-BA1A-6586FC2A3E3D} - System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} => C:\Users\lisa\AppData\Local\Google\Chrome\Application\chrome.exe [2013-07-12] (Google Inc.) Task: {A0A898A3-DB4C-4ECE-952D-93F8A801423B} - System32\Tasks\{7E2CEA61-0064-468F-ADDD-624FD640EDB3} => C:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {A61DDCF1-BE41-4620-B0A8-D1AC86C9230C} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] () Task: {A7996645-A293-45B5-95DB-85E1D2F02733} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation) Task: {B217468D-7F84-4DD6-B840-44B625931830} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-06-10] (Hewlett-Packard) Task: {B256938D-768E-4E98-A51C-C386187A8DA5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-25] (Google Inc.) Task: {B6BA3D91-305A-4BD3-855D-956B7295BB67} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {B6EE1EB3-0706-4344-ACC1-FBF208B35666} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-25] (Google Inc.) Task: {B94CBAD4-9224-4D52-9DC5-A69CCD002B44} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-21] (Microsoft Corporation) Task: {C880D89C-81F3-45B8-96C4-F2FFBA2CCE5C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe [2010-11-21] (Microsoft Corporation) Task: {C9F6ED7B-1A7F-4F64-A983-5CCE91B0910B} - System32\Tasks\QtraxPlayer => C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe [2013-05-13] (Microsoft Corporation) Task: {CD374EAF-FEB1-48F8-9B6C-E5F566F26EF2} - System32\Tasks\ArcSoft Connect Daemon => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27] (ArcSoft Inc.) Task: {D3A046B4-0111-412D-9CD9-47C0E2745D61} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {D8D3A660-8E0F-4AC1-B7E6-D29D0F0DB044} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {DB830A1D-0B00-4F78-8433-9C7762B84AE1} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-24] (Facebook Inc.) Task: {DCA153BC-3BEC-4DF8-8371-6F5A74D97665} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {DCBD84E6-D8C6-48F7-B388-A7ACD1555F23} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software) Task: {E6DC5D33-2488-41F1-8DB2-B7ECFE58E4FF} - System32\Tasks\{B6BC40F4-E674-4E0D-A84D-DE0213E07159} => C:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {EDAC8BA6-0FEA-48A7-A740-E5E2318AE281} - System32\Tasks\WPD\SqmUpload_S-1-5-21-2416322015-1569237049-636745652-1002 => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {F6A6366C-0E9C-437B-9528-6C4F2BC00460} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe No File Task: {FC4F7B39-3AF6-4ECA-B949-C157E5D138B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA.job => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForLISA-LISA$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\HPCeeScheduleForlisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Faulty Device Manager Devices ============= Name: Anwenderinfrarotgeräte Description: Anwenderinfrarotgeräte Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: circlass Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (07/14/2013 11:55:50 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC System errors: ============= Error: (07/15/2013 11:25:49 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd trufos Error: (07/15/2013 11:25:49 AM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80070420" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (07/15/2013 11:24:36 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp Listener Adapter" ist vom Dienst "Net.Tcp Port Sharing Service" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (07/15/2013 11:24:36 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe Listener Adapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (07/15/2013 11:24:36 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq Listener Adapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (07/15/2013 11:24:04 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Internet Manager. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/15/2013 11:24:04 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. OUC erreicht. Error: (07/15/2013 11:22:59 AM) (Source: BugCheck) (User: ) Description: 0x0000007f (0x0000000000000008, 0x0000000080050033, 0x00000000000006f8, 0xfffff88001451cc4)C:\Windows\MEMORY.DMP071513-36613-01 Error: (07/15/2013 11:22:59 AM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 15.07.2013 um 11:20:53 unerwartet heruntergefahren. Error: (07/15/2013 09:08:07 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd trufos Microsoft Office Sessions: ========================= Error: (08/26/2012 09:29:32 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 280 seconds with 240 seconds of active time. This session ended with a crash. Error: (08/18/2011 00:11:32 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 5782 seconds with 60 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-07-09 09:54:09.730 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Uninstall.exe\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-09 09:54:09.637 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Uninstall.exe\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-09 09:27:00.529 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 08:53:42.005 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 08:09:40.450 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:58:00.693 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:40:05.516 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:31:50.057 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:14:39.395 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:07:01.741 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 38% Total physical RAM: 5610.9 MB Available physical RAM: 3476.52 MB Total Pagefile: 11219.99 MB Available Pagefile: 8444.71 MB Total Virtual: 819 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:682.92 GB) (Free:524.32 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:15.42 GB) (Free:1.33 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)] Drive f: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32 (Disk=0 Partition=4) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: D7B2E5D6) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=683 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ==================== End Of Log ============================ |
15.07.2013, 11:19 | #5 |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.07.2013, 12:00 | #6 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar?Code:
ATTFilter # AdwCleaner v2.303 - Datei am 15/07/2013 um 12:46:12 erstellt # Aktualisiert am 08/06/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : lisa - LISA-LISA # Bootmodus : Normal # Ausgeführt unter : G:\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\Askcom.xml Gelöscht mit Neustart : C:\Users\lisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkjoiggkbepedjmjjbhhecjiimlckcga Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\Users\lisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkjoiggkbepedjmjjbhhecjiimlckcga Ordner Gelöscht : C:\Users\lisa\AppData\Local\Temp\AskSearch ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\fkjoiggkbepedjmjjbhhecjiimlckcga Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{13119113-0854-469D-807A-171568457991} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{33119133-0854-469D-807A-171568457991} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23119123-0854-469D-807A-171568457991} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fkjoiggkbepedjmjjbhhecjiimlckcga Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v22.0 (de) Datei : C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\prefs.js Gelöscht : user_pref("extensions.mywebsearch.prevDefaultEngine", "Google"); Gelöscht : user_pref("extensions.mywebsearch.prevKwdEnabled", true); Gelöscht : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q="); Gelöscht : user_pref("extensions.mywebsearch.prevSelectedEngine", "Ask.com"); Gelöscht : user_pref("extensions.toolbar.mindspark._49Members_.homepage", "hxxp://home.tb.ask.com/index.jhtml?p[...] Gelöscht : user_pref("keyword.URL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=011AB152-6CF6-4676[...] -\\ Google Chrome v28.0.1500.72 Datei : C:\Users\lisa\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [2810 octets] - [15/07/2013 12:46:12] ########## EOF - C:\AdwCleaner[S1].txt - [2870 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.0.9 (07.12.2013:2) OS: Windows 7 Home Premium x64 Ran by lisa on 15.07.2013 at 13:03:57,40 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\performersoft llc Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\systweak Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\office\powerpoint\addins\babylonofficeaddin.officeaddin Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\office\word\addins\babylonofficeaddin.officeaddin Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasmancs Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\askpartnercobrandingtool_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\askpartnercobrandingtool_rasmancs Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{840CBA39-00BA-4137-9607-C2B1076209F6} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{84dc9f6c-c9a5-4c64-ab67-d6ef60f963c8} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{840CBA39-00BA-4137-9607-C2B1076209F6} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{84dc9f6c-c9a5-4c64-ab67-d6ef60f963c8} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58F7B5CA-1162-42E8-8BBC-D543B4EDD780} ~~~ Files Successfully deleted: [File] "C:\Program Files (x86)\adobe\reader 10.0\reader\plug_ins\babylon\babylonrpi.api" Successfully deleted: [File] "C:\Users\lisa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\babylon.lnk" ~~~ Folders Successfully deleted: [Folder] "C:\Users\lisa\AppData\Roaming\systweak" Successfully deleted: [Folder] "C:\Users\lisa\appdata\local\iac" Successfully deleted: [Folder] "C:\Users\lisa\appdata\local\utilitychest_49" Successfully deleted: [Folder] "C:\Users\lisa\appdata\locallow\utilitychest_49" Successfully deleted: [Folder] "C:\Program Files (x86)\lyricsfinder" Successfully deleted: [Folder] "C:\Program Files (x86)\utilitychest_49" Successfully deleted: [Folder] "C:\Program Files (x86)\video download converter" Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{7FF8E44C-711E-4F38-802E-51F96F6F44B2} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{80FEA29E-5D68-4C42-9BD5-C0E56AAE8C2D} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{B1FAA66D-D904-4281-BD2E-EE9150A2E361} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{B9C81A33-A766-4FFA-B0EC-940466292242} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{CF9FD8B7-9FED-4AF2-9BA8-1D5319B0D3A1} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{EC15B68B-6816-4ED0-9BF6-BCC7B1097587} Successfully deleted: [Empty Folder] C:\Users\lisa\appdata\local\{FF367AD6-BB10-4AA7-BB00-3C9D0B6B4FBB} ~~~ FireFox Successfully deleted: [File] C:\Users\lisa\AppData\Roaming\mozilla\firefox\profiles\hkgxigbt.default\invalidprefs.js Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\49ffxtbr@utilitychest_49.com Successfully deleted the following from C:\Users\lisa\AppData\Roaming\mozilla\firefox\profiles\hkgxigbt.default\prefs.js user_pref("extensions.toggle.hmpgUrl", "hxxp://search.toggle.com/?lang=en&cid=c2a242b1"); user_pref("extensions.toggle.kw_url", "hxxp://search.toggle.com/?lang=en&cid=c2a242b1&q="); user_pref("extensions.toggle.newTabUrl", "hxxp://search.toggle.com/?lang=en&cid=c2a242b1"); user_pref("extensions.toolbar.mindspark._49Members_.hp.enabled", false); user_pref("extensions.toolbar.mindspark._49Members_.initialized", true); user_pref("extensions.toolbar.mindspark._49Members_.installation.contextKey", ""); user_pref("extensions.toolbar.mindspark._49Members_.installation.installDate", "2013071321"); user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerId", "^ZO^xdm071^YYA^de"); user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerSubId", "EL_UT_GER_189"); user_pref("extensions.toolbar.mindspark._49Members_.installation.success", true); user_pref("extensions.toolbar.mindspark._49Members_.installation.toolbarId", "011AB152-6CF6-4676-B8FF-5063541F1C9B"); user_pref("extensions.toolbar.mindspark._49Members_.lastActivePing", "1373872623487"); user_pref("extensions.toolbar.mindspark._49Members_.options.defaultSearch", true); user_pref("extensions.toolbar.mindspark._49Members_.options.homePageEnabled", true); user_pref("extensions.toolbar.mindspark._49Members_.options.keywordEnabled", true); user_pref("extensions.toolbar.mindspark._49Members_.options.tabEnabled", true); user_pref("extensions.toolbar.mindspark._49Members_.searchHistory", "Nero Audio CD Buffer underrun 21 verhindert! CD läuft nicht beim abspielen?"); user_pref("extensions.toolbar.mindspark._49Members_.weather.location", "10001"); user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.hp.lastGuardTime", 1361370769); user_pref("extensions.toolbar.mindspark._4zMembers_.hp.numGuards", 1); user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", ""); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013061122"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm255^S05931^de"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CMXf5_OD2bcCFVMetAod_nsAwA"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "BE58A421-DFF8-4387-900C-E3393174224A"); user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001"); user_pref("extensions.toolbar.mindspark.hp.enabled", false); user_pref("extensions.toolbar.mindspark.hp.enabled.guid", ""); user_pref("extensions.toolbar.mindspark.lastInstalled", "utilitychest@mindspark.com"); Emptied folder: C:\Users\lisa\AppData\Roaming\mozilla\firefox\profiles\hkgxigbt.default\minidumps [1 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 15.07.2013 at 13:17:46,77 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
15.07.2013, 12:49 | #7 |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? und das frische FRST log? Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.07.2013, 13:05 | #8 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2013 Ran by lisa (administrator) on 15-07-2013 14:02:21 Running from C:\Users\lisa\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (AMD) C:\Windows\system32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe () C:\Program Files (x86)\AAVUpdateManager\aavus.exe (ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\2.0.189\SSScheduler.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Nero AG) C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Facebook) C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe (Star Finanz - Software Entwicklung und Vertriebs GmbH) C:\Program Files (x86)\StarMoney Business 5.0\ouservice\StarMoneyOnlineUpdate.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Farbar) C:\Users\lisa\Downloads\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-03-11] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [Easy-PrintToolBox] - C:\Program Files (x86)\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon [398944 2006-10-17] (CANON INC.) HKLM\...\Run: [BDAgent] - "C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe" [1091200 2013-06-14] (Bitdefender) HKLM\...\Run: [MSC] - "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1281512 2013-01-27] (Microsoft Corporation) HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [Google Update] - "C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-09-30] (Google Inc.) HKCU\...\Run: [AlcoholAutomount] - "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\axcmd.exe" /automount [203928 2009-09-30] (Alcohol Soft Development Team) HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-01] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [QuickTime Task] - "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [103992 2011-05-23] (Hewlett-Packard Development Company L.P.) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AppleSyncNotifier] - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2011-11-02] (Apple Inc.) HKLM-x32\...\Run: [ISUSPM Startup] - C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [221184 2006-08-25] (Macrovision Corporation) HKLM-x32\...\Run: [ISUSScheduler] - "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start [81920 2006-08-25] (Macrovision Corporation) HKLM-x32\...\Run: [avast] - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot [1653008 2013-06-17] (Simply Super Software) HKLM-x32\...\Run: [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\2.0.189\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk ShortcutTarget: Facebook Messenger.lnk -> C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook) Startup: C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch URLSearchHook: (No Name) - {7a55cbb2-2b2e-4a41-9de1-6ac5d2c2be0a} - No File StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SearchScopes: HKLM - {840CBA39-00BA-4137-9607-C2B1076209F6} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - {4F0EDE64-5B3B-4425-8598-3C26DF5FF8BF} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ*´Ñ;áa´[¦†8*º~RÙxœòÜ8'£-)x*ä* URL = BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: avast! Ad Blocker - {FFCB3198-32F3-4E8B-9539-4324694ED663} - C:\Program Files (x86)\AVAST Software\avast! Ad Blocker IE\Adblocker64.dll (AVAST Software) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) BHO-x32: avast! Ad Blocker - {FFCB3198-32F3-4E8B-9539-4324694ED663} - C:\Program Files (x86)\AVAST Software\avast! Ad Blocker IE\Adblocker32.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default FF NewTab: hxxp://www.google.com/firefox FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com/firefox FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @Nero.com/KM - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @UtilityChest_49.com/Plugin - C:\Program Files (x86)\UtilityChest_49\bar\1.bin\NP49Stub.dll No File FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll No File FF Plugin-x32: @videolan.org/vlc,version=2.0.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\lisa\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\lisa\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\lisa\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\ask-web-search.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\bingp.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\BrowserDefender.xml FF SearchPlugin: C:\Users\lisa\AppData\Roaming\Mozilla\Firefox\Profiles\hkgxigbt.default\searchplugins\toggle.xml FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com FF Extension: adblocker - C:\Program Files (x86)\Mozilla Firefox\extensions\adblocker@avast.com.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files\T-Mobile\InternetManager_H\OCx64\addon FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ Chrome: ======= CHR StartMenuInternet: Google Chrome - "C:\Users\lisa\AppData\Local\Google\Chrome\Application\chrome.exe" ==================== Services (Whitelisted) ================= R2 AAV UpdateService; C:\Program Files (x86)\AAVUpdateManager\aavus.exe [128296 2008-10-24] () R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-04-01] (Advanced Micro Devices, Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [344928 2011-01-28] () R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [99936 2006-11-10] () S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-08-13] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\2.0.189\McCHSvc.exe [227232 2010-09-02] (McAfee, Inc.) R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [120728 2012-10-02] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () S3 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [75384 2013-06-14] (Bitdefender) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1227800 2013-04-18] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [659992 2013-04-18] (Secunia) R2 StarMoney Business 5.0 OnlineUpdate; C:\Program Files (x86)\StarMoney Business 5.0\ouservice\StarMoneyOnlineUpdate.exe [699680 2012-12-21] (Star Finanz - Software Entwicklung und Vertriebs GmbH) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 Update Server; C:\Program Files\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe [466736 2011-11-04] (BitDefender) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe [67904 2013-06-14] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe [1957912 2013-06-14] (Bitdefender) S2 RoxLiveShare9; "C:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe" [x] ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-07-10] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-07-10] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-07-10] () R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [705552 2013-06-14] (BitDefender) R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2013-06-14] (BitDefender) S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [587024 2013-06-14] (BitDefender) R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93160 2013-06-14] (BitDefender LLC) R0 bdfsfltr; C:\Windows\System32\DRIVERS\bdfsfltr.sys [442088 2012-02-07] (BitDefender) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-23] (BitDefender LLC) S3 bdsandbox; C:\Windows\system32\drivers\bdsandbox.sys [79952 2012-02-07] (BitDefender SRL) R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [103944 2010-01-19] (BitDefender) R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16512 2011-08-13] (Bytemobile, Inc.) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [212992 2011-08-13] (Huawei Technologies Co., Ltd.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-04-18] (Secunia) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39552 2011-08-13] (Bytemobile, Inc.) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39552 2011-08-13] (Bytemobile, Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [329800 2011-11-04] (BitDefender S.R.L.) S3 catchme; \??\C:\Uninstall.exe\catchme.sys [x] S3 CpqDfw; system32\drivers\CpqDfw.sys [x] S3 motusbdevice; system32\DRIVERS\motusbdevice.sys [x] S0 sptd; No ImagePath ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-15 14:01 - 2013-07-15 14:01 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64(1).exe 2013-07-15 13:17 - 2013-07-15 13:17 - 00007629 _____ C:\Users\lisa\Desktop\JRT.txt 2013-07-15 13:03 - 2013-07-15 13:03 - 00003028 _____ C:\Windows\System32\Tasks\{509CC469-901B-4600-83EE-4CC7D97147E4} 2013-07-15 12:46 - 2013-07-15 12:52 - 00002935 _____ C:\AdwCleaner[S1].txt 2013-07-15 12:38 - 2013-07-15 12:38 - 00662345 _____ C:\Users\lisa\Downloads\adwcleaner.exe 2013-07-15 11:41 - 2013-07-15 11:41 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64.exe 2013-07-15 11:41 - 2013-07-15 11:41 - 00000000 ____D C:\FRST 2013-07-15 11:22 - 2013-07-15 11:22 - 00417464 _____ C:\Windows\Minidump\071513-36613-01.dmp 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer.exe 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer(1).exe 2013-07-15 10:03 - 2013-07-15 10:06 - 00008192 ___SH C:\Users\lisa\AppData\Roaming\Thumbs.db 2013-07-14 23:46 - 2013-07-14 23:46 - 00208783 _____ C:\Users\lisa\Documents\InfoTool Nero 9.txt 2013-07-14 23:13 - 2013-07-14 23:13 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0(1).exe 2013-07-14 23:12 - 2013-07-14 23:12 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0.exe 2013-07-14 17:09 - 2013-07-14 17:10 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(2).exe 2013-07-13 22:59 - 2013-07-13 23:01 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(1).exe 2013-07-13 22:43 - 2013-07-13 22:45 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup.exe 2013-07-13 21:36 - 2013-07-13 21:36 - 00000000 ____D C:\Users\lisa\Documents\Alcohol 120% 2013-07-13 21:32 - 2013-07-13 21:32 - 00001140 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk 2013-07-13 21:32 - 2013-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft 2013-07-13 20:44 - 2013-07-13 20:44 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-07-13 20:40 - 2013-07-13 20:40 - 00503352 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys.vir 2013-07-13 20:29 - 2013-07-13 20:35 - 90917712 _____ (Apple Inc.) C:\Users\lisa\Downloads\iTunes64Setup.exe 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Canneverbe Limited 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\ProgramData\Canneverbe Limited 2013-07-13 19:56 - 2013-07-13 20:48 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP 2013-07-13 19:53 - 2013-07-13 19:54 - 05257392 _____ (Canneverbe Limited ) C:\Users\lisa\Downloads\cdbxp_setup_4.5.1.3868.exe 2013-07-13 19:03 - 2013-07-13 19:07 - 42411544 _____ (Opera Software ASA) C:\Users\lisa\Downloads\Opera_15.0.1147.138_Setup.exe 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Users\lisa\AppData\Local\Secunia PSI 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-07-13 18:58 - 2013-07-13 18:58 - 03270960 _____ (Secunia) C:\Users\lisa\Downloads\PSISetup7009.exe 2013-07-13 18:52 - 2013-07-13 18:53 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Users\lisa\Documents\Microsoft_Security_Essentials_4.2.233 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-07-13 11:43 - 2013-07-13 11:49 - 00001099 _____ C:\Users\Public\Desktop\Trojan Remover.lnk 2013-07-13 11:43 - 2013-07-13 11:49 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\Documents\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-13 11:41 - 2013-07-13 11:42 - 20553576 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup687.exe 2013-07-13 11:39 - 2013-07-13 11:40 - 10273304 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup-9x.exe 2013-07-12 14:38 - 2013-07-15 11:22 - 773705530 _____ C:\Windows\MEMORY.DMP 2013-07-12 09:17 - 2013-07-12 09:16 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-12 09:17 - 2013-07-12 09:16 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-12 09:17 - 2013-07-12 09:16 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-12 09:06 - 2013-07-12 09:11 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64.exe 2013-07-11 23:17 - 2013-07-11 23:17 - 09833328 _____ (SurfRight B.V.) C:\Users\lisa\Downloads\HitmanPro_x64.exe 2013-07-11 22:46 - 2013-07-11 22:46 - 01069944 _____ (Solid State Networks) C:\Users\lisa\Downloads\install_reader11_de_mssd_aaa_aih.exe 2013-07-11 08:20 - 2013-07-11 08:20 - 00000000 ____D C:\Program Files (x86)\AVAST Software 2013-07-10 15:23 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-10 15:23 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-10 15:23 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-10 15:23 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-10 15:23 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-10 15:23 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-10 15:23 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-10 15:23 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-10 15:23 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-10 15:23 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-10 13:18 - 2013-07-14 06:20 - 00002075 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2013-07-10 13:18 - 2013-07-10 13:18 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-07-10 13:18 - 2013-05-09 10:59 - 00033400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys 2013-07-10 13:17 - 2013-07-15 11:27 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-07-10 13:17 - 2013-07-10 13:46 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2013-07-10 13:17 - 2013-07-10 13:18 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2013-07-10 13:17 - 2013-07-10 13:18 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys 2013-07-10 13:17 - 2013-07-10 13:17 - 00000000 ____D C:\Program Files\AVAST Software 2013-07-10 13:17 - 2013-05-09 10:59 - 00080816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00072016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00065336 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2013-07-10 13:17 - 2013-05-09 10:59 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2013-07-10 13:17 - 2013-05-09 10:58 - 00287840 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2013-07-10 13:17 - 2013-05-09 10:58 - 00041664 _____ (AVAST Software) C:\Windows\avastSS.scr 2013-07-10 13:16 - 2013-07-10 13:17 - 00000000 ____D C:\ProgramData\AVAST Software 2013-07-10 07:54 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-10 07:54 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-10 07:54 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-10 07:54 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-10 07:48 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-10 07:47 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-10 07:47 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-09 15:36 - 2013-07-09 16:18 - 117478104 _____ C:\Users\lisa\Downloads\avast_free_antivirus_setup_8.0.1489.300.exe 2013-07-09 13:15 - 2013-07-09 13:15 - 00001051 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk 2013-07-09 11:58 - 2013-07-09 13:18 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64(1).exe 2013-07-09 11:36 - 2013-07-09 11:36 - 00448512 _____ (OldTimer Tools) C:\Users\lisa\Downloads\TFC.exe 2013-07-09 11:14 - 2013-07-09 11:14 - 00001069 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-09 11:14 - 2013-07-09 11:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-09 11:14 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-09 10:44 - 2013-07-09 11:06 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-07-09 10:35 - 2013-07-09 13:08 - 190843736 _____ (Emsisoft GmbH ) C:\Users\lisa\Downloads\EmsisoftAntiMalwareSetup.exe 2013-07-09 10:27 - 2013-07-09 10:28 - 00002654 _____ C:\DelFix.txt 2013-07-09 08:08 - 2013-07-09 08:08 - 00044446 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 1. AZ Schießanlage Scheibenwerkstatt 25.08.2013.xlsx 2013-07-09 08:06 - 2013-07-09 08:25 - 00046081 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standortsch. Nesselgraben 07.07.2013.xlsx 2013-07-09 08:05 - 2013-07-09 08:05 - 00044448 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standort sch. Nesselgraben 07.07.2013.xlsx 2013-07-09 07:49 - 2013-07-09 07:49 - 00023136 _____ C:\Users\lisa\Downloads\MC900349383.WMF 2013-07-09 07:49 - 2013-07-09 07:49 - 00006358 _____ C:\Users\lisa\Downloads\MC900312702.WMF 2013-07-08 09:33 - 2013-07-08 09:33 - 00012870 _____ C:\Program Files (x86)\Schön Kliniken B`gadener Land Kostenangebot Station 3 30.08.2012 1.xlsx 2013-07-07 23:06 - 2013-07-07 23:06 - 00000000 _____ C:\Users\lisa\AppData\Local\rx_image.Cache 2013-07-07 21:38 - 2013-07-07 23:23 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Roxio 2013-07-07 21:16 - 2013-07-07 21:16 - 00001416 _____ C:\Windows\xpsp1hfm.log 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\Sonic 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\InstallShield 2013-07-07 21:16 - 2006-10-27 12:21 - 00058880 _____ (Sonic Solutions) C:\Windows\system32\Drivers\RxFilter.sys 2013-07-07 21:16 - 2006-10-26 19:04 - 00121856 _____ (Sonic Solutions) C:\Windows\system32\cdrtc.dll 2013-07-07 21:16 - 2006-10-26 19:04 - 00096256 _____ (Sonic Solutions) C:\Windows\system32\cdral.dll 2013-07-07 21:14 - 2013-07-08 00:00 - 00000000 ____D C:\ProgramData\Roxio 2013-07-07 21:14 - 2013-07-07 21:14 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-07 20:01 - 2013-07-07 20:27 - 359799446 _____ (Roxio ) C:\Users\lisa\Downloads\roxiowoctrialv9dol_wtd.exe 2013-07-07 18:42 - 2013-07-07 18:42 - 00000271 _____ C:\Users\lisa\Documents\Best of 2013 CD 1 2013 07.07.2013.nra 2013-07-07 17:02 - 2013-07-07 17:02 - 00002682 _____ C:\Users\Public\Desktop\Nero StartSmart.lnk 2013-07-07 16:31 - 2013-07-07 16:45 - 207203576 _____ (Nero AG) C:\Users\lisa\Downloads\Nero-9.4.44.0b_update.exe 2013-07-07 16:24 - 2013-07-07 16:24 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec(1).exe 2013-07-07 16:03 - 2013-07-07 16:03 - 00205339 _____ C:\Users\lisa\Documents\nero 9 InfoTool.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec.exe 2013-07-07 14:10 - 2013-07-07 14:26 - 21151576 _____ (Mozilla) C:\Users\lisa\Downloads\FirefoxSetup21.0.exe 2013-07-07 12:42 - 2013-07-15 11:45 - 00038531 _____ C:\Users\lisa\Downloads\Addition.txt 2013-07-07 12:26 - 2013-07-07 12:26 - 00000000 _____ C:\t3l4.16 2013-07-07 12:19 - 2013-07-07 12:22 - 00000000 ____D C:\Users\lisa\Desktop\BitDefender Support Tool 2013-07-07 09:26 - 2013-07-07 09:27 - 03517580 _____ C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio.zip 2013-07-06 13:28 - 2013-07-06 13:28 - 00000207 _____ C:\Windows\tweaking.com-regbackup-LISA-LISA-Microsoft-Windows-7-Home-Premium-(64-Bit).dat 2013-07-06 13:27 - 2013-07-06 13:27 - 00000000 ____D C:\RegBackup 2013-07-06 12:31 - 2013-07-07 10:51 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-07-06 11:47 - 2013-07-07 09:33 - 00000000 ____D C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio 2013-07-05 20:59 - 2013-07-09 09:56 - 00000000 ____D C:\Windows\erdnt 2013-07-05 20:59 - 2013-07-05 20:59 - 01820782 _____ (Swearware) C:\Users\lisa\Downloads\Nicht bestätigt 957803.crdownload 2013-07-04 14:13 - 2013-07-15 09:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-04 14:08 - 2013-07-04 14:08 - 00002964 _____ C:\Windows\System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} 2013-07-04 14:06 - 2013-07-04 14:08 - 00003195 _____ C:\Windows\IE10_main.log 2013-07-04 14:05 - 2013-07-04 14:05 - 00861184 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe 2013-07-04 12:59 - 2013-07-04 12:59 - 00347424 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\MicrosoftFixit.IEPerformance.MATSKB.Run.exe 2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-03 18:19 - 2013-07-03 18:19 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup (1).exe 2013-07-03 15:41 - 2013-07-03 15:44 - 00014593 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Kostenangebot Hochstaufen Kaserne 03.07.2013.xlsx 2013-07-03 13:17 - 2013-07-03 13:17 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForlisa 2013-07-03 13:16 - 2013-07-03 17:13 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForlisa.job 2013-07-02 21:28 - 2013-07-13 09:47 - 00002360 _____ C:\Users\lisa\Desktop\Google Chrome.lnk 2013-07-02 18:38 - 2013-07-02 18:38 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup.exe 2013-07-02 15:51 - 2013-07-02 15:51 - 00003108 _____ C:\Windows\System32\Tasks\RegClean Pro 2013-07-02 15:37 - 2013-07-15 09:06 - 00029654 _____ C:\Windows\PFRO.log 2013-07-02 10:25 - 2013-07-02 11:36 - 00001081 _____ C:\Users\lisa\Desktop\Continue Download Helper Installation.lnk 2013-07-02 08:50 - 2013-07-15 12:53 - 00003226 _____ C:\Windows\setupact.log 2013-07-02 08:50 - 2013-07-02 15:40 - 00000000 ____D C:\Users\TEMP.lisa-lisa.002 2013-07-02 08:50 - 2013-07-02 08:50 - 00000000 _____ C:\Windows\setuperr.log 2013-07-02 08:03 - 2013-07-02 08:03 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Bitdefender 2013-07-02 08:02 - 2013-07-02 08:02 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\VirtualStore 2013-07-02 08:01 - 2013-07-02 18:36 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Vorlagen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Startmenü 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Netzwerkumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Lokale Einstellungen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Eigene Dateien 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Druckumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Musik 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Bilder 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Verlauf 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Anwendungsdaten 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Anwendungsdaten 2013-07-02 08:01 - 2012-02-26 21:28 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Macromedia 2013-07-02 08:01 - 2011-08-18 13:48 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\Microsoft Help 2013-07-01 21:13 - 2013-07-09 10:27 - 00000000 ____D C:\Windows\ERUNT 2013-07-01 16:27 - 2013-07-01 16:27 - 00040844 _____ C:\Users\lisa\Documents\Addition.txt 2013-07-01 10:46 - 2013-07-01 10:46 - 00297313 _____ C:\Users\lisa\Documents\Malwarebytes Anti-Malware 1.pptx 2013-07-01 08:54 - 2013-07-01 08:54 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Bitdefender 2013-07-01 08:52 - 2013-07-02 18:36 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Vorlagen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Startmenü 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Netzwerkumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Lokale Einstellungen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Eigene Dateien 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Druckumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Musik 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Bilder 2013-07-01 08:52 - 2012-02-26 21:28 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Macromedia 2013-06-30 19:49 - 2013-07-02 18:36 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-06-30 19:38 - 2013-06-30 19:44 - 00029898 _____ C:\Users\lisa\Documents\cc_20130630_190551.reg 2013-06-30 18:58 - 2013-06-30 19:04 - 00005852 _____ C:\Users\lisa\Documents\cc_20130630_185817.reg 2013-06-30 18:18 - 2013-06-30 18:18 - 00003028 _____ C:\Windows\System32\Tasks\{787FA377-97EF-4F2B-9BF9-0CA25C8C8488} 2013-06-30 17:44 - 2013-06-30 17:44 - 00003164 _____ C:\Windows\System32\Tasks\{88BB02C1-26F5-42AF-AC8C-B574552B0CF9} 2013-06-30 17:43 - 2013-06-30 17:43 - 00003164 _____ C:\Windows\System32\Tasks\{B7D53088-892F-40E5-A607-DFA653D1BA4F} 2013-06-30 17:41 - 2013-07-02 18:37 - 00000000 ____D C:\Program Files (x86)\FromDocToPDF_65EI 2013-06-30 16:18 - 2013-06-30 16:18 - 00000000 ____D C:\ProgramData\bdch 2013-06-30 11:37 - 2013-06-30 11:37 - 00003164 _____ C:\Windows\System32\Tasks\{111EF72A-8BCA-4E71-B1CF-403E0747619A} 2013-06-17 18:53 - 2013-07-15 12:52 - 02056210 _____ C:\Windows\WindowsUpdate.log 2013-06-17 18:42 - 2013-06-17 18:42 - 00000176 _____ C:\Users\lisa\Documents\cc_20130617_184239.reg 2013-06-17 16:40 - 2013-06-17 16:42 - 00000429 _____ C:\Windows\system32\avgrep.txt 2013-06-17 13:23 - 2013-06-17 13:24 - 00130010 _____ C:\Users\lisa\Documents\cc_20130617_132325.reg 2013-06-17 11:44 - 2013-06-17 11:45 - 00000634 _____ C:\Users\lisa\Desktop\ccsetup402 - Verknüpfung.lnk 2013-06-17 09:13 - 2013-07-01 21:23 - 00000000 ____D C:\Users\TEMP.lisa-lisa 2013-06-17 05:22 - 2013-06-17 05:22 - 00003024 _____ C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2013-06-16 20:49 - 2013-06-16 20:54 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300 (1).exe 2013-06-16 20:43 - 2013-06-16 20:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300.exe 2013-06-16 12:54 - 2013-06-16 12:56 - 03758488 _____ (Systweak Inc ) C:\Users\lisa\Downloads\rcpsetup_3335_ggde.exe 2013-06-16 10:00 - 2013-06-17 14:53 - 00000000 ____D C:\Windows\pss 2013-06-15 22:39 - 2013-06-15 22:40 - 00393048 _____ (Softonic ) C:\Users\lisa\Downloads\SoftonicDownloader_fuer_hijackthis.exe 2013-06-15 21:53 - 2013-07-13 18:53 - 00001912 _____ C:\Windows\epplauncher.mif 2013-06-15 21:00 - 2013-06-15 21:38 - 13503464 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\mseinstall.exe 2013-06-15 19:15 - 2013-06-15 19:19 - 00000000 ____D C:\Program Files (x86)\GUM8868.tmp 2013-06-15 19:15 - 2013-06-15 19:15 - 04167680 _____ C:\Program Files (x86)\GUT8869.tmp 2013-06-15 19:02 - 2013-06-15 19:06 - 00781800 _____ (Google Inc.) C:\Users\lisa\Downloads\ChromeSetup.exe 2013-06-15 18:01 - 2013-06-15 18:01 - 00002994 _____ C:\Windows\System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} ==================== One Month Modified Files and Folders ======= 2013-07-15 14:01 - 2013-07-15 14:01 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64(1).exe 2013-07-15 13:43 - 2011-09-30 21:55 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA.job 2013-07-15 13:35 - 2011-12-25 11:53 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-15 13:34 - 2012-04-08 12:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-15 13:32 - 2011-11-04 15:06 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-07-15 13:32 - 2011-08-13 11:08 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-07-15 13:17 - 2013-07-15 13:17 - 00007629 _____ C:\Users\lisa\Desktop\JRT.txt 2013-07-15 13:03 - 2013-07-15 13:03 - 00003028 _____ C:\Windows\System32\Tasks\{509CC469-901B-4600-83EE-4CC7D97147E4} 2013-07-15 13:03 - 2009-07-14 06:45 - 00031856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-15 13:03 - 2009-07-14 06:45 - 00031856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-15 12:54 - 2011-12-25 11:53 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-15 12:54 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-15 12:53 - 2013-07-02 08:50 - 00003226 _____ C:\Windows\setupact.log 2013-07-15 12:52 - 2013-07-15 12:46 - 00002935 _____ C:\AdwCleaner[S1].txt 2013-07-15 12:52 - 2013-06-17 18:53 - 02056210 _____ C:\Windows\WindowsUpdate.log 2013-07-15 12:42 - 2013-01-01 21:34 - 00000000 ____D C:\Users\lisa\AppData\Roaming\dvdcss 2013-07-15 12:42 - 2012-05-27 14:14 - 00000000 ____D C:\Users\lisa\AppData\Roaming\vlc 2013-07-15 12:38 - 2013-07-15 12:38 - 00662345 _____ C:\Users\lisa\Downloads\adwcleaner.exe 2013-07-15 12:36 - 2011-05-07 16:30 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-07-15 11:45 - 2013-07-07 12:42 - 00038531 _____ C:\Users\lisa\Downloads\Addition.txt 2013-07-15 11:41 - 2013-07-15 11:41 - 01777839 _____ (Farbar) C:\Users\lisa\Downloads\FRST64.exe 2013-07-15 11:41 - 2013-07-15 11:41 - 00000000 ____D C:\FRST 2013-07-15 11:27 - 2013-07-10 13:17 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-07-15 11:22 - 2013-07-15 11:22 - 00417464 _____ C:\Windows\Minidump\071513-36613-01.dmp 2013-07-15 11:22 - 2013-07-12 14:38 - 773705530 _____ C:\Windows\MEMORY.DMP 2013-07-15 11:22 - 2012-07-03 09:31 - 00000000 ____D C:\Windows\Minidump 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer.exe 2013-07-15 10:17 - 2013-07-15 10:17 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\lisa\Downloads\SpyHunter-Installer(1).exe 2013-07-15 10:08 - 2011-11-30 01:16 - 00000000 ____D C:\Program Files (x86)\StarMoney Business 5.0 2013-07-15 10:06 - 2013-07-15 10:03 - 00008192 ___SH C:\Users\lisa\AppData\Roaming\Thumbs.db 2013-07-15 09:06 - 2013-07-04 14:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-15 09:06 - 2013-07-02 15:37 - 00029654 _____ C:\Windows\PFRO.log 2013-07-14 23:55 - 2013-04-24 23:45 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job 2013-07-14 23:46 - 2013-07-14 23:46 - 00208783 _____ C:\Users\lisa\Documents\InfoTool Nero 9.txt 2013-07-14 23:21 - 2012-08-05 13:44 - 00001107 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-14 23:13 - 2013-07-14 23:13 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0(1).exe 2013-07-14 23:12 - 2013-07-14 23:12 - 00280368 _____ (Mozilla) C:\Users\lisa\Downloads\Firefox Setup Stub 22.0.exe 2013-07-14 21:53 - 2011-08-09 19:42 - 00003930 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{CD07F68E-55A8-423B-91F6-DEB030304064} 2013-07-14 17:10 - 2013-07-14 17:09 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(2).exe 2013-07-14 06:20 - 2013-07-10 13:18 - 00002075 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2013-07-14 01:43 - 2011-09-30 21:55 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job 2013-07-13 23:01 - 2013-07-13 22:59 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup(1).exe 2013-07-13 22:45 - 2013-07-13 22:43 - 02828552 _____ (AVAST Software) C:\Users\lisa\Downloads\avast-browser-cleanup.exe 2013-07-13 21:36 - 2013-07-13 21:36 - 00000000 ____D C:\Users\lisa\Documents\Alcohol 120% 2013-07-13 21:32 - 2013-07-13 21:32 - 00001140 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk 2013-07-13 21:32 - 2013-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft 2013-07-13 21:25 - 2012-07-11 12:21 - 00638061 _____ C:\Users\lisa\Documents\iTunes-Diagnose.spx 2013-07-13 20:49 - 2011-08-11 13:17 - 00000376 _____ C:\Users\lisa\AppData\Roamingprivacy.xml 2013-07-13 20:48 - 2013-07-13 19:56 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP 2013-07-13 20:48 - 2012-05-21 14:19 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-13 20:48 - 2012-05-21 14:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 20:44 - 2013-07-13 20:44 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-07-13 20:44 - 2013-06-10 12:59 - 00001743 _____ C:\Users\Public\Desktop\iTunes.lnk 2013-07-13 20:40 - 2013-07-13 20:40 - 00503352 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys.vir 2013-07-13 20:35 - 2013-07-13 20:29 - 90917712 _____ (Apple Inc.) C:\Users\lisa\Downloads\iTunes64Setup.exe 2013-07-13 20:06 - 2011-08-17 13:21 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Canneverbe Limited 2013-07-13 19:57 - 2013-07-13 19:57 - 00000000 ____D C:\ProgramData\Canneverbe Limited 2013-07-13 19:54 - 2013-07-13 19:53 - 05257392 _____ (Canneverbe Limited ) C:\Users\lisa\Downloads\cdbxp_setup_4.5.1.3868.exe 2013-07-13 19:19 - 2012-05-27 14:14 - 00001026 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-07-13 19:16 - 2011-05-07 16:30 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2013-07-13 19:16 - 2011-05-07 16:20 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-07-13 19:15 - 2012-04-08 12:26 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-13 19:15 - 2012-04-08 12:26 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-13 19:15 - 2011-08-18 08:20 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-13 19:07 - 2013-07-13 19:03 - 42411544 _____ (Opera Software ASA) C:\Users\lisa\Downloads\Opera_15.0.1147.138_Setup.exe 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Users\lisa\AppData\Local\Secunia PSI 2013-07-13 18:59 - 2013-07-13 18:59 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-07-13 18:58 - 2013-07-13 18:58 - 03270960 _____ (Secunia) C:\Users\lisa\Downloads\PSISetup7009.exe 2013-07-13 18:53 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-07-13 18:53 - 2013-06-15 21:53 - 00001912 _____ C:\Windows\epplauncher.mif 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Users\lisa\Documents\Microsoft_Security_Essentials_4.2.233 2013-07-13 18:52 - 2013-07-13 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-07-13 18:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-07-13 11:49 - 2013-07-13 11:43 - 00001099 _____ C:\Users\Public\Desktop\Trojan Remover.lnk 2013-07-13 11:49 - 2013-07-13 11:43 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\Documents\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Simply Super Software 2013-07-13 11:43 - 2013-07-13 11:43 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-13 11:42 - 2013-07-13 11:41 - 20553576 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup687.exe 2013-07-13 11:40 - 2013-07-13 11:39 - 10273304 _____ (Simply Super Software ) C:\Users\lisa\Downloads\trjsetup-9x.exe 2013-07-13 09:47 - 2013-07-02 21:28 - 00002360 _____ C:\Users\lisa\Desktop\Google Chrome.lnk 2013-07-13 01:38 - 2011-09-30 21:55 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA 2013-07-13 01:38 - 2011-09-30 21:55 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core 2013-07-12 23:09 - 2011-08-21 09:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-12 20:30 - 2011-12-25 11:53 - 00004102 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-12 20:30 - 2011-12-25 11:53 - 00003850 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-12 17:23 - 2013-01-07 19:59 - 00000000 ____D C:\Program Files (x86)\HTC 2013-07-12 10:29 - 2012-05-27 14:51 - 00000000 ____D C:\Windows\System32\Tasks\Games 2013-07-12 09:16 - 2013-07-12 09:17 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2013-07-12 09:16 - 2013-07-12 09:17 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-07-12 09:16 - 2013-07-12 09:17 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-07-12 09:16 - 2011-05-07 16:39 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll 2013-07-12 09:16 - 2011-05-07 16:39 - 00000000 ____D C:\Program Files\Java 2013-07-12 09:11 - 2013-07-12 09:06 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64.exe 2013-07-11 23:17 - 2013-07-11 23:17 - 09833328 _____ (SurfRight B.V.) C:\Users\lisa\Downloads\HitmanPro_x64.exe 2013-07-11 22:46 - 2013-07-11 22:46 - 01069944 _____ (Solid State Networks) C:\Users\lisa\Downloads\install_reader11_de_mssd_aaa_aih.exe 2013-07-11 08:20 - 2013-07-11 08:20 - 00000000 ____D C:\Program Files (x86)\AVAST Software 2013-07-11 08:03 - 2007-01-02 03:25 - 00000000 ____D C:\Windows\Panther 2013-07-11 08:02 - 2009-07-14 06:45 - 00312288 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 08:01 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 08:01 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-10 13:46 - 2013-07-10 13:17 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2013-07-10 13:18 - 2013-07-10 13:18 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-07-10 13:18 - 2013-07-10 13:18 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-07-10 13:18 - 2013-07-10 13:17 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2013-07-10 13:18 - 2013-07-10 13:17 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys 2013-07-10 13:17 - 2013-07-10 13:17 - 00000000 ____D C:\Program Files\AVAST Software 2013-07-10 13:17 - 2013-07-10 13:16 - 00000000 ____D C:\ProgramData\AVAST Software 2013-07-09 16:18 - 2013-07-09 15:36 - 117478104 _____ C:\Users\lisa\Downloads\avast_free_antivirus_setup_8.0.1489.300.exe 2013-07-09 13:18 - 2013-07-09 11:58 - 33150376 _____ (Oracle Corporation) C:\Users\lisa\Downloads\jre-7u25-windows-x64(1).exe 2013-07-09 13:15 - 2013-07-09 13:15 - 00001051 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk 2013-07-09 13:08 - 2013-07-09 10:35 - 190843736 _____ (Emsisoft GmbH ) C:\Users\lisa\Downloads\EmsisoftAntiMalwareSetup.exe 2013-07-09 11:36 - 2013-07-09 11:36 - 00448512 _____ (OldTimer Tools) C:\Users\lisa\Downloads\TFC.exe 2013-07-09 11:14 - 2013-07-09 11:14 - 00001069 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-09 11:14 - 2013-07-09 11:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-09 11:06 - 2013-07-09 10:44 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-07-09 10:28 - 2013-07-09 10:27 - 00002654 _____ C:\DelFix.txt 2013-07-09 10:27 - 2013-07-01 21:13 - 00000000 ____D C:\Windows\ERUNT 2013-07-09 09:58 - 2009-07-14 05:20 - 00000000 ___RD C:\Users\Default 2013-07-09 09:56 - 2013-07-05 20:59 - 00000000 ____D C:\Windows\erdnt 2013-07-09 09:54 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-07-09 08:55 - 2011-05-08 01:56 - 05948700 _____ C:\Windows\system32\perfh007.dat 2013-07-09 08:55 - 2011-05-08 01:56 - 01829660 _____ C:\Windows\system32\perfc007.dat 2013-07-09 08:55 - 2009-07-14 07:13 - 00006256 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-09 08:25 - 2013-07-09 08:06 - 00046081 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standortsch. Nesselgraben 07.07.2013.xlsx 2013-07-09 08:08 - 2013-07-09 08:08 - 00044446 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 1. AZ Schießanlage Scheibenwerkstatt 25.08.2013.xlsx 2013-07-09 08:05 - 2013-07-09 08:05 - 00044448 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Nachtrag Standort sch. Nesselgraben 07.07.2013.xlsx 2013-07-09 07:49 - 2013-07-09 07:49 - 00023136 _____ C:\Users\lisa\Downloads\MC900349383.WMF 2013-07-09 07:49 - 2013-07-09 07:49 - 00006358 _____ C:\Users\lisa\Downloads\MC900312702.WMF 2013-07-08 09:33 - 2013-07-08 09:33 - 00012870 _____ C:\Program Files (x86)\Schön Kliniken B`gadener Land Kostenangebot Station 3 30.08.2012 1.xlsx 2013-07-08 08:30 - 2011-08-13 11:38 - 00000000 ____D C:\Users\lisa\AppData\Local\CrashDumps 2013-07-08 08:00 - 2013-06-12 15:38 - 00013727 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt 4.AZ 11.06.2013.xlsx 2013-07-08 00:01 - 2011-08-09 19:41 - 00069888 _____ C:\Users\lisa\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-08 00:00 - 2013-07-07 21:14 - 00000000 ____D C:\ProgramData\Roxio 2013-07-07 23:23 - 2013-07-07 21:38 - 00000000 ____D C:\Users\lisa\AppData\Roaming\Roxio 2013-07-07 23:06 - 2013-07-07 23:06 - 00000000 _____ C:\Users\lisa\AppData\Local\rx_image.Cache 2013-07-07 21:16 - 2013-07-07 21:16 - 00001416 _____ C:\Windows\xpsp1hfm.log 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\Sonic 2013-07-07 21:16 - 2013-07-07 21:16 - 00000000 ____D C:\ProgramData\InstallShield 2013-07-07 21:14 - 2013-07-07 21:14 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-07 21:12 - 2011-08-09 19:42 - 00000000 ___RD C:\Users\lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-07 20:35 - 2011-08-17 14:42 - 00000000 ____D C:\ProgramData\Nero 2013-07-07 20:27 - 2013-07-07 20:01 - 359799446 _____ (Roxio ) C:\Users\lisa\Downloads\roxiowoctrialv9dol_wtd.exe 2013-07-07 18:42 - 2013-07-07 18:42 - 00000271 _____ C:\Users\lisa\Documents\Best of 2013 CD 1 2013 07.07.2013.nra 2013-07-07 17:02 - 2013-07-07 17:02 - 00002682 _____ C:\Users\Public\Desktop\Nero StartSmart.lnk 2013-07-07 16:45 - 2013-07-07 16:31 - 207203576 _____ (Nero AG) C:\Users\lisa\Downloads\Nero-9.4.44.0b_update.exe 2013-07-07 16:24 - 2013-07-07 16:24 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec(1).exe 2013-07-07 16:03 - 2013-07-07 16:03 - 00205339 _____ C:\Users\lisa\Documents\nero 9 InfoTool.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 00793536 _____ C:\Users\lisa\Downloads\UltimateCodec.exe 2013-07-07 14:49 - 2011-10-05 20:41 - 00000119 _____ C:\Users\lisa\AppData\Roaming\default.rss 2013-07-07 14:26 - 2013-07-07 14:10 - 21151576 _____ (Mozilla) C:\Users\lisa\Downloads\FirefoxSetup21.0.exe 2013-07-07 12:26 - 2013-07-07 12:26 - 00000000 _____ C:\t3l4.16 2013-07-07 12:22 - 2013-07-07 12:19 - 00000000 ____D C:\Users\lisa\Desktop\BitDefender Support Tool 2013-07-07 10:51 - 2013-07-06 12:31 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-07-07 10:49 - 2013-06-14 08:09 - 00003160 _____ C:\Windows\System32\Tasks\SidebarExecute 2013-07-07 10:43 - 2009-07-14 04:34 - 00000439 _____ C:\Windows\win.ini 2013-07-07 09:33 - 2013-07-06 11:47 - 00000000 ____D C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio 2013-07-07 09:27 - 2013-07-07 09:26 - 03517580 _____ C:\Users\lisa\Downloads\tweaking.com_windows_repair_aio.zip 2013-07-06 14:32 - 2012-12-05 09:29 - 00003220 _____ C:\Windows\System32\Tasks\HPCeeScheduleForLISA-LISA$ 2013-07-06 14:32 - 2012-12-05 09:29 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForLISA-LISA$.job 2013-07-06 14:24 - 2012-08-05 13:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-06 14:24 - 2012-04-02 22:50 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-07-06 14:24 - 2011-08-17 13:22 - 00000000 ____D C:\Users\lisa\AppData\Local\Microsoft Help 2013-07-06 14:24 - 2011-08-09 19:28 - 00000000 ____D C:\Users\lisa 2013-07-06 14:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-07-06 13:28 - 2013-07-06 13:28 - 00000207 _____ C:\Windows\tweaking.com-regbackup-LISA-LISA-Microsoft-Windows-7-Home-Premium-(64-Bit).dat 2013-07-06 13:27 - 2013-07-06 13:27 - 00000000 ____D C:\RegBackup 2013-07-06 13:02 - 2011-08-10 09:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-07-06 13:02 - 2011-08-10 09:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-07-06 10:49 - 2012-12-27 16:01 - 00000000 ____D C:\Users\lisa\AppData\Local\Recovery Toolbox for Excel 2013-07-05 20:59 - 2013-07-05 20:59 - 01820782 _____ (Swearware) C:\Users\lisa\Downloads\Nicht bestätigt 957803.crdownload 2013-07-04 14:08 - 2013-07-04 14:08 - 00002964 _____ C:\Windows\System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} 2013-07-04 14:08 - 2013-07-04 14:06 - 00003195 _____ C:\Windows\IE10_main.log 2013-07-04 14:05 - 2013-07-04 14:05 - 00861184 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe 2013-07-04 12:59 - 2013-07-04 12:59 - 00347424 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\MicrosoftFixit.IEPerformance.MATSKB.Run.exe 2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-03 18:19 - 2013-07-03 18:19 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup (1).exe 2013-07-03 17:38 - 2011-05-07 16:21 - 00000000 ____D C:\Program Files (x86)\HP Games 2013-07-03 17:13 - 2013-07-03 13:16 - 00000328 _____ C:\Windows\Tasks\HPCeeScheduleForlisa.job 2013-07-03 17:10 - 2011-12-25 11:54 - 00000000 ____D C:\Program Files\Google 2013-07-03 17:10 - 2011-12-25 11:50 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-03 17:05 - 2012-04-08 00:16 - 00000000 ____D C:\Program Files (x86)\Skin Pack 2013-07-03 17:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-07-03 16:54 - 2011-09-30 21:55 - 00000000 ____D C:\Users\lisa\AppData\Local\Google 2013-07-03 16:44 - 2013-06-14 08:07 - 00000000 ____D C:\ProgramData\AVG2013 2013-07-03 15:55 - 2013-06-12 16:38 - 00012808 _____ C:\Users\lisa\Documents\Staatliches Hochbauamt Traunstein 4. AZ 11.06.2013 Seite 2.xlsx 2013-07-03 15:44 - 2013-07-03 15:41 - 00014593 _____ C:\Users\lisa\Documents\Stattliches Hochbauamt Kostenangebot Hochstaufen Kaserne 03.07.2013.xlsx 2013-07-03 13:17 - 2013-07-03 13:17 - 00003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForlisa 2013-07-02 18:38 - 2013-07-02 18:38 - 00793536 _____ C:\Users\lisa\Downloads\ZipOpenerSetup.exe 2013-07-02 18:38 - 2012-04-08 00:18 - 00000000 ____D C:\Windows\Neon Skin Pack 2013-07-02 18:38 - 2011-08-20 11:10 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2013-07-02 18:38 - 2011-05-07 16:41 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard 2013-07-02 18:38 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-02 18:38 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Portable Devices 2013-07-02 18:38 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-02 18:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing 2013-07-02 18:37 - 2013-06-30 17:41 - 00000000 ____D C:\Program Files (x86)\FromDocToPDF_65EI 2013-07-02 18:37 - 2013-06-10 12:59 - 00000000 ____D C:\Program Files\iTunes 2013-07-02 18:37 - 2013-06-10 12:59 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-07-02 18:37 - 2013-05-31 13:39 - 00000000 ____D C:\Program Files (x86)\QuickTime 2013-07-02 18:37 - 2013-01-05 16:52 - 00000000 ____D C:\Program Files (x86)\Steuersparer 2013 2013-07-02 18:37 - 2012-12-27 16:01 - 00000000 ____D C:\Program Files (x86)\Recovery Toolbox for Excel 2013-07-02 18:37 - 2012-11-15 21:11 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-07-02 18:37 - 2012-07-24 19:56 - 00000000 ____D C:\Program Files (x86)\Portrait Professional 10 Test 2013-07-02 18:37 - 2012-07-24 18:25 - 00000000 ____D C:\Program Files (x86)\PhotoScape 2013-07-02 18:37 - 2012-07-17 10:53 - 00000000 ____D C:\Program Files (x86)\iThmb Converter 2013-07-02 18:37 - 2012-05-30 09:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor 2013-07-02 18:37 - 2012-05-13 13:04 - 00000000 ____D C:\Program Files (x86)\Origin 2013-07-02 18:37 - 2012-04-15 18:36 - 00000000 ____D C:\Program Files (x86)\VideoPerformer 2013-07-02 18:37 - 2012-04-07 20:51 - 00000000 ____D C:\Program Files (x86)\YouTube Song Downloader 2013-07-02 18:37 - 2012-04-07 20:51 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-07-02 18:37 - 2012-04-02 22:50 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-07-02 18:37 - 2011-12-25 12:20 - 00000000 ____D C:\Program Files (x86)\IrfanView 2013-07-02 18:37 - 2011-12-24 19:57 - 00000000 ____D C:\Program Files\Paint.NET 2013-07-02 18:37 - 2011-12-03 22:38 - 00000000 ____D C:\Program Files\Bonjour 2013-07-02 18:37 - 2011-09-08 21:52 - 00000000 ____D C:\Program Files (x86)\Safari 2013-07-02 18:37 - 2011-08-17 13:50 - 00000000 ____D C:\Program Files (x86)\Microsoft Works 2013-07-02 18:37 - 2011-08-13 10:28 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-02 18:37 - 2011-07-10 18:20 - 00000000 ____D C:\Program Files (x86)\HP SimplePass 2011 2013-07-02 18:37 - 2011-07-10 18:19 - 00000000 ____D C:\Program Files\Common Files\AuthenTec 2013-07-02 18:36 - 2013-07-02 08:01 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000 2013-07-02 18:36 - 2013-07-01 08:52 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001 2013-07-02 18:36 - 2013-06-30 19:49 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-07-02 18:36 - 2013-01-21 21:12 - 00000000 ____D C:\Program Files (x86)\7-Zip 2013-07-02 18:36 - 2013-01-14 16:04 - 00000000 ____D C:\Program Files (x86)\AAVUpdateManager 2013-07-02 18:36 - 2013-01-06 18:03 - 00000000 ____D C:\KronosFaktura 2013-07-02 18:36 - 2012-07-13 14:54 - 00000000 ____D C:\Program Files (x86)\Dream Aquarium 2013-07-02 18:36 - 2012-05-27 14:05 - 00000000 ____D C:\Program Files (x86)\Desktop Media 2013-07-02 18:36 - 2012-05-21 11:52 - 00000000 ____D C:\Program Files (x86)\CD-LabelPrint 2013-07-02 18:36 - 2012-04-15 18:36 - 00000000 ____D C:\Program Files (x86)\AC3File 2013-07-02 18:36 - 2011-12-03 22:38 - 00000000 ____D C:\Program Files (x86)\Bonjour 2013-07-02 18:36 - 2011-08-20 11:10 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2013-07-02 15:51 - 2013-07-02 15:51 - 00003108 _____ C:\Windows\System32\Tasks\RegClean Pro 2013-07-02 15:40 - 2013-07-02 08:50 - 00000000 ____D C:\Users\TEMP.lisa-lisa.002 2013-07-02 11:36 - 2013-07-02 10:25 - 00001081 _____ C:\Users\lisa\Desktop\Continue Download Helper Installation.lnk 2013-07-02 11:25 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-07-02 08:50 - 2013-07-02 08:50 - 00000000 _____ C:\Windows\setuperr.log 2013-07-02 08:03 - 2013-07-02 08:03 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Roaming\Bitdefender 2013-07-02 08:02 - 2013-07-02 08:02 - 00000000 ____D C:\Users\TEMP.lisa-lisa.000\AppData\Local\VirtualStore 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Vorlagen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Startmenü 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Netzwerkumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Lokale Einstellungen 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Eigene Dateien 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Druckumgebung 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Musik 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Documents\Eigene Bilder 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Verlauf 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\AppData\Local\Anwendungsdaten 2013-07-02 08:01 - 2013-07-02 08:01 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.000\Anwendungsdaten 2013-07-01 21:23 - 2013-06-17 09:13 - 00000000 ____D C:\Users\TEMP.lisa-lisa 2013-07-01 16:27 - 2013-07-01 16:27 - 00040844 _____ C:\Users\lisa\Documents\Addition.txt 2013-07-01 10:46 - 2013-07-01 10:46 - 00297313 _____ C:\Users\lisa\Documents\Malwarebytes Anti-Malware 1.pptx 2013-07-01 08:54 - 2013-07-01 08:54 - 00000000 ____D C:\Users\TEMP.lisa-lisa.001\AppData\Roaming\Bitdefender 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Vorlagen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Startmenü 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Netzwerkumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Lokale Einstellungen 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Eigene Dateien 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Druckumgebung 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Musik 2013-07-01 08:52 - 2013-07-01 08:52 - 00000000 __SHD C:\Users\TEMP.lisa-lisa.001\Documents\Eigene Bilder 2013-06-30 19:44 - 2013-06-30 19:38 - 00029898 _____ C:\Users\lisa\Documents\cc_20130630_190551.reg 2013-06-30 19:04 - 2013-06-30 18:58 - 00005852 _____ C:\Users\lisa\Documents\cc_20130630_185817.reg 2013-06-30 18:18 - 2013-06-30 18:18 - 00003028 _____ C:\Windows\System32\Tasks\{787FA377-97EF-4F2B-9BF9-0CA25C8C8488} 2013-06-30 17:44 - 2013-06-30 17:44 - 00003164 _____ C:\Windows\System32\Tasks\{88BB02C1-26F5-42AF-AC8C-B574552B0CF9} 2013-06-30 17:43 - 2013-06-30 17:43 - 00003164 _____ C:\Windows\System32\Tasks\{B7D53088-892F-40E5-A607-DFA653D1BA4F} 2013-06-30 16:18 - 2013-06-30 16:18 - 00000000 ____D C:\ProgramData\bdch 2013-06-30 11:37 - 2013-06-30 11:37 - 00003164 _____ C:\Windows\System32\Tasks\{111EF72A-8BCA-4E71-B1CF-403E0747619A} 2013-06-17 18:42 - 2013-06-17 18:42 - 00000176 _____ C:\Users\lisa\Documents\cc_20130617_184239.reg 2013-06-17 16:42 - 2013-06-17 16:40 - 00000429 _____ C:\Windows\system32\avgrep.txt 2013-06-17 14:53 - 2013-06-16 10:00 - 00000000 ____D C:\Windows\pss 2013-06-17 13:24 - 2013-06-17 13:23 - 00130010 _____ C:\Users\lisa\Documents\cc_20130617_132325.reg 2013-06-17 13:18 - 2012-09-09 19:38 - 00000000 ____D C:\Users\lisa\Tracing 2013-06-17 11:45 - 2013-06-17 11:44 - 00000634 _____ C:\Users\lisa\Desktop\ccsetup402 - Verknüpfung.lnk 2013-06-17 05:22 - 2013-06-17 05:22 - 00003024 _____ C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2013-06-16 20:54 - 2013-06-16 20:49 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300 (1).exe 2013-06-16 20:50 - 2013-06-16 20:43 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\lisa\Downloads\mbam-setup-1.75.0.1300.exe 2013-06-16 17:28 - 2011-05-07 16:19 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-06-16 17:22 - 2011-02-10 21:23 - 00000000 ____D C:\SWSetup 2013-06-16 13:15 - 2011-08-09 19:28 - 00000000 ____D C:\Users\lisa\AppData\Local\VirtualStore 2013-06-16 12:56 - 2013-06-16 12:54 - 03758488 _____ (Systweak Inc ) C:\Users\lisa\Downloads\rcpsetup_3335_ggde.exe 2013-06-15 22:40 - 2013-06-15 22:39 - 00393048 _____ (Softonic ) C:\Users\lisa\Downloads\SoftonicDownloader_fuer_hijackthis.exe 2013-06-15 22:07 - 2013-01-21 21:15 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-06-15 21:38 - 2013-06-15 21:00 - 13503464 _____ (Microsoft Corporation) C:\Users\lisa\Downloads\mseinstall.exe 2013-06-15 19:19 - 2013-06-15 19:15 - 00000000 ____D C:\Program Files (x86)\GUM8868.tmp 2013-06-15 19:15 - 2013-06-15 19:15 - 04167680 _____ C:\Program Files (x86)\GUT8869.tmp 2013-06-15 19:06 - 2013-06-15 19:02 - 00781800 _____ (Google Inc.) C:\Users\lisa\Downloads\ChromeSetup.exe 2013-06-15 18:17 - 2013-06-02 20:12 - 00000000 ____D C:\Program Files (x86)\MiPony 2013-06-15 18:01 - 2013-06-15 18:01 - 00002994 _____ C:\Windows\System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} 2013-06-15 11:36 - 2012-02-08 09:27 - 00000000 ____D C:\ProgramData\BDLogging ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-13 00:30 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-07-2013 Ran by lisa at 2013-07-15 14:03:57 Running from C:\Users\lisa\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Update for Microsoft Office 2007 (KB2508958) (x32) "Nero SoundTrax Help (x32 Version: 4.0.15.0) 7-Zip 9.22beta (x32) AAVUpdateManager (x32 Version: 18.00.0000) AC3File 0.7b (x32 Version: 0.7b) Adobe AIR (x32 Version: 3.7.0.2090) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620) Adobe Shockwave Player 12.0 (x32 Version: 12.0.3.133) Advertising Center (x32 Version: 0.0.0.2) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95) Age of Mythology (x32) AMD APP SDK Runtime (Version: 2.4.595.9) AMD Fuel (Version: 2011.0401.2259.39449) AMD System Monitor (x32 Version: 1.0.5) AMD VISION Engine Control Center (x32 Version: 2011.0401.2259.39449) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.0.136) Ashampoo Photo Commander 9 v.9.4.2 (x32 Version: 9.4.2) ATI Catalyst Install Manager (Version: 3.0.820.0) AuthenTec TrueAPI (Version: 1.2.1.33) AutoUpdate (x32 Version: 1.1) avast! Ad Blocker (x32 Version: 1.0.0.0) avast! Free Antivirus (x32 Version: 8.0.1489.0) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95) Big Rig Europe (x32 Version: 2.2.0.95) Bing Bar (x32 Version: 7.0.610.0) Blasterball 3 (x32 Version: 2.2.0.95) Bonjour (Version: 3.0.0.10) Bounce Symphony (x32 Version: 2.2.0.95) Cake Mania (x32 Version: 2.2.0.95) Canon Easy-PhotoPrint EX (x32) Canon Easy-WebPrint EX (x32) Canon iP2500 series Canon iP2500 series Benutzerregistrierung (x32) Canon MP830 Canon Utilities Easy-PhotoPrint (x32) Canon Utilities Easy-PrintToolBox (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0401.2259.39449) Catalyst Control Center InstallProxy (x32 Version: 2011.0401.2259.39449) Catalyst Control Center Localization All (x32 Version: 2011.0401.2259.39449) CCC Help Chinese Standard (x32 Version: 2011.0401.2258.39449) CCC Help Chinese Traditional (x32 Version: 2011.0401.2258.39449) CCC Help Czech (x32 Version: 2011.0401.2258.39449) CCC Help Danish (x32 Version: 2011.0401.2258.39449) CCC Help Dutch (x32 Version: 2011.0401.2258.39449) CCC Help English (x32 Version: 2011.0401.2258.39449) CCC Help Finnish (x32 Version: 2011.0401.2258.39449) CCC Help French (x32 Version: 2011.0401.2258.39449) CCC Help German (x32 Version: 2011.0401.2258.39449) CCC Help Greek (x32 Version: 2011.0401.2258.39449) CCC Help Hungarian (x32 Version: 2011.0401.2258.39449) CCC Help Italian (x32 Version: 2011.0401.2258.39449) CCC Help Japanese (x32 Version: 2011.0401.2258.39449) CCC Help Korean (x32 Version: 2011.0401.2258.39449) CCC Help Norwegian (x32 Version: 2011.0401.2258.39449) CCC Help Polish (x32 Version: 2011.0401.2258.39449) CCC Help Portuguese (x32 Version: 2011.0401.2258.39449) CCC Help Russian (x32 Version: 2011.0401.2258.39449) CCC Help Spanish (x32 Version: 2011.0401.2258.39449) CCC Help Swedish (x32 Version: 2011.0401.2258.39449) CCC Help Thai (x32 Version: 2011.0401.2258.39449) CCC Help Turkish (x32 Version: 2011.0401.2258.39449) ccc-utility64 (Version: 2011.0401.2259.39449) CD-LabelPrint (x32) Chuzzle Deluxe (x32 Version: 2.2.0.95) Crazy Chicken Kart 2 (x32 Version: 2.2.0.95) CyberLink YouCam (x32 Version: 3.5.1.3922) D3DX10 (x32 Version: 15.4.2368.0902) DC Software (x32) defender Total Security 2012 (Version: 15.0.27) Desktop Media 1.7 (x32) Die Sims™ 3 (x32 Version: 1.50.56) Die Sims™ 3 Design-Garten-Accessoires (x32 Version: 7.0.55) Die Sims™ 3 Einfach tierisch (x32 Version: 10.0.96) Die*Sims*Mittelalter (x32 Version: 1.0.0) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95) DivX (x32 Version: 6.0) DolbyFiles (x32 Version: 2.0) Dream Aquarium (x32) Energy Star Digital Logo (x32 Version: 1.0.1) ESET Online Scanner v3 (x32) ESU for Microsoft Windows 7 (x32 Version: 1.0.0) Evernote v. 4.2.2 (x32 Version: 4.2.2.3979) Facebook Messenger 2.1.4814.0 (x32 Version: 2.1.4814.0) Farm Frenzy (x32 Version: 2.2.0.95) FATE (x32 Version: 2.2.0.95) Fishdom (x32 Version: 2.2.0.95) Foxit Reader (x32 Version: 4.3.1.118) Free 3GP Video Converter version 5.0.6.221 (x32 Version: 5.0.6.221) Free YouTube to iPhone Converter version 2.11.17.221 (x32 Version: 2.11.17.221) Google Chrome (HKCU Version: 28.0.1500.72) Google Update Helper (x32 Version: 1.3.21.153) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000) High-Definition Video Playback (x32 Version: 11.1.11500.4.273) HP 3D DriveGuard (Version: 4.1.9.1) HP Auto (Version: 1.0.12935.3667) HP Client Services (Version: 1.1.12938.3539) HP Connection Manager (x32 Version: 4.1.22.1) HP Customer Experience Enhancements (x32 Version: 6.0.1.7) HP Documentation (x32 Version: 1.2.0.0) HP DVB-T TV Tuner 8.0.64.43 (x32 Version: 8.0.64.43) HP Games (x32 Version: 1.0.2.4) HP On Screen Display (x32 Version: 1.3.5) HP Power Manager (x32 Version: 1.4.4) HP Quick Launch (x32 Version: 2.5.2) HP Setup (x32 Version: 8.6.4530.3651) HP Setup Manager (x32 Version: 1.1.13253.3682) HP SimplePass 2011 (x32 Version: 5.1.0.495) HP Software Framework (x32 Version: 4.1.13.1) HP Support Assistant (x32 Version: 7.0.39.15) HTC BMP USB Driver (x32 Version: 1.0.5375) iCloud (Version: 2.1.2.8) iDevice Manager (x32 Version: 1.3.2.0) IDT Audio (x32 Version: 1.0.6329.0) ImagXpress (x32 Version: 7.0.74.0) Internet Explorer (Enable DEP) Internet Manager (x32 Version: 22.001.18.00.748) Internet-TV für Windows Media Center (x32 Version: 4.2.2.0) IPTInstaller (x32 Version: 4.0.8) IrfanView (remove only) (x32 Version: 4.36) iThmb Converter Version 1.73.0.539 (x32 Version: 1.73.0.539) iTunes (Version: 11.0.4.4) Java 7 Update 25 (64-bit) (Version: 7.0.250) Jewel Quest Solitaire (x32 Version: 2.2.0.95) Junk Mail filter update (x32 Version: 15.4.3502.0922) K-Lite Codec Pack 6.0.4 (Basic) (x32 Version: 6.0.4) KronosFaktura 8.05 (x32) Mah Jong Medley (x32 Version: 2.2.0.95) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) McAfee Security Scan Plus (x32 Version: 2.0.189.1) Menu Templates - Starter Kit (x32 Version: 9.6.0.0) Mesh Runtime (x32 Version: 15.4.5722.2) Messenger Companion (x32 Version: 15.4.3502.0922) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320) Microsoft .NET Framework 4 Extended (Version: 4.0.30320) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Games for Windows - LIVE (x32 Version: 3.0.89.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.0.19.0) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42) Microsoft Security Client (Version: 4.2.0223.1) Microsoft Security Essentials (Version: 4.2.223.1) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0) MobileMe Control Panel (Version: 3.1.8.0) MotoCast (x32 Version: 2.0.31) MotoHelper MergeModules (x32 Version: 1.2.0) Motorola Device Manager (x32 Version: 2.2.35) Motorola Device Software Update (x32 Version: 1.0.41) MOTOROLA MEDIA LINK (x32 Version: 1.9.0002.0) Motorola Mobile Drivers Installation 5.9.0 (Version: 5.9.0) Movie Templates - Starter Kit (x32 Version: 9.6.0.0) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) MSXML4 Parser (x32 Version: 1.0.0) Mystery P.I. - The London Caper (x32 Version: 2.2.0.95) Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95) NAVIGON Fresh 3.4.1 (x32 Version: 3.4.1) Neon Skin Pack 2.0-X86 (x32 Version: 2.0-X86) Nero 10 Movie ThemePack Basic (x32 Version: 10.6.10000.1.0) Nero 9 (x32) Nero Audio Pack 1 (x32 Version: 11.0.11500.110.0) Nero BackItUp (x32 Version: 5.2.22001) Nero BackItUp and Burn (x32 Version: 1.2.0031) Nero Burning ROM Help (x32 Version: 9.2.2.100) Nero BurnRights (x32 Version: 2.99.6.100) Nero BurnRights (x32 Version: 3.4.13.100) Nero BurnRights (x32 Version: 3.6.26001) Nero ControlCenter (x32 Version: 9.0.0.1) Nero Core Components 10 (x32 Version: 2.0.20100.9.13) Nero Core Components 11 (x32 Version: 11.0.16300.1.23) Nero CoverDesigner (x32 Version: 1.0.0.0) Nero CoverDesigner Help (x32 Version: 4.2.2.100) Nero Disc Copy Gadget (x32 Version: 2.4.43.0) Nero Disc Copy Gadget Help (x32 Version: 2.2.7.0) Nero DiscSpeed (x32 Version: 4.99.5.105) Nero DiscSpeed (x32 Version: 5.4.13.100) Nero DriveSpeed (x32 Version: 3.99.5.105) Nero DriveSpeed (x32 Version: 4.4.12.100) Nero Express (x32 Version: 9.6.16000) Nero Express Help (x32 Version: 9.2.2.100) Nero InfoTool (x32 Version: 5.99.5.105) Nero InfoTool (x32 Version: 6.4.12.100) Nero Installer (x32 Version: 4.4.9.0) Nero Kwik Media (x32 Version: 1.14.12000.23.100) Nero Kwik Media (x32 Version: 10.6.12300) Nero Kwik Media Help (CHM) (x32 Version: 11.0.10300) Nero Live (x32 Version: 1.2.4.0) Nero Live Help (x32 Version: 1.0.162.0) Nero Move it (x32 Version: 1.2.0.0) Nero Move it (x32) Nero Move it Help (x32 Version: 1.0.0.0) Nero PhotoSnap (x32 Version: 2.4.29.0) Nero PhotoSnap Help (x32 Version: 1.53.2.0) Nero Prerequisite Installer 1.0 (x32 Version: 11.0.11500) Nero Recode (x32 Version: 4.4.40.0) Nero Recode Help (x32 Version: 3.53.0.0) Nero Rescue Agent (x32 Version: 2.4.14.100) Nero RescueAgent (x32 Version: 2.6.26000) Nero RescueAgent Help (x32 Version: 1.99.0.1) Nero SharedVideoCodecs (x32 Version: 1.0.11500.1.5) Nero ShowTime (x32 Version: 4.99.0.0) Nero ShowTime (x32 Version: 5.4.27.100) Nero StartSmart (x32 Version: 9.4.40.100) Nero StartSmart Help (x32 Version: 9.2.4.100) Nero Update (x32 Version: 11.0.11500.28.0) Nero Vision (x32 Version: 0.0.0.2) Nero Vision (x32 Version: 6.4.19.100) Nero WaveEditor (x32 Version: 5.4.39.0) Nero WaveEditor Help (x32 Version: 5.0.15.0) nero.prerequisites.msi (x32 Version: 11.0.20010) NeroBurningROM (x32 Version: 1.0.0.0) NeroExpress (x32 Version: 1.0.0.0) NeroLiveGadget (x32 Version: 1.0.8.100) NeroLiveGadget Help (x32 Version: 1.0.6.100) neroxml (x32 Version: 1.0.0) Origin (x32 Version: 8.5.2.23) Paint.NET v3.5.10 (Version: 3.60.0) Pando Media Booster (x32 Version: 2.6.0.8) Penguins! (x32 Version: 2.2.0.95) PhotoScape (x32) PIXMA Extended Survey Program (x32) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95) Polar Bowler (x32 Version: 2.2.0.95) Portrait Professional 10.8 Test (x32 Version: 10.8) QuickTime (x32 Version: 7.74.80.86) Ralink RT5390 802.11b/g/n WiFi Adapter (x32 Version: 3.02.02.0) Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011) Realtek PCIE Card Reader (x32 Version: 6.1.7600.80) Recovery Manager (x32 Version: 2.0.0) Recovery Toolbox for Excel 2.0 (x32) Revo Uninstaller 1.93 (x32 Version: 1.93) Safari (x32 Version: 5.34.57.2) Samsung Kies (x32 Version: 2.3.2.12064_9) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.6.0) Secunia PSI (3.0.0.7009) (x32 Version: 3.0.0.7009) Slingo Deluxe (x32 Version: 2.2.0.95) Sony Ericsson Update Engine (x32 Version: 2.13.6.201305161305) Sony PC Companion 2.10.155 (x32 Version: 2.10.155) SoundTrax (x32 Version: 4.4.39.0) StarMoney (x32 Version: 3.0.2.50) StarMoney Business 5.0 (x32 Version: 5.0) Steuer-Sparer 2011 (x32 Version: 16.16) Steuer-Sparer 2012 (x32 Version: 17.11) Steuersparer 2013 (x32 Version: 20.00.8137) Synaptics TouchPad Driver (Version: 15.3.29.0) Trojan Remover 6.8.7 (x32 Version: 6.8.7) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3000.132) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) Update Installer for WildTangent Games App (x32) Utility Chest Firefox Toolbar (x32) Utility Chest Internet Explorer Toolbar (x32) Validity WBF DDK (Version: 4.3.205.0) Video Download Converter version 1.0.0.0 (x32 Version: 1.0.0.0) VideoPerformer (x32) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) VLC media player 2.0.7 (x32 Version: 2.0.7) Wedding Dash (x32 Version: 2.2.0.95) WildTangent Games App (x32 Version: 4.0.10.2) Windows 7 Upgrade Advisor (x32 Version: 2.0.5000.0) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3502.0922) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) WMV9/VC-1 Video Playback (Version: 1.00.0000) YouTube Song Downloader (x32 Version: 8.2) Zuma Deluxe (x32 Version: 2.2.0.95) ==================== Restore Points ========================= 12-07-2013 07:16:30 Installed Java 7 Update 25 (64-bit) 12-07-2013 21:00:18 Windows Update 13-07-2013 18:02:52 Windows Update 13-07-2013 18:40:04 SPTD setup V1.74 14-07-2013 17:00:09 Windows-Sicherung ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-07-09 09:54 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {010D9916-4941-49A5-9024-089B7FCFFDFA} - System32\Tasks\User_Feed_Synchronization-{CD07F68E-55A8-423B-91F6-DEB030304064} => C:\Windows\system32\msfeedssync.exe [2013-06-02] (Microsoft Corporation) Task: {0A645107-32E2-44F9-AEE3-5A9ED980F284} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Total Care Tune-Up => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe [2012-09-27] (Hewlett-Packard Company) Task: {0F4CE7E5-23CF-4BC8-9A51-B661E5669215} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {1114018D-734D-49D2-900B-DAAA23A34ED8} - System32\Tasks\HPCeeScheduleForLISA-LISA$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {146CF4BD-1A94-4B5E-A961-B5CDBCF83915} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-03-22] (CyberLink) Task: {1AE4D617-FA3C-44C8-930E-FBBFFB45DC32} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation) Task: {1EF97B79-C558-42F8-B196-8D1EFC0983AA} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {1F5C5FFA-4F8E-4A03-8419-BBE36F7E6D06} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation) Task: {1FE65070-0AAC-4ECD-956A-47BB04BFBFAD} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {2095EE74-43BB-4094-ABAC-6B3CE5164161} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe No File Task: {296FBB7A-E4AB-4CFB-9F93-009A43248B2F} - System32\Tasks\MotoCast Update => C:\Program Files (x86)\Motorola Mobility\MotoCast\LiveUpdate\MotoCastUpdate.exe [2012-07-24] () Task: {3ACA1A4B-8A20-42E6-9D0E-70F213988B30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {454959D6-1CC3-4C25-83DC-0C59C015F44D} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {51C1519C-F72D-4EBD-8431-D20FEA691F11} - System32\Tasks\lisa NBAgent => C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe No File Task: {53C86463-8FC9-41CA-B4A6-493A9E07104E} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe No File Task: {5C6E47BF-6673-44E9-9643-EA9D5BDED0E4} - System32\Tasks\Google Updater and Installer => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {652F9DBA-622F-4C77-A8BD-BF8FB5CD7621} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company) Task: {6DED4C69-EE1B-4C9C-B193-7986E52963E5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {72DA8517-98DC-49E7-9652-BBF5FE68FD9C} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe No File Task: {7435C28C-4390-44D2-81D9-78187CFD3FC4} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-24] (Facebook Inc.) Task: {7439D853-5AD9-4372-AB6C-79A318AE395D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-13] (Adobe Systems Incorporated) Task: {7CA5B2D5-8F8D-4055-A0E2-57FA24DBED9D} - System32\Tasks\{5EBD9F82-6512-41E9-9F3E-49CE788EC0F0} => C:\Users\lisa\Downloads\IE10-Windows6.1-de-de.exe [2013-07-04] (Microsoft Corporation) Task: {84610A55-9124-4735-8ABC-F61A0CD18608} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {8D71C492-D709-46F5-AF76-29CF6D94E8C9} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {93D2D9DD-F492-439C-9704-91523C972A98} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {94E636B5-54B2-4E9E-B840-A0C5DA703381} - System32\Tasks\HPCeeScheduleForlisa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {9658F7BB-0CFF-4767-AE0D-97EBBCE13275} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2012-09-28] () Task: {96735A06-4936-4FB2-BA1A-6586FC2A3E3D} - System32\Tasks\{80C62F87-057C-44C1-918D-44ED777873A8} => C:\Users\lisa\AppData\Local\Google\Chrome\Application\chrome.exe [2013-07-12] (Google Inc.) Task: {A0A898A3-DB4C-4ECE-952D-93F8A801423B} - System32\Tasks\{7E2CEA61-0064-468F-ADDD-624FD640EDB3} => C:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {A61DDCF1-BE41-4620-B0A8-D1AC86C9230C} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] () Task: {B256938D-768E-4E98-A51C-C386187A8DA5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-25] (Google Inc.) Task: {B6BA3D91-305A-4BD3-855D-956B7295BB67} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {B6EE1EB3-0706-4344-ACC1-FBF208B35666} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-25] (Google Inc.) Task: {B94CBAD4-9224-4D52-9DC5-A69CCD002B44} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-21] (Microsoft Corporation) Task: {C880D89C-81F3-45B8-96C4-F2FFBA2CCE5C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe [2010-11-21] (Microsoft Corporation) Task: {C9F6ED7B-1A7F-4F64-A983-5CCE91B0910B} - System32\Tasks\QtraxPlayer => C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe [2013-05-13] (Microsoft Corporation) Task: {CD374EAF-FEB1-48F8-9B6C-E5F566F26EF2} - System32\Tasks\ArcSoft Connect Daemon => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27] (ArcSoft Inc.) Task: {D3A046B4-0111-412D-9CD9-47C0E2745D61} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {D8D3A660-8E0F-4AC1-B7E6-D29D0F0DB044} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {DB830A1D-0B00-4F78-8433-9C7762B84AE1} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-24] (Facebook Inc.) Task: {DCA153BC-3BEC-4DF8-8371-6F5A74D97665} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-30] (Google Inc.) Task: {DCBD84E6-D8C6-48F7-B388-A7ACD1555F23} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software) Task: {E6DC5D33-2488-41F1-8DB2-B7ECFE58E4FF} - System32\Tasks\{B6BC40F4-E674-4E0D-A84D-DE0213E07159} => C:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {EDAC8BA6-0FEA-48A7-A740-E5E2318AE281} - System32\Tasks\WPD\SqmUpload_S-1-5-21-2416322015-1569237049-636745652-1002 => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {F6A6366C-0E9C-437B-9528-6C4F2BC00460} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe No File Task: {FC4F7B39-3AF6-4ECA-B949-C157E5D138B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job => C:\Users\lisa\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002Core.job => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2416322015-1569237049-636745652-1002UA.job => C:\Users\lisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForLISA-LISA$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\HPCeeScheduleForlisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Faulty Device Manager Devices ============= Name: Anwenderinfrarotgeräte Description: Anwenderinfrarotgeräte Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: circlass Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Error: (07/15/2013 01:19:27 PM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Microsoft Office Sessions: ========================= Error: (08/26/2012 09:29:32 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 280 seconds with 240 seconds of active time. This session ended with a crash. Error: (08/18/2011 00:11:32 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 5782 seconds with 60 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-07-09 09:54:09.730 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Uninstall.exe\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-09 09:54:09.637 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Uninstall.exe\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-09 09:27:00.529 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 08:53:42.005 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 08:09:40.450 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:58:00.693 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:40:05.516 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:31:50.057 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:14:39.395 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-09 07:07:01.741 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2012\Active Virus Control\Avc3_00098_023\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 34% Total physical RAM: 5610.9 MB Available physical RAM: 3675.09 MB Total Pagefile: 11219.99 MB Available Pagefile: 8490.27 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:682.92 GB) (Free:524.2 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:15.42 GB) (Free:1.33 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)] Drive f: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32 (Disk=0 Partition=4) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: D7B2E5D6) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=683 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ==================== End Of Log ============================ |
15.07.2013, 13:24 | #9 |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? meine Frage?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.07.2013, 13:30 | #10 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? nein bis jetzt nicht! aber die zwei Utility Chest Internet Explorer Toolbar und Utility Chest Firefox Toolbar sind noch in Programme Systemsteuerung drin! |
15.07.2013, 13:37 | #11 |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? Einfach mal auf deinstallieren klicken.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.07.2013, 13:40 | #12 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? Sie verwenden nicht die neueste Version von Firefox. Aktualisieren Sie noch heute, um das Beste aus dem Internet herauszuholen! Habs gestern versucht, klappt nicht! Dann bringt er immer diese Meldung:Issch.exe zulassen hat das was mit Secunia PSI zu tun? Ist die Softwear sicher bei anmeldung Downloads?Seit den Trojaner Befall funktioniert mein CD Prog. nicht mehr. Beim Einlegen und Brennen bringt er dasie von den iTunes-Treibern zum Importieren und Brennen von CDs und DVDs verwendeten Registery-Einstellungen fehlen.Dies kann durch die Installation anderer zum Brennen von CDs verursacht werden. Bitte installieren Sie iTunes neu? I Tunes funktioniert eingendlich, und warum geht iTunes auf beim CD einlegen? Nero meldet nach dem Brennen:Nero Audio CD Buffer underrun 21 verhindert! CD läuft nicht beim abspielen. Wollte eine Kopie von meiner neu gekauften CD machen, CD wird nicht gelesen, warum? Früher ist das doch auch gegangen. Kann doch eine Kopie erstellen ist doch legal! Lisa |
15.07.2013, 13:43 | #13 | |
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar?Zitat:
ITunes und Nero deinstallieren und neu installieren.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.07.2013, 13:53 | #14 |
| wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? und der firefox, wie installiere ich den richtig? habs versucht gestern, geht bei mit nicht! Firefox ist bereits aktiv, beenden sie jetzt und starten neu? Habe doch gestern das auch so gemacht, macht immer den alten auf, warum? Taskleiste alten? kenn mich nicht aus! lisa was für ein Brennprogramm kannst du empfehlen!Kann doch für mich selber eine zweite cd für`s Auto brennen oder? Hab jetzt Nero 9 komplett drauf Movit Backup usw.... lisa |
15.07.2013, 14:04 | #15 | ||
/// the machine /// TB-Ausbilder | wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? Firefox komplett deinstallieren über die Systemsteuerung, dann neu laden und installieren. Zitat:
Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu wie entferne ich Utility Chest Internet Explorer Toolbar Utility Chest Firefox Toolbar? |
einfach, entferne, entfernen, explorer, firefox, heulen, inter, interne, internet, internet explorer, toolbar, utility |