Achso, ok
FRST Logfile:
FRST Logfile:
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-07-2013 02
Ran by Tobias (administrator) on 17-07-2013 20:20:25
Running from C:\Users\Tobias\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\UniClient\UiFrmWrk\uiWatchDog.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\AMSP\AMSP_LogServer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
() C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Windows\system32\dmwu.exe
(syncables, LLC) C:\Program Files (x86)\syncables\syncables desktop\syncables.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\syncables\syncables desktop\jre\bin\javaw.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(SweetIM Technologies Ltd.) C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(syncables, LLC) C:\Program Files (x86)\syncables\syncables desktop\syncablesMAPI.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Absolute Software Corp.) C:\Windows\SysWOW64\rpcnet.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
() C:\Windows\SysWOW64\jmdp\stij.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Google Inc.) C:\Users\Tobias\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Tobias\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Tobias\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Tobias\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Tobias\AppData\Local\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4156 2010-04-17] ()
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2587944 2010-12-13] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [192520 2010-10-13] (Trend Micro Inc.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation)
HKCU\...\Run: [Syncables] - C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe [370480 2010-07-19] (syncables, LLC)
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-07-13] ()
HKCU\...\Run: [Google Update] - C:\Users\Tobias\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-12-16] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18679400 2013-05-09] (Skype Technologies S.A.)
HKCU\...\Run: [KPeerNexonEU] - C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2013-07-15] (NEXON Inc.)
MountPoints2: F - F:\HTC_Sync_Manager_PC.exe
MountPoints2: {03077668-3ef1-11e0-b23a-806e6f6e6963} - E:\start.exe
MountPoints2: {eddc4fcc-bf99-11e2-8835-bcaec55f8d36} - F:\HTC_Sync_Manager_PC.exe
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-08] (ASUS)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [SonicMasterTray] - C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [984400 2010-07-10] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S [734544 2011-03-22] (ecareme)
HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 2012-08-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ControlCenter3] - C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] - C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN [2621440 2010-02-09] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-11-28] (Apple Inc.)
HKLM-x32\...\Run: [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe [231768 2012-08-15] (SweetIM Technologies Ltd.)
HKLM-x32\...\Run: [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152544 2012-12-12] (Apple Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [35736 2011-01-30] (Adobe Systems Incorporated)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll [226920 2011-02-19] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [192616 2011-02-19] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=161&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD21} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=1083&systemid=1&sr=0&q={searchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=161&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031&barid={AD68DC59-476E-11E2-9A22-BCAEC55F8D36}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD21} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=1083&systemid=1&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=161&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031&barid={AD68DC59-476E-11E2-9A22-BCAEC55F8D36}
SearchScopes: HKCU - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKCU - {B5A4EC71-9974-4AEF-A7FB-CBF08DCF7424} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=46d9daaf-3642-4b8e-b76b-4592f734f7a5&apn_sauid=85820189-7709-4C4E-A2EE-BF90FC65EF7E
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031&barid={AD68DC59-476E-11E2-9A22-BCAEC55F8D36}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
Toolbar: HKLM - No Name - !!{98889811-442D-49dd-99D7-DC866BE87DBC} - No File
Toolbar: HKLM-x32 - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKLM-x32 - No Name - {99079a25-328f-4bd4-be04-00955acaa0a7} - No File
Toolbar: HKLM-x32 - No Name - !!{98889811-442D-49dd-99D7-DC866BE87DBC} - No File
Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
DPF: HKLM-x32 {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default
FF user.js: detected! => C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\user.js
FF SelectedSearchEngine: Google
FF Homepage: hxxp://google.de/
FF Keyword.URL: hxxp://search.sweetim.com/search.asp?src=2&barid={AD68DC59-476E-11E2-9A22-BCAEC55F8D36}&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_268.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_268.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.5.1 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.5.1 - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Tobias\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Tobias\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Tobias\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: electronicarts.com/GameFacePlugin - C:\Users\Tobias\AppData\Roaming\Electronic Arts\Game Face\npGameFacePlugin.dll (Electronic Arts)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\askcomsearch.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\conduit.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\MyStart Search.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\MyStart.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\l91xn1wk.default\searchplugins\sweetim.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
Chrome:
=======
CHR RestoreOnStartup: "hxxp://www.facebook.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Users\Tobias\AppData\Local\Google\Chrome\Application\28.0.1500.72\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Tobias\AppData\Local\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Tobias\AppData\Local\Google\Chrome\Application\28.0.1500.72\pdf.dll ()
CHR Plugin: (SweetIM GC Helper) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.1.0.1_0\mgHelperGCFB.dll No File
CHR Plugin: (Skype Click to Call) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0\npSkypeChromePlugin.dll No File
CHR Plugin: (SweetIM GC Helper) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.0.0.1_0\mgHelperGC.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Unity Player) - C:\Users\Tobias\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_268.dll ()
CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Extension: (Google Drive) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Adblock Plus) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.5_0
CHR Extension: (Google Search) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Deal Vault) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\mifpbickojhbejhppcfgifjbmiinpjap\1.23.56_0
CHR Extension: (Gmail) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
==================== Services (Whitelisted) =================
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-01] (Akamai Technologies, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224 2012-05-02] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032 2012-05-02] (Avira Operations GmbH & Co. KG)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [241648 2010-11-13] (CyberLink)
R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [1447728 2013-05-21] ()
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation)
S2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2565632 2011-10-24] (Deutsche Telekom AG)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
R2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [x]
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [98848 2012-04-25] (Avira GmbH)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132832 2012-04-27] (Avira GmbH)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [27760 2012-05-02] (Avira GmbH)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-21] ( )
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.)
S3 TelekomNM6; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM6.sys [45664 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] ()
U3 uwdiipod; \??\C:\Users\Tobias\AppData\Local\Temp\uwdiipod.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-17 20:20 - 2013-07-17 20:20 - 00000000 ____D C:\FRST
2013-07-17 20:19 - 2013-07-17 20:19 - 01778209 _____ (Farbar) C:\Users\Tobias\Downloads\FRST64.exe
2013-07-17 17:57 - 2013-07-17 17:57 - 00079946 _____ C:\Users\Tobias\Downloads\Gmer (1).zip
2013-07-17 17:47 - 2013-07-17 17:47 - 00079946 _____ C:\Users\Tobias\Downloads\Gmer.zip
2013-07-17 17:46 - 2013-07-17 17:47 - 00079946 _____ C:\Users\Tobias\Desktop\Gmer.zip
2013-07-17 17:44 - 2013-07-17 17:44 - 01110476 _____ C:\Users\Tobias\Downloads\7z920.exe
2013-07-17 17:44 - 2013-07-17 17:44 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-07-17 17:39 - 2013-07-17 17:39 - 00099534 _____ C:\Users\Tobias\Downloads\Extras (1).Txt
2013-07-17 17:38 - 2013-07-17 17:38 - 00099534 _____ C:\Users\Tobias\Downloads\Extras.Txt
2013-07-17 17:27 - 2013-07-17 17:27 - 00935329 _____ C:\Users\Tobias\Desktop\Gmer.txt
2013-07-17 16:31 - 2013-07-17 16:32 - 00377856 _____ C:\Users\Tobias\Downloads\gmer_2.1.19163.exe
2013-07-17 16:28 - 2013-07-17 16:29 - 00099534 _____ C:\Users\Tobias\Desktop\Extras.Txt
2013-07-17 16:23 - 2013-07-17 16:28 - 00121972 _____ C:\Users\Tobias\Desktop\OTL.Txt
2013-07-17 16:02 - 2013-07-17 16:03 - 00602112 _____ (OldTimer Tools) C:\Users\Tobias\Downloads\OTL.exe
2013-07-17 16:02 - 2013-07-17 16:02 - 00000474 _____ C:\Users\Tobias\Downloads\defogger_disable.log
2013-07-17 15:49 - 2013-07-17 15:49 - 00050477 _____ C:\Users\Tobias\Downloads\Defogger (1).exe
2013-07-17 15:48 - 2013-07-17 15:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tobias\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-17 15:42 - 2013-07-17 15:48 - 00000474 _____ C:\Windows\SysWOW64\defogger_disable.log
2013-07-17 15:41 - 2013-07-17 15:53 - 00000476 _____ C:\Users\Tobias\Desktop\defogger_disable.log
2013-07-17 15:41 - 2013-07-17 15:41 - 00050477 _____ C:\Users\Tobias\Downloads\Defogger.exe
2013-07-17 15:41 - 2013-07-17 15:41 - 00000000 _____ C:\Users\Tobias\defogger_reenable
2013-07-17 15:35 - 2013-07-17 15:35 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Unity
2013-07-15 20:43 - 2013-07-15 20:52 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Riot Games
2013-07-15 20:43 - 2013-07-15 20:43 - 34888568 _____ (Riot Games) C:\Users\Tobias\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-07-15 19:50 - 2013-07-15 19:50 - 00000000 ____D C:\ProgramData\NexonEU
2013-07-15 19:26 - 2013-07-15 19:50 - 00000000 ____D C:\Nexon
2013-07-15 19:26 - 2013-07-15 19:50 - 00000000 ____D C:\Download
2013-07-15 19:26 - 2013-07-15 19:26 - 00524288 _____ (Nexon) C:\Users\Tobias\Downloads\CAE_Downloader.exe
2013-07-15 19:26 - 2013-07-15 19:26 - 00446464 _____ (NEXON Inc.) C:\Windows\NEXON_EU_DownloaderUpdater.exe
2013-07-15 19:26 - 2013-07-15 19:26 - 00000235 _____ C:\Windows\SysWOW64\nxEuUninstall.bat
2013-07-11 19:53 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-11 19:53 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-11 19:53 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-11 19:53 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-11 19:53 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-11 19:53 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-11 19:53 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-11 19:53 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-11 19:53 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-11 19:53 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-11 19:53 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-11 19:53 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-11 19:53 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-11 19:53 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-11 19:53 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-11 19:53 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-11 19:52 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-11 01:41 - 2013-07-11 01:41 - 00000000 _____ C:\Windows\SysWOW64\shoB114.tmp
2013-07-10 22:01 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-10 22:01 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-10 22:01 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-10 22:01 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-10 22:01 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-10 22:00 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-10 22:00 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-07 00:31 - 2013-07-07 00:31 - 00008355 _____ C:\Users\Tobias\Documents\Unbenannt 1.ods
2013-07-05 22:10 - 2013-07-05 22:10 - 00159535 _____ C:\Users\Tobias\Downloads\proxtube_1.2.2 (1).crx
2013-07-05 22:09 - 2013-07-05 22:09 - 00159535 _____ C:\Users\Tobias\Downloads\proxtube_1.2.2.crx
2013-07-05 22:09 - 2013-07-05 22:09 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1) (2).crx
2013-07-05 22:06 - 2013-07-05 22:06 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1).crx
2013-07-05 22:06 - 2013-07-05 22:06 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1) (1).crx
2013-07-05 21:57 - 2013-07-05 21:57 - 00148730 _____ C:\Users\Tobias\Downloads\proxtube121.zip
2013-07-04 21:23 - 2013-07-04 21:23 - 00001721 _____ C:\Users\Tobias\Documents\Neue Datenbank1.odb
2013-07-04 21:15 - 2013-07-04 21:15 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-07-04 21:15 - 2013-07-04 21:15 - 00000000 ____D C:\Program Files\Java
2013-07-04 21:13 - 2013-07-04 21:13 - 33150376 _____ (Oracle Corporation) C:\Users\Tobias\Downloads\jre-7u25-windows-x64.exe
2013-07-04 21:11 - 2013-07-04 21:11 - 00001721 _____ C:\Users\Tobias\Documents\Neue Datenbank.odb
2013-07-04 21:10 - 2013-07-04 21:10 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\OpenOffice.org
2013-07-04 21:03 - 2013-07-04 21:03 - 00001244 _____ C:\Users\Tobias\Desktop\OpenOffice.org 3.4.1.lnk
2013-07-04 21:03 - 2013-07-04 21:03 - 00000000 ___SD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
2013-07-04 21:01 - 2013-07-04 21:09 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3
2013-07-04 20:56 - 2013-07-04 20:58 - 152249762 _____ C:\Users\Tobias\Downloads\Apache_OpenOffice_incubating_3.4.1_Win_x86_install_de.exe
2013-07-04 16:35 - 2013-07-04 16:35 - 00038043 _____ C:\Users\Tobias\Downloads\Physik-Wasserkraft.pptx
2013-07-01 23:07 - 2013-07-01 23:07 - 00092672 _____ (Option^Explicit Software vbtechcd@gmail.com) C:\Users\Tobias\Downloads\KillBox.exe
2013-07-01 23:07 - 2013-07-01 23:07 - 00000000 ____D C:\!KillBox
2013-07-01 23:04 - 2013-07-01 23:05 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Tobias\Downloads\spybot-2.1.exe
2013-06-27 20:18 - 2013-06-27 20:18 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-06-27 20:18 - 2013-06-27 20:18 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-06-26 16:44 - 2013-06-26 16:49 - 00038043 _____ C:\Users\Tobias\Documents\Physik-Wasserkraft.pptx
2013-06-18 17:58 - 2013-06-18 17:58 - 00603961 _____ (TLProd ) C:\Users\Tobias\Downloads\bigmacrotoolsetup.exe
2013-06-18 13:27 - 2013-06-18 13:27 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\redsn0w
2013-06-18 13:16 - 2013-06-18 13:16 - 00903072 _____ (Oracle Corporation) C:\Users\Tobias\Downloads\chromeinstall-7u21.exe
2013-06-17 20:34 - 2013-06-18 17:59 - 00000000 ____D C:\Program Files (x86)\BigMacroTool
2013-06-17 20:32 - 2013-06-17 20:33 - 00617312 _____ (www.download-sponsor.de) C:\Users\Tobias\Downloads\bigmacrotoolsetup1.0.exe
2013-06-17 17:16 - 2013-06-17 17:16 - 00000000 ____D C:\Users\Tobias\AppData\Local\{56693CF3-733D-4AD1-8514-0A767E016D56}
==================== One Month Modified Files and Folders =======
2013-07-17 20:20 - 2013-07-17 20:20 - 00000000 ____D C:\FRST
2013-07-17 20:19 - 2013-07-17 20:19 - 01778209 _____ (Farbar) C:\Users\Tobias\Downloads\FRST64.exe
2013-07-17 20:18 - 2012-05-04 20:51 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-17 20:18 - 2009-08-04 11:51 - 00771568 _____ C:\Windows\system32\perfh007.dat
2013-07-17 20:18 - 2009-08-04 11:51 - 00173236 _____ C:\Windows\system32\perfc007.dat
2013-07-17 20:18 - 2009-07-14 07:13 - 01799108 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-17 20:17 - 2012-12-16 13:15 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001UA.job
2013-07-17 20:16 - 2011-02-23 03:23 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-17 20:16 - 2011-02-23 03:23 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-17 20:16 - 2011-02-23 02:48 - 00017920 _____ C:\Windows\system32\rpcnetp.exe
2013-07-17 17:57 - 2013-07-17 17:57 - 00079946 _____ C:\Users\Tobias\Downloads\Gmer (1).zip
2013-07-17 17:47 - 2013-07-17 17:47 - 00079946 _____ C:\Users\Tobias\Downloads\Gmer.zip
2013-07-17 17:47 - 2013-07-17 17:46 - 00079946 _____ C:\Users\Tobias\Desktop\Gmer.zip
2013-07-17 17:44 - 2013-07-17 17:44 - 01110476 _____ C:\Users\Tobias\Downloads\7z920.exe
2013-07-17 17:44 - 2013-07-17 17:44 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-07-17 17:39 - 2013-07-17 17:39 - 00099534 _____ C:\Users\Tobias\Downloads\Extras (1).Txt
2013-07-17 17:38 - 2013-07-17 17:38 - 00099534 _____ C:\Users\Tobias\Downloads\Extras.Txt
2013-07-17 17:28 - 2011-02-23 02:54 - 01261228 _____ C:\Windows\WindowsUpdate.log
2013-07-17 17:27 - 2013-07-17 17:27 - 00935329 _____ C:\Users\Tobias\Desktop\Gmer.txt
2013-07-17 16:32 - 2013-07-17 16:31 - 00377856 _____ C:\Users\Tobias\Downloads\gmer_2.1.19163.exe
2013-07-17 16:29 - 2013-07-17 16:28 - 00099534 _____ C:\Users\Tobias\Desktop\Extras.Txt
2013-07-17 16:28 - 2013-07-17 16:23 - 00121972 _____ C:\Users\Tobias\Desktop\OTL.Txt
2013-07-17 16:03 - 2013-07-17 16:02 - 00602112 _____ (OldTimer Tools) C:\Users\Tobias\Downloads\OTL.exe
2013-07-17 16:02 - 2013-07-17 16:02 - 00000474 _____ C:\Users\Tobias\Downloads\defogger_disable.log
2013-07-17 15:53 - 2013-07-17 15:41 - 00000476 _____ C:\Users\Tobias\Desktop\defogger_disable.log
2013-07-17 15:49 - 2013-07-17 15:49 - 00050477 _____ C:\Users\Tobias\Downloads\Defogger (1).exe
2013-07-17 15:48 - 2013-07-17 15:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tobias\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-17 15:48 - 2013-07-17 15:42 - 00000474 _____ C:\Windows\SysWOW64\defogger_disable.log
2013-07-17 15:41 - 2013-07-17 15:41 - 00050477 _____ C:\Users\Tobias\Downloads\Defogger.exe
2013-07-17 15:41 - 2013-07-17 15:41 - 00000000 _____ C:\Users\Tobias\defogger_reenable
2013-07-17 15:41 - 2011-04-13 17:46 - 00000000 ____D C:\Users\Tobias
2013-07-17 15:35 - 2013-07-17 15:35 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Unity
2013-07-17 14:27 - 2011-11-05 11:20 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Skype
2013-07-17 13:28 - 2011-07-13 13:58 - 00000000 ____D C:\Users\Tobias\AppData\Local\PMB Files
2013-07-17 13:05 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-17 13:05 - 2009-07-14 06:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-17 12:59 - 2012-08-01 22:45 - 00052234 _____ C:\Windows\setupact.log
2013-07-17 12:57 - 2011-04-13 20:13 - 00069792 _____ (Absolute Software Corp.) C:\Windows\SysWOW64\rpcnet.dll
2013-07-17 12:54 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-16 18:31 - 2011-02-23 04:04 - 00002510 _____ C:\Windows\system32\AutoRunFilter.ini
2013-07-15 20:52 - 2013-07-15 20:43 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Riot Games
2013-07-15 20:43 - 2013-07-15 20:43 - 34888568 _____ (Riot Games) C:\Users\Tobias\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-07-15 19:50 - 2013-07-15 19:50 - 00000000 ____D C:\ProgramData\NexonEU
2013-07-15 19:50 - 2013-07-15 19:26 - 00000000 ____D C:\Nexon
2013-07-15 19:50 - 2013-07-15 19:26 - 00000000 ____D C:\Download
2013-07-15 19:26 - 2013-07-15 19:26 - 00524288 _____ (Nexon) C:\Users\Tobias\Downloads\CAE_Downloader.exe
2013-07-15 19:26 - 2013-07-15 19:26 - 00446464 _____ (NEXON Inc.) C:\Windows\NEXON_EU_DownloaderUpdater.exe
2013-07-15 19:26 - 2013-07-15 19:26 - 00000235 _____ C:\Windows\SysWOW64\nxEuUninstall.bat
2013-07-14 17:46 - 2012-12-16 13:15 - 00001072 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001Core.job
2013-07-13 16:02 - 2013-06-01 17:06 - 00002374 _____ C:\Users\Tobias\Desktop\Google Chrome.lnk
2013-07-13 10:48 - 2012-12-16 13:15 - 00004096 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001UA
2013-07-13 10:47 - 2012-12-16 13:15 - 00003700 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001Core
2013-07-11 20:32 - 2009-07-14 06:45 - 00431552 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-11 20:30 - 2013-03-14 21:23 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-11 20:30 - 2013-03-14 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-11 20:29 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-11 20:29 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-11 20:28 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-11 19:56 - 2011-04-16 16:43 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-11 01:41 - 2013-07-11 01:41 - 00000000 _____ C:\Windows\SysWOW64\shoB114.tmp
2013-07-07 13:54 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-07-07 00:31 - 2013-07-07 00:31 - 00008355 _____ C:\Users\Tobias\Documents\Unbenannt 1.ods
2013-07-06 00:18 - 2011-04-13 20:39 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\SoftGrid Client
2013-07-05 22:10 - 2013-07-05 22:10 - 00159535 _____ C:\Users\Tobias\Downloads\proxtube_1.2.2 (1).crx
2013-07-05 22:09 - 2013-07-05 22:09 - 00159535 _____ C:\Users\Tobias\Downloads\proxtube_1.2.2.crx
2013-07-05 22:09 - 2013-07-05 22:09 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1) (2).crx
2013-07-05 22:06 - 2013-07-05 22:06 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1).crx
2013-07-05 22:06 - 2013-07-05 22:06 - 00159343 _____ C:\Users\Tobias\Downloads\proxtube (1) (1).crx
2013-07-05 21:57 - 2013-07-05 21:57 - 00148730 _____ C:\Users\Tobias\Downloads\proxtube121.zip
2013-07-05 17:43 - 2011-04-13 17:48 - 00113272 _____ C:\Users\Tobias\AppData\Local\GDIPFONTCACHEV1.DAT
2013-07-05 17:42 - 2012-08-16 13:23 - 00112202 _____ C:\Windows\PFRO.log
2013-07-04 21:23 - 2013-07-04 21:23 - 00001721 _____ C:\Users\Tobias\Documents\Neue Datenbank1.odb
2013-07-04 21:15 - 2013-07-04 21:15 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-07-04 21:15 - 2013-07-04 21:15 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-07-04 21:15 - 2013-07-04 21:15 - 00000000 ____D C:\Program Files\Java
2013-07-04 21:15 - 2012-07-13 18:09 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2013-07-04 21:15 - 2012-07-13 18:09 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2013-07-04 21:13 - 2013-07-04 21:13 - 33150376 _____ (Oracle Corporation) C:\Users\Tobias\Downloads\jre-7u25-windows-x64.exe
2013-07-04 21:11 - 2013-07-04 21:11 - 00001721 _____ C:\Users\Tobias\Documents\Neue Datenbank.odb
2013-07-04 21:10 - 2013-07-04 21:10 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\OpenOffice.org
2013-07-04 21:10 - 2011-04-13 17:47 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-07-04 21:09 - 2013-07-04 21:01 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3
2013-07-04 21:09 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-07-04 21:03 - 2013-07-04 21:03 - 00001244 _____ C:\Users\Tobias\Desktop\OpenOffice.org 3.4.1.lnk
2013-07-04 21:03 - 2013-07-04 21:03 - 00000000 ___SD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
2013-07-04 20:58 - 2013-07-04 20:56 - 152249762 _____ C:\Users\Tobias\Downloads\Apache_OpenOffice_incubating_3.4.1_Win_x86_install_de.exe
2013-07-04 16:36 - 2012-06-20 13:11 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-04 16:35 - 2013-07-04 16:35 - 00038043 _____ C:\Users\Tobias\Downloads\Physik-Wasserkraft.pptx
2013-07-04 16:33 - 2011-02-23 03:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-07-04 16:31 - 2009-07-14 09:45 - 00000000 ____D C:\Windows\ShellNew
2013-07-04 16:27 - 2009-07-14 04:34 - 00000387 _____ C:\Windows\win.ini
2013-07-04 16:00 - 2011-04-13 17:47 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2013-07-01 23:07 - 2013-07-01 23:07 - 00092672 _____ (Option^Explicit Software vbtechcd@gmail.com) C:\Users\Tobias\Downloads\KillBox.exe
2013-07-01 23:07 - 2013-07-01 23:07 - 00000000 ____D C:\!KillBox
2013-07-01 23:05 - 2013-07-01 23:04 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Tobias\Downloads\spybot-2.1.exe
2013-06-28 17:58 - 2011-04-13 20:24 - 00002021 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2013-06-28 17:58 - 2011-04-13 20:22 - 00000000 ____D C:\ProgramData\Adobe
2013-06-27 20:18 - 2013-06-27 20:18 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-06-27 20:18 - 2013-06-27 20:18 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-06-26 16:49 - 2013-06-26 16:44 - 00038043 _____ C:\Users\Tobias\Documents\Physik-Wasserkraft.pptx
2013-06-20 10:54 - 2013-06-05 14:26 - 00000000 ____D C:\Windows\SysWOW64\WNLT
2013-06-19 12:43 - 2011-02-23 02:49 - 00017920 _____ C:\Windows\SysWOW64\rpcnetp.dll
2013-06-19 12:41 - 2011-02-23 02:48 - 00017920 _____ C:\Windows\SysWOW64\rpcnetp.exe
2013-06-18 17:59 - 2013-06-17 20:34 - 00000000 ____D C:\Program Files (x86)\BigMacroTool
2013-06-18 17:58 - 2013-06-18 17:58 - 00603961 _____ (TLProd ) C:\Users\Tobias\Downloads\bigmacrotoolsetup.exe
2013-06-18 13:27 - 2013-06-18 13:27 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\redsn0w
2013-06-18 13:16 - 2013-06-18 13:16 - 00903072 _____ (Oracle Corporation) C:\Users\Tobias\Downloads\chromeinstall-7u21.exe
2013-06-17 20:33 - 2013-06-17 20:32 - 00617312 _____ (www.download-sponsor.de) C:\Users\Tobias\Downloads\bigmacrotoolsetup1.0.exe
2013-06-17 17:16 - 2013-06-17 17:16 - 00000000 ____D C:\Users\Tobias\AppData\Local\{56693CF3-733D-4AD1-8514-0A767E016D56}
2013-06-17 17:16 - 2011-12-15 19:45 - 00000000 ____D C:\Users\Tobias\AppData\Local\Windows Live
Files to move or delete:
====================
C:\ProgramData\FullRemove.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-04 18:22
==================== End Of Log ============================
--- --- ---
Code:
Alles auswählen Aufklappen ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-07-2013 02
Ran by Tobias at 2013-07-17 20:24:04
Running from C:\Users\Tobias\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
7-Zip 9.20 (x32)
Adobe Flash Player 10 ActiveX (x32 Version: 10.1.85.3)
Adobe Flash Player 11 Plugin (x32 Version: 11.3.300.268)
Adobe Reader X (10.0.1) - Deutsch (x32 Version: 10.0.1)
Akamai NetSession Interface (HKCU)
Akamai NetSession Interface (x32)
Amazon MP3-Downloader 1.0.9 (x32)
Angry Birds (x32 Version: 1.6.2)
Apple Application Support (x32 Version: 2.3.2)
Apple Mobile Device Support (Version: 6.0.1.3)
Apple Software Update (x32 Version: 2.1.3.127)
ASUS AI Recovery (x32 Version: 1.0.13)
ASUS FancyStart (x32 Version: 1.0.8)
ASUS LifeFrame3 (x32 Version: 3.0.20)
ASUS Live Update (x32 Version: 2.5.9)
ASUS Live Update (x32 Version: 3.0.6)
ASUS Power4Gear Hybrid (Version: 1.1.43)
ASUS SmartLogon (x32 Version: 1.0.0008)
ASUS Splendid Video Enhancement Technology (x32 Version: 1.02.0030)
ASUS Virtual Camera (x32 Version: 1.0.20)
ASUS WebStorage (x32 Version: 3.0.84.161)
AsusVibe2.0 (x32 Version: 2.0.3.585)
ATK Package (x32 Version: 1.0.0007)
Avira Free Antivirus (x32 Version: 12.1.9.2400)
BigMacroTool 1.5 (x32)
Bonjour (Version: 3.0.0.10)
Bookworm Deluxe (x32)
Brother MFL-Pro Suite MFC-J265W (x32 Version: 1.0.3.0)
Combat Arms EU (x32)
Complément Messenger (x32 Version: 15.4.3502.0922)
Complemento Messenger (x32 Version: 15.4.3502.0922)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
Cooking Dash (x32)
CyberLink LabelPrint (x32 Version: 2.5.1908)
CyberLink Power2Go (x32 Version: 6.1.3602c)
CyberLink PowerDVD 10 (x32 Version: 10.0.2312.52)
D3DX10 (x32 Version: 15.4.2368.0902)
EA SPORTS Game Face Browser Plugin 1.8.0.0 (HKCU Version: 1.8.0.0)
eaner (Version: 3.06)
ETDWare PS/2-X64 8.0.5.0_WHQL (Version: 8.0.5.0)
Fast Boot (Version: 1.0.8)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922)
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Game Park Console (x32 Version: 6.2.1.1)
Google Chrome (HKCU Version: 28.0.1500.72)
Google Earth (x32 Version: 6.1.0.5001)
Google Update Helper (x32 Version: 1.3.21.115)
Governor of Poker (x32)
Hotel Dash Suite Success (x32)
IB Updater Service (x32 Version: 3.0.5.4)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2291)
Intel(R) Turbo Boost Technology Monitor (Version: 1.0.400.4)
Internet Explorer Toolbar 4.6 by SweetPacks (x32 Version: 4.6.0004)
iTunes (Version: 11.0.1.12)
Java 7 Update 25 (64-bit) (Version: 7.0.250)
Java(TM) 6 Update 33 (x32 Version: 6.0.330)
Java(TM) 7 Update 5 (x32 Version: 7.0.50)
JavaFX 2.1.1 (x32 Version: 2.1.1)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Mahjongg dimensions (x32)
Mesh Runtime (x32 Version: 15.4.5722.2)
Messenger Companion (x32 Version: 15.4.3502.0922)
Messenger 分享元件 (x32 Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000)
Microsoft PowerPoint Viewer (x32 Version: 14.0.6029.1000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
MinecraftAlpha (x32)
Mozilla Firefox 17.0.1 (x86 de) (x32 Version: 17.0.1)
Mozilla Maintenance Service (x32 Version: 17.0.1)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (KB973685) (x32 Version: 4.30.2107.0)
Need For Speed™ World (x32 Version: 1.0.0.857)
Netzmanager (Version: 1.07)
Netzmanager (x32 Version: 1.07)
NVIDIA Display Control Panel (Version: 6.14.12.6721)
NVIDIA Grafiktreiber 267.21 (Version: 267.21)
NVIDIA Install Application (Version: 2.265.39.0)
NVIDIA Optimus 1.0.21 (Version: 1.0.21)
NVIDIA Update Components (Version: 1.0.21)
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593)
Pando Media Booster (x32 Version: 2.3.6.0)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.21.531.2010)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6294)
Realtek USB 2.0 Reader Driver (x32 Version: 6.1.7600.10001)
Skype Click to Call (x32 Version: 6.3.11079)
Skype™ 6.3 (x32 Version: 6.3.107)
Sonic Focus (x32 Version: 1.00.0000)
syncables desktop SE (x32 Version: 5.5.746.11492)
System Requirements Lab for Intel (x32 Version: 4.5.5.0)
Trend Micro™ Titanium™ Internet Security (Version: 3.00)
Uncompressor (HKCU)
Unity Web Player (HKCU Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update Manager for SweetPacks 1.1 (x32 Version: 1.1.0008)
USB2.0 UVC VGA WebCam (Version: 5.8.55133.208)
Visual Studio 2008 x64 Redistributables (x32 Version: 10.0.0.2)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Family Safety (Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Live 影像中心 (x32 Version: 15.4.3502.0922)
Windows Live 程式集 (x32 Version: 15.4.3502.0922)
WinFlash (x32 Version: 2.31.0)
Wireless Console 3 (x32 Version: 3.0.19)
World of Goo (x32)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (x32 Version: 15.4.5722.2)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922)
מסייע Messenger (x32 Version: 15.4.3502.0922)
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (x32 Version: 15.4.5722.2)
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (x32 Version: 15.4.5722.2)
==================== Restore Points =========================
05-07-2013 20:30:49 Windows Update
07-07-2013 17:24:52 Windows-Sicherung
09-07-2013 19:02:24 Windows Update
11-07-2013 17:31:11 Windows Update
14-07-2013 17:37:23 Windows-Sicherung
15-07-2013 18:52:00 Installed League of Legends
16-07-2013 16:42:42 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0F967396-06A1-4FAF-9ADA-E389205B0174} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {181DBCC8-644E-46C0-8666-4CA125FCE4F9} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {1FA00374-14B7-41F6-B313-7FF0D6F93A1C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe [2010-11-20] (Microsoft Corporation)
Task: {2F0EE735-D83A-46BF-839C-1038FCEA8557} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {53091F7A-268A-4B0D-ACC3-2456404C3FC0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001UA => C:\Users\Tobias\AppData\Local\Google\Update\GoogleUpdate.exe [2012-12-16] (Google Inc.)
Task: {5B8A1704-28BC-448D-8F4F-7D38B1829F48} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-18] (ASUS)
Task: {5E1D0F47-D650-4412-BA8E-B1F0DB883839} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-02-23] (Google Inc.)
Task: {626D6770-243E-489E-8EBF-9D7DFE194C9A} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation)
Task: {686C99CA-DA03-4DBB-9B42-DFA7FD0BA70F} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-12-02] (ASUS)
Task: {68BA7398-75DA-4209-9C4E-90532ED63B3F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001Core => C:\Users\Tobias\AppData\Local\Google\Update\GoogleUpdate.exe [2012-12-16] (Google Inc.)
Task: {7A6EFDD7-EC01-465A-836A-04812CB5A047} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] ()
Task: {848E70CD-E41A-46AD-A811-58D5BB968222} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS)
Task: {84EE8B9E-48E9-420B-825F-945CD9F59841} - System32\Tasks\{CE98A26D-709D-4DEB-A652-04877E2CB70F} => C:\Program Files (x86)\Brother\ControlCenter3\BrCtrCen.exe [2008-12-24] (Brother Industries, Ltd.)
Task: {AB4FCA66-7159-46B3-93EE-A4338E826B46} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-26] (Adobe Systems Incorporated)
Task: {B1063C6E-DC1C-4B77-A780-F6F75B8106A9} - System32\Tasks\{44B16150-0B42-4BF6-BF7A-979414C8F603} => C:\Program Files (x86)\Brother\ControlCenter3\BrCtrCen.exe [2008-12-24] (Brother Industries, Ltd.)
Task: {B374221B-5BDC-4F9F-B44E-A79F0D46842D} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS)
Task: {C4A46AEB-E07F-472E-8B67-5C0F1BB67FCB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-02-23] (Google Inc.)
Task: {C801B48C-9DF2-488B-9681-6CEADCD5B808} - System32\Tasks\{14A1C13D-75DA-4FE4-B300-B0C8DD2F0733} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe [2011-03-22] (ecareme)
Task: {CF3989AB-8B69-4CAE-894C-14DCD5DFE9DD} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation)
Task: {D8A79B4D-1372-4F21-B679-AED9604E3081} - System32\Tasks\{A9E08C42-1130-45A7-8521-4BCE6EA76332} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe [2011-03-22] (ecareme)
Task: {F8E5CC3A-F562-4878-8958-62DEA775BAE5} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001Core.job => C:\Users\Tobias\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1757420857-2183359055-886952040-1001UA.job => C:\Users\Tobias\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7260146
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 7260146
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8049
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8049
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6910
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6910
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:15:59 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5818
System errors:
=============
Error: (07/17/2013 08:16:53 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst ShellHWDetection erreicht.
Error: (07/17/2013 01:00:31 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Google Update Service (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/17/2013 01:00:31 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update Service (gupdate) erreicht.
Error: (07/17/2013 00:57:44 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1053
Error: (07/17/2013 00:56:19 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Netzmanager Infrastruktur Informationssystem Dienst erreicht.
Error: (07/17/2013 00:55:49 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Net.Tcp-Portfreigabedienst" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/17/2013 00:55:49 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Tcp-Portfreigabedienst erreicht.
Error: (07/17/2013 00:43:50 AM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (07/16/2013 06:36:49 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Google Update Service (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/16/2013 06:36:49 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update Service (gupdate) erreicht.
Microsoft Office Sessions:
=========================
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7260146
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 7260146
Error: (07/17/2013 08:16:54 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8049
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8049
Error: (07/17/2013 06:16:02 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6910
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6910
Error: (07/17/2013 06:16:00 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/17/2013 06:15:59 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5818
==================== Memory info ===========================
Percentage of memory in use: 75%
Total physical RAM: 4007.85 MB
Available physical RAM: 970.05 MB
Total Pagefile: 8013.89 MB
Available Pagefile: 4721.03 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:174.66 GB) (Free:104.79 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)]
Drive d: (DATA) (Fixed) (Total:502.49 GB) (Free:119.22 GB) NTFS (Disk=0 Partition=3)
Drive e: (Context_21_Start) (CDROM) (Total:0.5 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: E0C5913D)
Partition 1: (Not Active) - (Size=21 GB) - (Type=1C)
Partition 2: (Active) - (Size=175 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=502 GB) - (Type=OF Extended)
==================== End Of Log ============================
Vielen Dank!