|
Log-Analyse und Auswertung: BKA-TrojanerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
05.09.2013, 22:15 | #46 |
| BKA-Trojaner Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 05-08-2013 Ran by Karo at 2013-09-05 23:14:39 Run:6 Running from C:\Dokumente und Einstellungen\Karo\Desktop Boot Mode: Normal ============================================== HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\ctfmon32.exe => Value not found. "C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat" => File/Directory not found. ==== End of Fixlog ==== |
06.09.2013, 09:52 | #47 | |
/// the machine /// TB-Ausbilder | BKA-TrojanerZitat:
__________________ |
06.09.2013, 14:13 | #48 |
| BKA-TrojanerFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-09-2013 Ran by Karo (administrator) on ERIC-2E84DA5617 on 06-09-2013 15:10:42 Running from C:\Dokumente und Einstellungen\Karo\Desktop Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avguard.exe (Sun Microsystems, Inc.) C:\Programme\Java\jre6\bin\jqs.exe (Logitech Inc.) C:\Programme\Gemeinsame Dateien\Logishrd\LVMVFM\LVPrcSrv.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Skype Technologies S.A.) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype\Toolbars\Skype C2C Service\c2c_service.exe (TuneUp Software) C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (TuneUp Software) C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Logitech Inc.) C:\Programme\Logitech\LWS\Webcam Software\LWS.exe (Hewlett-Packard) C:\Programme\HP\HP Software Update\HPWuSchd2.exe (Apple Inc.) C:\Programme\iTunes\iTunesHelper.exe (Samsung Electronics Co., Ltd.) C:\Programme\Samsung\Kies\KiesTrayAgent.exe () C:\Programme\Logitech\LWS\Webcam Software\CameraHelperShell.exe (Logitech Inc.) C:\Programme\Logitech\Vid\vid.exe () C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe (Apple Inc.) C:\Programme\iPod\bin\iPodService.exe (Realtek Semiconductor Corp.) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Microsoft Corporation) C:\Programme\Windows Desktop Search\WindowsSearch.exe (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\soffice.bin (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpc01.exe (Logitech, Inc.) C:\Programme\Logitech\LWS\LU\LULnchr.exe (Logitech, Inc.) C:\Programme\Logitech\LWS\LU\LogitechUpdate.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [16062464 2006-12-19] (Realtek Semiconductor Corp.) HKLM\...\Run: [SkyTel] - C:\Windows\SkyTel.EXE [2879488 2006-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [281768 2010-12-13] (Avira GmbH) HKLM\...\Run: [AppleSyncNotifier] - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleSyncNotifier.exe [58656 2011-04-20] (Apple Inc.) HKLM\...\Run: [LWS] - C:\Programme\Logitech\LWS\Webcam Software\LWS.exe [165208 2010-05-07] (Logitech Inc.) HKLM\...\Run: [HP Software Update] - C:\Programme\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.) HKLM\...\Run: [iTunesHelper] - C:\Programme\iTunes\iTunesHelper.exe [421736 2011-11-13] (Apple Inc.) HKLM\...\Run: [KiesTrayAgent] - C:\Programme\Samsung\Kies\KiesTrayAgent.exe [309688 2012-12-03] (Samsung Electronics Co., Ltd.) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-10] (Adobe Systems Incorporated) HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1 HKLM\...\Policies\Explorer: [NoDriveAutoRun] 67108863 HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 323 HKLM\...\Policies\Explorer: [NoDrives] 0 HKCU\...\Run: [StartCCC] - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [90112 2006-11-10] () HKCU\...\Run: [Logitech Vid HD] - C:\Programme\Logitech\Vid\vid.exe [6061400 2010-05-11] (Logitech Inc.) HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 323 HKCU\...\Policies\Explorer: [NoDriveAutoRun] 67108863 HKCU\...\Policies\Explorer: [NoDrives] 0 HKU\Administrator\...\Run: [] - [x] HKU\Administrator\...\Run: [StartCCC] - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [ 2006-11-10] () HKU\Administrator\...\Run: [swg] - "C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Administrator\...\Run: [MSMSGS] - C:\Programme\Messenger\msmsgs.exe [ 2008-04-14] (Microsoft Corporation) HKU\Administrator\...\Run: [ctfmon32.exe] - C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat,XFG00 [x] <===== ATTENTION HKU\Administrator\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe -update activex [x] HKU\Default User\...\RunOnce: [nltide_3] - C:\Windows\System32\advpack.dll [ 2009-03-08] (Microsoft Corporation) HKU\Default User\...\RunOnce: [_nltide_3] - C:\Windows\System32\advpack.dll [ 2009-03-08] (Microsoft Corporation) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\REALTEK 11n USB Wireless LAN Utility.lnk ShortcutTarget: REALTEK 11n USB Wireless LAN Utility.lnk -> C:\Programme\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Windows Search.lnk ShortcutTarget: Windows Search.lnk -> C:\Programme\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation) Startup: C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Programme\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {65759893-8694-43BC-876A-6699814FD7C9} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=827316&p={searchTerms} BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKCU -No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1296499764250 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL (Skype Technologies) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Programme\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx CHR HKLM\...\Chrome\Extension: [odnofacmifkjndflfmmplhckcbfjckhj] - C:\Programme\LyriXeeker\125.crx ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [136360 2011-05-08] (Avira GmbH) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [269480 2011-06-28] (Avira GmbH) R3 hpqcxs08; C:\Programme\HP\Digital Imaging\bin\hpqcxs08.dll [253568 2009-11-18] (Hewlett-Packard Co.) R2 hpqddsvc; C:\Programme\HP\Digital Imaging\bin\hpqddsvc.dll [137344 2009-11-18] (Hewlett-Packard Co.) R3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [821608 2011-11-13] (Apple Inc.) R2 LVPrcSrv; C:\Programme\Gemeinsame Dateien\Logishrd\LVMVFM\LVPrcSrv.exe [162648 2010-05-07] (Logitech Inc.) R2 MBAMScheduler; C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Skype C2C Service; C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S2 SkypeUpdate; C:\Programme\Skype\Updater\Updater.exe [161384 2013-02-28] (Skype Technologies) R2 TuneUp.UtilitiesSvc; C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [1723744 2012-11-29] (TuneUp Software) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2009-02-04] (Microsoft Corporation) R2 JavaQuickStarterService; "C:\Programme\Java\jre6\bin\jqs.exe" -service -config "C:\Programme\Java\jre6\lib\deploy\jqs\jqs.conf" [x] ==================== Drivers (Whitelisted) ==================== R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21361 2011-01-31] (Cisco Systems, Inc.) R3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1606368 2011-01-31] (Atheros Communications, Inc.) R1 avgio; C:\Programme\Avira\AntiVir Desktop\avgio.sys [11608 2010-06-17] (Avira GmbH) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [66616 2011-06-28] (Avira GmbH) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [138192 2011-06-28] (Avira GmbH) S3 CompFilter; C:\Windows\System32\DRIVERS\lvbusflt.sys [20704 2010-05-14] (Logitech Inc.) S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49920 2008-10-29] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2008-10-29] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21568 2008-10-29] (HP) R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25824 2010-05-07] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2013-09-01] () S3 sscebus; C:\Windows\System32\DRIVERS\sscebus.sys [98560 2012-06-27] (MCCI Corporation) S3 sscemdfl; C:\Windows\System32\DRIVERS\sscemdfl.sys [14848 2012-06-27] (MCCI Corporation) S3 sscemdm; C:\Windows\System32\DRIVERS\sscemdm.sys [123648 2012-06-27] (MCCI Corporation) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2010-06-17] (Avira GmbH) R2 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5504 2012-06-03] () R3 TuneUpUtilitiesDrv; C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [10088 2012-11-16] (TuneUp Software) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S4 IntelIde; No ImagePath S3 USBAAPL; System32\Drivers\usbaapl.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-06 15:11 - 2013-09-06 15:11 - 00011213 _____ C:\Temp\log1 2013-09-06 15:11 - 2013-09-06 15:11 - 00001191 _____ C:\Temp\ads000 2013-09-06 15:10 - 2013-09-06 15:11 - 00014341 _____ C:\Temp\frstlog 2013-09-06 15:10 - 2013-09-06 15:10 - 01081729 _____ (Farbar) C:\Dokumente und Einstellungen\Karo\Desktop\FRST.exe 2013-09-06 15:10 - 2013-09-06 15:10 - 00110462 _____ C:\Temp\modules00 2013-09-06 15:10 - 2013-09-06 15:10 - 00000303 _____ C:\Temp\users00 2013-09-06 15:10 - 2013-09-06 15:10 - 00000003 _____ C:\Temp\others 2013-09-06 15:09 - 2013-09-06 15:10 - 00032768 ____T C:\Temp\~DFD64F.tmp 2013-09-06 14:58 - 2013-09-06 15:10 - 00020480 ____T C:\Temp\~DFD3B6.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00032768 _____ C:\Temp\~DFFEF1.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00032768 _____ C:\Temp\~DFD4.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00016384 ____T C:\Temp\~DFB4C9.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00016384 _____ C:\Temp\~DFFFE0.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFFFEE.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFFEFF.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFE2.tmp 2013-09-06 14:51 - 2013-09-06 14:51 - 00006582 _____ C:\Temp\HPWUCl002.log 2013-09-06 14:46 - 2013-09-06 14:46 - 00001313 ____T C:\Temp\MAR4D.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00001285 ____T C:\Temp\MAR4E.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00000000 ____D C:\Temp\svjlm.tmp 2013-09-06 14:45 - 2013-09-06 14:45 - 00000000 ____D C:\Temp\WPDNSE 2013-09-05 23:12 - 2011-02-02 22:40 - 00157472 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaws.exe 2013-09-05 23:12 - 2011-02-02 22:40 - 00145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaw.exe 2013-09-05 23:12 - 2011-02-02 22:40 - 00145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\java.exe 2013-09-05 23:11 - 2013-09-05 23:12 - 00028832 _____ C:\Temp\java_install.log 2013-09-05 23:11 - 2013-09-05 23:12 - 00003802 _____ C:\Temp\java_install_reg.log 2013-09-05 23:11 - 2013-09-05 23:12 - 00000409 _____ C:\Temp\JAUReg.log 2013-09-05 23:10 - 2013-09-05 23:10 - 00077824 _____ C:\Temp\fd8c4.mst 2013-09-05 23:08 - 2013-09-05 23:09 - 00000000 ____D C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} 2013-09-05 22:57 - 2013-09-05 22:57 - 00001313 ____T C:\Temp\MAR4B.tmp 2013-09-05 22:57 - 2013-09-05 22:57 - 00001285 ____T C:\Temp\MAR4C.tmp 2013-09-04 20:08 - 2013-09-04 20:08 - 00000000 ____D C:\Temp\RarSFX1 2013-09-04 19:00 - 2013-09-04 19:00 - 02347384 _____ (ESET) C:\Dokumente und Einstellungen\Karo\Desktop\esetsmartinstaller_enu.exe 2013-09-04 18:41 - 2013-09-04 18:41 - 00001313 ____T C:\Temp\MAR49.tmp 2013-09-04 18:41 - 2013-09-04 18:41 - 00001285 ____T C:\Temp\MAR4A.tmp 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Temp\JRT.txt 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Dokumente und Einstellungen\Karo\Desktop\JRT.txt 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\WINDOWS\ERUNT 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\Temp\jrt 2013-09-03 19:18 - 2013-09-03 19:18 - 00001313 ____T C:\Temp\MAR47.tmp 2013-09-03 19:18 - 2013-09-03 19:18 - 00001285 ____T C:\Temp\MAR48.tmp 2013-09-03 19:04 - 2013-09-03 19:09 - 00000000 ____D C:\AdwCleaner 2013-09-03 19:04 - 2013-09-03 19:09 - 00000000 _____ C:\Temp\preferences 2013-09-03 19:04 - 2013-09-03 19:04 - 01037222 _____ C:\Dokumente und Einstellungen\Karo\Desktop\adwcleaner.exe 2013-09-03 19:02 - 2013-09-03 19:02 - 01028757 _____ (Thisisu) C:\Dokumente und Einstellungen\Karo\Desktop\JRT.exe 2013-09-03 18:58 - 2013-09-03 18:58 - 00001313 ____T C:\Temp\MAR45.tmp 2013-09-03 18:58 - 2013-09-03 18:58 - 00001285 ____T C:\Temp\MAR46.tmp 2013-09-03 18:33 - 2013-09-03 18:33 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Malwarebytes 2013-09-03 18:32 - 2013-09-03 18:33 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-09-03 18:32 - 2013-09-03 18:32 - 00000756 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-03 18:32 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-09-03 18:31 - 2013-09-03 18:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Karo\Desktop\mbam-setup-1.75.0.1300.exe 2013-09-03 17:55 - 2013-09-03 17:55 - 00001313 ____T C:\Temp\MAR43.tmp 2013-09-03 17:55 - 2013-09-03 17:55 - 00001285 ____T C:\Temp\MAR44.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001313 ____T C:\Temp\MAR41.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001285 ____T C:\Temp\MAR42.tmp 2013-09-02 20:28 - 2013-09-02 20:28 - 00000000 ____D C:\_OTL 2013-09-02 20:28 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-09-02 19:56 - 2013-09-02 19:56 - 00001417 _____ C:\Temp\hpC3.html 2013-09-02 19:54 - 2013-09-02 19:55 - 00000637 _____ C:\Temp\IOConnection.txt 2013-09-02 19:52 - 2013-09-02 19:53 - 00000000 ____D C:\Temp\7zS50BD 2013-09-02 19:41 - 2013-09-02 19:41 - 00081405 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\wohngeld.xps 2013-09-02 19:39 - 2013-09-02 19:40 - 00012783 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\WOHNGEL FORTZAHLUNG.odt 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO63.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO61.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO5D.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\HP 2013-09-02 18:25 - 2013-09-02 18:25 - 00001313 ____T C:\Temp\MAR3F.tmp 2013-09-02 18:25 - 2013-09-02 18:25 - 00001285 ____T C:\Temp\MAR40.tmp 2013-09-02 18:24 - 2013-09-02 18:24 - 00000000 ____D C:\Temp\comtypes_cache 2013-09-01 14:48 - 2013-09-01 14:48 - 00449554 _____ C:\OTL.Txt 2013-09-01 14:48 - 2013-09-01 14:48 - 00046964 _____ C:\Extras.Txt 2013-09-01 14:39 - 2013-09-01 14:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Notepad++ 2013-09-01 14:14 - 2013-09-03 19:09 - 00000000 ____D C:\Programme\Uniblue 2013-09-01 14:14 - 2013-09-03 19:09 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Uniblue 2013-09-01 14:14 - 2013-09-01 14:14 - 00001576 _____ C:\Dokumente und Einstellungen\All Users\Desktop\CDBurnerXP.lnk 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Temp\CDBurnerXP-updates 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\CDBurnerXP 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Canneverbe Limited 2013-09-01 14:14 - 2012-06-03 10:45 - 00005504 _____ C:\WINDOWS\system32\Drivers\StarOpen.sys 2013-09-01 14:13 - 2013-09-01 14:13 - 05199536 _____ (Canneverbe Limited ) C:\Dokumente und Einstellungen\Karo\Desktop\cdbxp_setup_4.5.2.4214.exe 2013-09-01 14:09 - 2013-09-01 14:09 - 00691696 _____ C:\WINDOWS\system32\Drivers\sptd.sys 2013-09-01 14:09 - 2013-09-01 14:09 - 00000000 ____D C:\Programme\LSoft Technologies 2013-09-01 14:02 - 2013-09-01 14:02 - 127231689 _____ (Igor Pavlov) C:\Dokumente und Einstellungen\Karo\Desktop\OTLPENet.exe 2013-09-01 13:57 - 2013-09-01 13:57 - 00384512 _____ C:\Dokumente und Einstellungen\Karo\Desktop\IsoBurner-Setup.exe 2013-09-01 12:23 - 2013-09-01 12:23 - 00001313 ____T C:\Temp\MAR3D.tmp 2013-09-01 12:23 - 2013-09-01 12:23 - 00001285 ____T C:\Temp\MAR3E.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001313 ____T C:\Temp\MAR3B.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001285 ____T C:\Temp\MAR3C.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001313 ____T C:\Temp\MAR39.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001285 ____T C:\Temp\MAR3A.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001313 ____T C:\Temp\MAR37.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001285 ____T C:\Temp\MAR38.tmp 2013-08-30 08:31 - 2013-08-30 08:31 - 00006582 _____ C:\Temp\HPWUCl001.log 2013-08-30 08:26 - 2013-08-30 08:26 - 00001313 ____T C:\Temp\MAR35.tmp 2013-08-30 08:26 - 2013-08-30 08:26 - 00001285 ____T C:\Temp\MAR36.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001313 ____T C:\Temp\MAR33.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001285 ____T C:\Temp\MAR34.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001313 ____T C:\Temp\MAR31.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001285 ____T C:\Temp\MAR32.tmp 2013-08-28 17:31 - 2013-08-28 17:32 - 00004243 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-28 17:31 - 2013-08-28 17:31 - 00001313 ____T C:\Temp\MAR2F.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00001285 ____T C:\Temp\MAR30.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-27 20:03 - 2013-08-27 20:03 - 00001313 ____T C:\Temp\MAR2D.tmp 2013-08-27 20:03 - 2013-08-27 20:03 - 00001285 ____T C:\Temp\MAR2E.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001313 ____T C:\Temp\MAR2B.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001285 ____T C:\Temp\MAR2C.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001313 ____T C:\Temp\MAR29.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001285 ____T C:\Temp\MAR2A.tmp 2013-08-25 09:56 - 2013-09-05 23:12 - 00000598 _____ C:\Temp\AUCHECK_PARSER.txt 2013-08-25 09:56 - 2013-08-30 08:54 - 00000604 _____ C:\Temp\AUCHECK_CORE.txt 2013-08-25 05:57 - 2013-08-25 05:57 - 00001313 ____T C:\Temp\MAR27.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001285 ____T C:\Temp\MAR28.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF990B.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF8AF4.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00016384 _____ C:\Temp\~DF8EA0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF99B0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF9332.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF8B4A.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DFBFF.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DF3C4D.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001313 ____T C:\Temp\MAR25.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001285 ____T C:\Temp\MAR26.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001313 ____T C:\Temp\MAR23.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001285 ____T C:\Temp\MAR24.tmp 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir32005 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2470 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir23556 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2083 2013-08-24 22:33 - 2013-08-24 22:37 - 00114688 ____T C:\Temp\~DFFF56.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF3A03.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF30EF.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 ____T C:\Temp\~DFACE4.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 _____ C:\Temp\~DF361D.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001313 ____T C:\Temp\MAR21.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001285 ____T C:\Temp\MAR22.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3A11.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3724.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3274.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001313 ____T C:\Temp\MAR1F.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001285 ____T C:\Temp\MAR20.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001313 ____T C:\Temp\MAR1D.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001285 ____T C:\Temp\MAR1E.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001313 ____T C:\Temp\MAR1B.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001285 ____T C:\Temp\MAR1C.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001313 ____T C:\Temp\MAR19.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001285 ____T C:\Temp\MAR1A.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001313 ____T C:\Temp\MAR17.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001285 ____T C:\Temp\MAR18.tmp 2013-08-21 12:20 - 2013-09-01 21:18 - 00344507 _____ C:\Temp\Quarantine.exe 2013-08-20 21:57 - 2013-08-20 21:57 - 00001313 ____T C:\Temp\MAR15.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001285 ____T C:\Temp\MAR16.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001313 ____T C:\Temp\MAR13.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001285 ____T C:\Temp\MAR14.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001313 ____T C:\Temp\MAR11.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001285 ____T C:\Temp\MAR12.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001313 ____T C:\Temp\MARF.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001285 ____T C:\Temp\MAR10.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001313 ____T C:\Temp\MARD.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001285 ____T C:\Temp\MARE.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001313 ____T C:\Temp\MARB.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001285 ____T C:\Temp\MARC.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001313 ____T C:\Temp\MAR9.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001285 ____T C:\Temp\MARA.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001313 ____T C:\Temp\MAR7.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001285 ____T C:\Temp\MAR8.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001313 ____T C:\Temp\MAR3.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001285 ____T C:\Temp\MAR6.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001313 ____T C:\Temp\MAR1.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001285 ____T C:\Temp\MAR2.tmp 2013-08-16 13:18 - 2013-09-05 23:12 - 00071402 _____ C:\Temp\jusched.log 2013-08-16 13:18 - 2013-08-16 13:18 - 00019213 _____ C:\ComboFix.txt 2013-08-16 13:15 - 2013-09-06 14:48 - 00159355 _____ C:\Temp\lws.man.xml 2013-08-16 13:15 - 2013-09-06 14:48 - 00000128 _____ C:\Temp\lws.man.xml.sig 2013-08-16 13:15 - 2013-09-06 14:46 - 00012012 _____ C:\Temp\hpqddusr.log 2013-08-16 13:15 - 2013-08-16 13:15 - 00001313 ____T C:\Temp\MAR4.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00001285 ____T C:\Temp\MAR5.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00000000 _____ C:\Temp\LuUpdater.log 2013-08-16 13:13 - 2013-09-06 14:46 - 00031838 _____ C:\Temp\AdobeARM.log 2013-08-16 13:13 - 2013-08-16 13:13 - 00027753 _____ C:\Temp\Spanish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027410 _____ C:\Temp\Italian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027235 _____ C:\Temp\French.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026260 _____ C:\Temp\Portuguese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026126 _____ C:\Temp\Russian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026080 _____ C:\Temp\Hungarian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025753 _____ C:\Temp\German.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025747 _____ C:\Temp\Dutch.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025082 _____ C:\Temp\Greek.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025071 _____ C:\Temp\Portuguese(Brazil).bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024312 _____ C:\Temp\Czech.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024297 _____ C:\Temp\Japanese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024221 _____ C:\Temp\Polish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024082 _____ C:\Temp\SWEDISH.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022857 _____ C:\Temp\Finnish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022783 _____ C:\Temp\Danish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022253 _____ C:\Temp\Turkish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021976 _____ C:\Temp\Thai.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021964 _____ C:\Temp\Norwegian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021914 _____ C:\Temp\English.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020972 _____ C:\Temp\Arabic.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020135 _____ C:\Temp\Korean.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00019553 _____ C:\Temp\Hebrew.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016949 _____ C:\Temp\TradChin.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016408 _____ C:\Temp\SimChin.bin 2013-08-16 13:11 - 2013-08-16 13:11 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG 2013-08-16 13:01 - 2013-08-16 13:01 - 00000000 _RSHD C:\cmdcons 2013-08-16 13:00 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2013-08-16 12:51 - 2013-08-16 12:51 - 00000227 _____ C:\Dokumente und Einstellungen\Karo\Desktop\CFSkript.txt 2013-08-16 12:45 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\nsc7E.tmp 2013-08-16 12:45 - 2013-08-16 12:45 - 05104782 ____R (Swearware) C:\Dokumente und Einstellungen\Karo\Desktop\ComboFix.exe 2013-08-16 12:43 - 2013-08-16 12:43 - 00000752 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Verknüpfung mit ComboFix.lnk 2013-08-16 00:56 - 2013-08-16 00:57 - 00011907 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-16 00:52 - 2013-08-16 00:56 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-16 00:51 - 2013-08-16 00:51 - 00005189 _____ C:\WINDOWS\KB2863058.log 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-16 00:12 - 2013-08-16 00:51 - 00009070 _____ C:\WINDOWS\KB2850869.log 2013-08-16 00:11 - 2013-08-16 00:51 - 00010872 _____ C:\WINDOWS\KB2859537.log 2013-08-10 12:48 - 2013-08-10 12:48 - 00001711 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00001707 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp Utilities 2013.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Programme\TuneUp Utilities 2013 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\TuneUp Software 2013-08-10 12:48 - 2012-11-29 16:06 - 00031584 _____ (TuneUp Software) C:\WINDOWS\system32\TURegOpt.exe 2013-08-10 12:47 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\DVDVideoSoft 2013-08-10 12:47 - 2013-08-10 12:47 - 00001023 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Free YouTube to MP3 Converter.lnk 2013-08-10 12:47 - 2013-08-10 12:47 - 00000906 _____ C:\Dokumente und Einstellungen\All Users\Desktop\DVDVideoSoft Free Studio.lnk 2013-08-10 12:46 - 2013-08-10 12:47 - 00000000 ____D C:\Temp\8944214B-BAB0-7891-A63A-DE461084E7F1 2013-08-10 12:46 - 2013-08-10 12:47 - 00000000 ____D C:\Programme\DVDVideoSoft 2013-08-10 12:46 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\Gemeinsame Dateien\DVDVideoSoft 2013-08-10 12:44 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\is-6BI3I.tmp 2013-08-10 12:44 - 2013-08-10 13:00 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\DVDVideoSoft 2013-08-10 12:44 - 2013-08-10 12:44 - 01211376 _____ (DVDVideoSoft Ltd. ) C:\Dokumente und Einstellungen\Karo\Desktop\FreeYouTubeToMP3Converter-3.12.9.725.exe 2013-08-10 11:37 - 2013-08-16 12:50 - 00000327 _____ C:\Boot.bak 2013-08-10 11:37 - 2004-08-03 23:00 - 00262448 __RSH C:\cmldr 2013-08-10 11:35 - 2011-06-26 08:45 - 00256000 _____ C:\WINDOWS\PEV.exe 2013-08-10 11:35 - 2010-11-07 19:20 - 00208896 _____ C:\WINDOWS\MBR.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00098816 _____ C:\WINDOWS\sed.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00080412 _____ C:\WINDOWS\grep.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00068096 _____ C:\WINDOWS\zip.exe 2013-08-10 11:33 - 2013-08-16 13:18 - 00000000 ____D C:\Qoobox 2013-08-10 11:32 - 2013-08-16 13:11 - 00000000 ____D C:\WINDOWS\erdnt 2013-08-10 11:32 - 2013-08-10 11:32 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Verwaltung ==================== One Month Modified Files and Folders ======= 2013-09-06 15:11 - 2013-09-06 15:11 - 00011213 _____ C:\Temp\log1 2013-09-06 15:11 - 2013-09-06 15:11 - 00001191 _____ C:\Temp\ads000 2013-09-06 15:11 - 2013-09-06 15:10 - 00014341 _____ C:\Temp\frstlog 2013-09-06 15:10 - 2013-09-06 15:10 - 01081729 _____ (Farbar) C:\Dokumente und Einstellungen\Karo\Desktop\FRST.exe 2013-09-06 15:10 - 2013-09-06 15:10 - 00110462 _____ C:\Temp\modules00 2013-09-06 15:10 - 2013-09-06 15:10 - 00000303 _____ C:\Temp\users00 2013-09-06 15:10 - 2013-09-06 15:10 - 00000003 _____ C:\Temp\others 2013-09-06 15:10 - 2013-09-06 15:09 - 00032768 ____T C:\Temp\~DFD64F.tmp 2013-09-06 15:10 - 2013-09-06 14:58 - 00020480 ____T C:\Temp\~DFD3B6.tmp 2013-09-06 15:09 - 2011-01-31 20:36 - 01080232 _____ C:\WINDOWS\WindowsUpdate.log 2013-09-06 15:08 - 2011-02-02 15:09 - 00000000 ____D C:\Temp\MSNL 2013-09-06 15:07 - 2011-01-31 21:45 - 00000434 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F660A0B-21EB-4224-A64D-9FCAFC9DDFD5}.job 2013-09-06 14:58 - 2013-09-06 14:58 - 00032768 _____ C:\Temp\~DFFEF1.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00032768 _____ C:\Temp\~DFD4.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00016384 ____T C:\Temp\~DFB4C9.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00016384 _____ C:\Temp\~DFFFE0.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFFFEE.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFFEFF.tmp 2013-09-06 14:58 - 2013-09-06 14:58 - 00000512 ____T C:\Temp\~DFE2.tmp 2013-09-06 14:51 - 2013-09-06 14:51 - 00006582 _____ C:\Temp\HPWUCl002.log 2013-09-06 14:48 - 2013-08-16 13:15 - 00159355 _____ C:\Temp\lws.man.xml 2013-09-06 14:48 - 2013-08-16 13:15 - 00000128 _____ C:\Temp\lws.man.xml.sig 2013-09-06 14:46 - 2013-09-06 14:46 - 00001313 ____T C:\Temp\MAR4D.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00001285 ____T C:\Temp\MAR4E.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00000000 ____D C:\Temp\svjlm.tmp 2013-09-06 14:46 - 2013-08-16 13:15 - 00012012 _____ C:\Temp\hpqddusr.log 2013-09-06 14:46 - 2013-08-16 13:13 - 00031838 _____ C:\Temp\AdobeARM.log 2013-09-06 14:46 - 2011-02-01 20:50 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-09-06 14:46 - 2011-01-31 23:37 - 00000000 _____ C:\WINDOWS\RTacDbg.txt 2013-09-06 14:45 - 2013-09-06 14:45 - 00000000 ____D C:\Temp\WPDNSE 2013-09-06 14:44 - 2011-04-29 20:01 - 00000000 ____D C:\WINDOWS\system32\logishrd 2013-09-06 14:44 - 2011-02-02 15:48 - 00000157 _____ C:\WINDOWS\wiadebug.log 2013-09-06 14:44 - 2011-02-02 15:48 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-09-06 14:44 - 2011-01-31 20:43 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-09-05 23:32 - 2012-12-19 21:34 - 00065536 _____ C:\WINDOWS\system32\config\TuneUp.evt 2013-09-05 23:32 - 2011-02-02 00:25 - 00000190 ___SH C:\Dokumente und Einstellungen\Karo\ntuser.ini 2013-09-05 23:32 - 2011-02-02 00:25 - 00000000 ____D C:\Dokumente und Einstellungen\Karo 2013-09-05 23:32 - 2011-01-31 20:43 - 00032374 _____ C:\WINDOWS\SchedLgU.Txt 2013-09-05 23:12 - 2013-09-05 23:11 - 00028832 _____ C:\Temp\java_install.log 2013-09-05 23:12 - 2013-09-05 23:11 - 00003802 _____ C:\Temp\java_install_reg.log 2013-09-05 23:12 - 2013-09-05 23:11 - 00000409 _____ C:\Temp\JAUReg.log 2013-09-05 23:12 - 2013-08-25 09:56 - 00000598 _____ C:\Temp\AUCHECK_PARSER.txt 2013-09-05 23:12 - 2013-08-16 13:18 - 00071402 _____ C:\Temp\jusched.log 2013-09-05 23:12 - 2011-02-06 21:17 - 00000000 ____D C:\Temp\hsperfdata_Karo 2013-09-05 23:11 - 2011-01-31 20:24 - 01079632 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-09-05 23:10 - 2013-09-05 23:10 - 00077824 _____ C:\Temp\fd8c4.mst 2013-09-05 23:09 - 2013-09-05 23:08 - 00000000 ____D C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} 2013-09-05 23:08 - 2013-07-25 12:43 - 00001714 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Adobe Reader X.lnk 2013-09-05 22:57 - 2013-09-05 22:57 - 00001313 ____T C:\Temp\MAR4B.tmp 2013-09-05 22:57 - 2013-09-05 22:57 - 00001285 ____T C:\Temp\MAR4C.tmp 2013-09-05 22:55 - 2011-01-31 20:24 - 00000000 ____D C:\Programme 2013-09-05 22:55 - 2004-08-04 13:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl 2013-09-04 21:39 - 2012-10-16 21:22 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-09-04 20:16 - 2013-07-31 15:28 - 00031892 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Addition.txt 2013-09-04 20:08 - 2013-09-04 20:08 - 00000000 ____D C:\Temp\RarSFX1 2013-09-04 20:08 - 2013-08-03 12:14 - 00891115 _____ C:\Dokumente und Einstellungen\Karo\Desktop\SecurityCheck.exe 2013-09-04 19:00 - 2013-09-04 19:00 - 02347384 _____ (ESET) C:\Dokumente und Einstellungen\Karo\Desktop\esetsmartinstaller_enu.exe 2013-09-04 18:41 - 2013-09-04 18:41 - 00001313 ____T C:\Temp\MAR49.tmp 2013-09-04 18:41 - 2013-09-04 18:41 - 00001285 ____T C:\Temp\MAR4A.tmp 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Temp\JRT.txt 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Dokumente und Einstellungen\Karo\Desktop\JRT.txt 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\WINDOWS\ERUNT 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\Temp\jrt 2013-09-03 19:18 - 2013-09-03 19:18 - 00001313 ____T C:\Temp\MAR47.tmp 2013-09-03 19:18 - 2013-09-03 19:18 - 00001285 ____T C:\Temp\MAR48.tmp 2013-09-03 19:09 - 2013-09-03 19:04 - 00000000 ____D C:\AdwCleaner 2013-09-03 19:09 - 2013-09-03 19:04 - 00000000 _____ C:\Temp\preferences 2013-09-03 19:09 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\Uniblue 2013-09-03 19:09 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Uniblue 2013-09-03 19:09 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme 2013-09-03 19:04 - 2013-09-03 19:04 - 01037222 _____ C:\Dokumente und Einstellungen\Karo\Desktop\adwcleaner.exe 2013-09-03 19:02 - 2013-09-03 19:02 - 01028757 _____ (Thisisu) C:\Dokumente und Einstellungen\Karo\Desktop\JRT.exe 2013-09-03 18:58 - 2013-09-03 18:58 - 00001313 ____T C:\Temp\MAR45.tmp 2013-09-03 18:58 - 2013-09-03 18:58 - 00001285 ____T C:\Temp\MAR46.tmp 2013-09-03 18:33 - 2013-09-03 18:33 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Malwarebytes 2013-09-03 18:33 - 2013-09-03 18:32 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-09-03 18:32 - 2013-09-03 18:32 - 00000756 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-03 18:32 - 2013-09-03 18:31 - 10285040 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Karo\Desktop\mbam-setup-1.75.0.1300.exe 2013-09-03 17:55 - 2013-09-03 17:55 - 00001313 ____T C:\Temp\MAR43.tmp 2013-09-03 17:55 - 2013-09-03 17:55 - 00001285 ____T C:\Temp\MAR44.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001313 ____T C:\Temp\MAR41.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001285 ____T C:\Temp\MAR42.tmp 2013-09-02 20:28 - 2013-09-02 20:28 - 00000000 ____D C:\_OTL 2013-09-02 19:56 - 2013-09-02 19:56 - 00001417 _____ C:\Temp\hpC3.html 2013-09-02 19:55 - 2013-09-02 19:54 - 00000637 _____ C:\Temp\IOConnection.txt 2013-09-02 19:53 - 2013-09-02 19:52 - 00000000 ____D C:\Temp\7zS50BD 2013-09-02 19:41 - 2013-09-02 19:41 - 00081405 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\wohngeld.xps 2013-09-02 19:40 - 2013-09-02 19:39 - 00012783 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\WOHNGEL FORTZAHLUNG.odt 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO63.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO61.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO5D.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\HP 2013-09-02 18:55 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Eigene Dateien\Eigene Musik 2013-09-02 18:25 - 2013-09-02 18:25 - 00001313 ____T C:\Temp\MAR3F.tmp 2013-09-02 18:25 - 2013-09-02 18:25 - 00001285 ____T C:\Temp\MAR40.tmp 2013-09-02 18:24 - 2013-09-02 18:24 - 00000000 ____D C:\Temp\comtypes_cache 2013-09-02 18:10 - 2011-02-02 15:08 - 00327824 _____ C:\WINDOWS\setupapi.log 2013-09-01 21:18 - 2013-08-21 12:20 - 00344507 _____ C:\Temp\Quarantine.exe 2013-09-01 15:09 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Eigene Dateien\Eigene Bilder 2013-09-01 14:48 - 2013-09-01 14:48 - 00449554 _____ C:\OTL.Txt 2013-09-01 14:48 - 2013-09-01 14:48 - 00046964 _____ C:\Extras.Txt 2013-09-01 14:39 - 2013-09-01 14:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Notepad++ 2013-09-01 14:14 - 2013-09-01 14:14 - 00001576 _____ C:\Dokumente und Einstellungen\All Users\Desktop\CDBurnerXP.lnk 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Temp\CDBurnerXP-updates 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\CDBurnerXP 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Canneverbe Limited 2013-09-01 14:13 - 2013-09-01 14:13 - 05199536 _____ (Canneverbe Limited ) C:\Dokumente und Einstellungen\Karo\Desktop\cdbxp_setup_4.5.2.4214.exe 2013-09-01 14:09 - 2013-09-01 14:09 - 00691696 _____ C:\WINDOWS\system32\Drivers\sptd.sys 2013-09-01 14:09 - 2013-09-01 14:09 - 00000000 ____D C:\Programme\LSoft Technologies 2013-09-01 14:09 - 2011-01-31 22:37 - 00000000 ___HD C:\Programme\InstallShield Installation Information 2013-09-01 14:02 - 2013-09-01 14:02 - 127231689 _____ (Igor Pavlov) C:\Dokumente und Einstellungen\Karo\Desktop\OTLPENet.exe 2013-09-01 13:57 - 2013-09-01 13:57 - 00384512 _____ C:\Dokumente und Einstellungen\Karo\Desktop\IsoBurner-Setup.exe 2013-09-01 12:23 - 2013-09-01 12:23 - 00001313 ____T C:\Temp\MAR3D.tmp 2013-09-01 12:23 - 2013-09-01 12:23 - 00001285 ____T C:\Temp\MAR3E.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001313 ____T C:\Temp\MAR3B.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001285 ____T C:\Temp\MAR3C.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001313 ____T C:\Temp\MAR39.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001285 ____T C:\Temp\MAR3A.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001313 ____T C:\Temp\MAR37.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001285 ____T C:\Temp\MAR38.tmp 2013-08-30 08:54 - 2013-08-25 09:56 - 00000604 _____ C:\Temp\AUCHECK_CORE.txt 2013-08-30 08:31 - 2013-08-30 08:31 - 00006582 _____ C:\Temp\HPWUCl001.log 2013-08-30 08:26 - 2013-08-30 08:26 - 00001313 ____T C:\Temp\MAR35.tmp 2013-08-30 08:26 - 2013-08-30 08:26 - 00001285 ____T C:\Temp\MAR36.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001313 ____T C:\Temp\MAR33.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001285 ____T C:\Temp\MAR34.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001313 ____T C:\Temp\MAR31.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001285 ____T C:\Temp\MAR32.tmp 2013-08-28 17:32 - 2013-08-28 17:31 - 00004243 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00927251 _____ C:\WINDOWS\iis6.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00860042 _____ C:\WINDOWS\FaxSetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00440272 _____ C:\WINDOWS\ocgen.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00393890 _____ C:\WINDOWS\tsoc.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00285752 _____ C:\WINDOWS\comsetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00261964 _____ C:\WINDOWS\msmqinst.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00173413 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00151046 _____ C:\WINDOWS\netfxocm.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00059369 _____ C:\WINDOWS\MedCtrOC.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00047665 _____ C:\WINDOWS\ocmsn.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00043229 _____ C:\WINDOWS\tabletoc.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00043121 _____ C:\WINDOWS\msgsocm.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00001374 _____ C:\WINDOWS\imsins.log 2013-08-28 17:31 - 2013-08-28 17:31 - 00001313 ____T C:\Temp\MAR2F.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00001285 ____T C:\Temp\MAR30.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-27 20:03 - 2013-08-27 20:03 - 00001313 ____T C:\Temp\MAR2D.tmp 2013-08-27 20:03 - 2013-08-27 20:03 - 00001285 ____T C:\Temp\MAR2E.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001313 ____T C:\Temp\MAR2B.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001285 ____T C:\Temp\MAR2C.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001313 ____T C:\Temp\MAR29.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001285 ____T C:\Temp\MAR2A.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001313 ____T C:\Temp\MAR27.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001285 ____T C:\Temp\MAR28.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF990B.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF8AF4.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00016384 _____ C:\Temp\~DF8EA0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF99B0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF9332.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF8B4A.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DFBFF.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DF3C4D.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001313 ____T C:\Temp\MAR25.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001285 ____T C:\Temp\MAR26.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001313 ____T C:\Temp\MAR23.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001285 ____T C:\Temp\MAR24.tmp 2013-08-24 23:21 - 2011-01-31 21:19 - 00000000 ____D C:\WINDOWS\system32\LogFiles 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir32005 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2470 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir23556 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2083 2013-08-24 22:37 - 2013-08-24 22:33 - 00114688 ____T C:\Temp\~DFFF56.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF3A03.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF30EF.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 ____T C:\Temp\~DFACE4.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 _____ C:\Temp\~DF361D.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001313 ____T C:\Temp\MAR21.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001285 ____T C:\Temp\MAR22.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3A11.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3724.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3274.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001313 ____T C:\Temp\MAR1F.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001285 ____T C:\Temp\MAR20.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001313 ____T C:\Temp\MAR1D.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001285 ____T C:\Temp\MAR1E.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001313 ____T C:\Temp\MAR1B.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001285 ____T C:\Temp\MAR1C.tmp 2013-08-22 16:41 - 2012-10-16 21:22 - 00692104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-22 16:41 - 2011-06-07 19:47 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-22 16:39 - 2013-08-22 16:39 - 00001313 ____T C:\Temp\MAR19.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001285 ____T C:\Temp\MAR1A.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001313 ____T C:\Temp\MAR17.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001285 ____T C:\Temp\MAR18.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001313 ____T C:\Temp\MAR15.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001285 ____T C:\Temp\MAR16.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001313 ____T C:\Temp\MAR13.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001285 ____T C:\Temp\MAR14.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001313 ____T C:\Temp\MAR11.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001285 ____T C:\Temp\MAR12.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001313 ____T C:\Temp\MARF.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001285 ____T C:\Temp\MAR10.tmp 2013-08-20 10:18 - 2011-01-31 20:41 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService 2013-08-20 09:10 - 2013-08-20 09:10 - 00001313 ____T C:\Temp\MARD.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001285 ____T C:\Temp\MARE.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001313 ____T C:\Temp\MARB.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001285 ____T C:\Temp\MARC.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001313 ____T C:\Temp\MAR9.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001285 ____T C:\Temp\MARA.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001313 ____T C:\Temp\MAR7.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001285 ____T C:\Temp\MAR8.tmp 2013-08-18 22:15 - 2011-01-31 21:24 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-18 22:08 - 2013-08-18 22:08 - 00001313 ____T C:\Temp\MAR3.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001285 ____T C:\Temp\MAR6.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001313 ____T C:\Temp\MAR1.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001285 ____T C:\Temp\MAR2.tmp 2013-08-16 13:18 - 2013-08-16 13:18 - 00019213 _____ C:\ComboFix.txt 2013-08-16 13:18 - 2013-08-10 11:33 - 00000000 ____D C:\Qoobox 2013-08-16 13:15 - 2013-08-16 13:15 - 00001313 ____T C:\Temp\MAR4.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00001285 ____T C:\Temp\MAR5.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00000000 _____ C:\Temp\LuUpdater.log 2013-08-16 13:13 - 2013-08-16 13:13 - 00027753 _____ C:\Temp\Spanish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027410 _____ C:\Temp\Italian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027235 _____ C:\Temp\French.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026260 _____ C:\Temp\Portuguese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026126 _____ C:\Temp\Russian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026080 _____ C:\Temp\Hungarian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025753 _____ C:\Temp\German.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025747 _____ C:\Temp\Dutch.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025082 _____ C:\Temp\Greek.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025071 _____ C:\Temp\Portuguese(Brazil).bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024312 _____ C:\Temp\Czech.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024297 _____ C:\Temp\Japanese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024221 _____ C:\Temp\Polish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024082 _____ C:\Temp\SWEDISH.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022857 _____ C:\Temp\Finnish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022783 _____ C:\Temp\Danish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022253 _____ C:\Temp\Turkish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021976 _____ C:\Temp\Thai.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021964 _____ C:\Temp\Norwegian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021914 _____ C:\Temp\English.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020972 _____ C:\Temp\Arabic.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020135 _____ C:\Temp\Korean.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00019553 _____ C:\Temp\Hebrew.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016949 _____ C:\Temp\TradChin.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016408 _____ C:\Temp\SimChin.bin 2013-08-16 13:13 - 2004-08-04 13:00 - 00000227 _____ C:\WINDOWS\system.ini 2013-08-16 13:12 - 2011-01-31 21:17 - 27000832 _____ C:\WINDOWS\system32\config\software.bak 2013-08-16 13:12 - 2011-01-31 21:17 - 04718592 _____ C:\WINDOWS\system32\config\system.bak 2013-08-16 13:12 - 2011-01-31 21:17 - 00524288 _____ C:\WINDOWS\system32\config\default.bak 2013-08-16 13:12 - 2011-01-31 20:22 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.bak 2013-08-16 13:12 - 2011-01-31 20:22 - 00262144 _____ C:\WINDOWS\system32\config\SAM.bak 2013-08-16 13:11 - 2013-08-16 13:11 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG 2013-08-16 13:11 - 2013-08-10 11:32 - 00000000 ____D C:\WINDOWS\erdnt 2013-08-16 13:06 - 2013-08-16 12:45 - 00000000 ____D C:\Temp\nsc7E.tmp 2013-08-16 13:06 - 2013-08-10 12:47 - 00000000 ____D C:\Temp\DVDVideoSoft 2013-08-16 13:06 - 2013-08-10 12:44 - 00000000 ____D C:\Temp\is-6BI3I.tmp 2013-08-16 13:01 - 2013-08-16 13:01 - 00000000 _RSHD C:\cmdcons 2013-08-16 13:01 - 2011-01-31 21:17 - 00000327 __RSH C:\boot.ini 2013-08-16 12:51 - 2013-08-16 12:51 - 00000227 _____ C:\Dokumente und Einstellungen\Karo\Desktop\CFSkript.txt 2013-08-16 12:50 - 2013-08-10 11:37 - 00000327 _____ C:\Boot.bak 2013-08-16 12:45 - 2013-08-16 12:45 - 05104782 ____R (Swearware) C:\Dokumente und Einstellungen\Karo\Desktop\ComboFix.exe 2013-08-16 12:43 - 2013-08-16 12:43 - 00000752 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Verknüpfung mit ComboFix.lnk 2013-08-16 00:57 - 2013-08-16 00:56 - 00011907 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-16 00:57 - 2011-02-09 19:14 - 00071177 _____ C:\WINDOWS\updspapi.log 2013-08-16 00:57 - 2011-02-09 19:14 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-08-16 00:56 - 2013-08-16 00:52 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-16 00:56 - 2011-01-31 21:35 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-16 00:52 - 2011-01-31 21:33 - 75778376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-16 00:51 - 2013-08-16 00:51 - 00005189 _____ C:\WINDOWS\KB2863058.log 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-16 00:51 - 2013-08-16 00:12 - 00009070 _____ C:\WINDOWS\KB2850869.log 2013-08-16 00:51 - 2013-08-16 00:11 - 00010872 _____ C:\WINDOWS\KB2859537.log 2013-08-16 00:51 - 2011-01-31 21:41 - 00032870 _____ C:\WINDOWS\system32\TZLog.log 2013-08-10 13:00 - 2013-08-10 12:44 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\DVDVideoSoft 2013-08-10 12:48 - 2013-08-10 12:48 - 00001711 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00001707 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp Utilities 2013.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Programme\TuneUp Utilities 2013 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\TuneUp Software 2013-08-10 12:47 - 2013-08-10 12:47 - 00001023 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Free YouTube to MP3 Converter.lnk 2013-08-10 12:47 - 2013-08-10 12:47 - 00000906 _____ C:\Dokumente und Einstellungen\All Users\Desktop\DVDVideoSoft Free Studio.lnk 2013-08-10 12:47 - 2013-08-10 12:46 - 00000000 ____D C:\Temp\8944214B-BAB0-7891-A63A-DE461084E7F1 2013-08-10 12:47 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\DVDVideoSoft 2013-08-10 12:46 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\Gemeinsame Dateien\DVDVideoSoft 2013-08-10 12:44 - 2013-08-10 12:44 - 01211376 _____ (DVDVideoSoft Ltd. ) C:\Dokumente und Einstellungen\Karo\Desktop\FreeYouTubeToMP3Converter-3.12.9.725.exe 2013-08-10 11:43 - 2013-07-31 14:32 - 00000000 ____D C:\Temp\ish135531 2013-08-10 11:43 - 2013-07-31 14:32 - 00000000 ____D C:\Temp\B5EC8CB8-BAB0-7891-93B8-0638EA6B0C45 2013-08-10 11:43 - 2013-07-31 13:52 - 00000000 ____D C:\Temp\ish18754078 2013-08-10 11:43 - 2013-07-30 15:09 - 00000000 ____D C:\Temp\ish6262156 2013-08-10 11:43 - 2013-07-30 15:09 - 00000000 ____D C:\Temp\is357113909 2013-08-10 11:43 - 2013-07-27 02:35 - 00000000 ____D C:\Temp\WER104a.dir00 2013-08-10 11:43 - 2013-07-27 02:35 - 00000000 ____D C:\Temp\WER1022.dir00 2013-08-10 11:43 - 2013-05-27 21:00 - 00000000 ____D C:\Temp\tmpb7e33b0a 2013-08-10 11:43 - 2013-05-26 20:10 - 00000000 ____D C:\Temp\tmp9dd21216 2013-08-10 11:43 - 2013-05-25 20:33 - 00000000 ____D C:\Temp\tmpb83eb886 2013-08-10 11:43 - 2013-05-25 00:15 - 00000000 ____D C:\Temp\tmpea9051a7 2013-08-10 11:43 - 2013-05-22 20:16 - 00000000 ____D C:\Temp\tmp95b2271e 2013-08-10 11:43 - 2013-05-20 17:52 - 00000000 ____D C:\Temp\tmpf68bbd41 2013-08-10 11:43 - 2013-05-17 06:18 - 00000000 ____D C:\Temp\tmp9bede2e7 2013-08-10 11:43 - 2013-05-16 23:57 - 00000000 ____D C:\Temp\tmpebd05d37 2013-08-10 11:43 - 2013-05-15 19:30 - 00000000 ____D C:\Temp\tmp40c9c6e8 2013-08-10 11:43 - 2013-05-14 18:55 - 00000000 ____D C:\Temp\tmp2faf446c 2013-08-10 11:43 - 2013-04-14 20:56 - 00000000 ____D C:\Temp\99CAA8DB-BAB0-7891-800A-77CCC61BCCEB 2013-08-10 11:43 - 2013-04-14 20:54 - 00000000 ____D C:\Temp\nsd92C.tmp 2013-08-10 11:43 - 2013-01-20 12:13 - 00000000 ____D C:\Temp\84A.tmp 2013-08-10 11:43 - 2013-01-04 01:02 - 00000000 ____D C:\Temp\res 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\a00b69d3-feda-476c-946e-8608d96bfe39 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\68dcf78f-8c83-43a0-83ef-e71ac98ac477 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\4b4395bc-4234-4ead-8d0f-a8cfc7b298ec 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\c3d576a3-923f-483e-9285-c1487497175a 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\3d083b50-7f3e-4293-bc13-1f4d16bd927c 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\22775de3-904c-421e-8a03-b7b6cac921fa 2013-08-10 11:43 - 2012-12-19 20:11 - 00000000 ____D C:\Temp\KiesTemporary 2013-08-10 11:43 - 2012-11-25 12:35 - 00000000 ____D C:\Temp\ct2625848 2013-08-10 11:43 - 2012-08-29 14:48 - 00000000 ____D C:\Temp\WER2c85.dir00 2013-08-10 11:43 - 2012-08-29 14:48 - 00000000 ____D C:\Temp\WER23bc.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERe12e.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERd800.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERcf32.dir00 2013-08-10 11:43 - 2012-07-16 19:46 - 00000000 ____D C:\Temp\WER122c.dir00 2013-08-10 11:43 - 2012-04-06 11:05 - 00000000 ____D C:\Temp\WER5162.dir00 2013-08-10 11:43 - 2012-03-30 15:08 - 00000000 ____D C:\Temp\WER5fed.dir00 2013-08-10 11:43 - 2012-03-30 15:07 - 00000000 ____D C:\Temp\WER4d47.dir00 2013-08-10 11:43 - 2011-12-11 14:30 - 00000000 ____D C:\Temp\43235A2A-BAB0-7891-99B7-7E488FB7B1D2 2013-08-10 11:43 - 2011-11-14 06:53 - 00000000 ____D C:\Temp\487.dir 2013-08-10 11:43 - 2011-06-29 13:37 - 00000000 ____D C:\Temp\APN-Stub 2013-08-10 11:43 - 2011-06-15 16:00 - 00000000 ____D C:\Temp\7zS58F2 2013-08-10 11:43 - 2011-06-08 19:41 - 00000000 ____D C:\Temp\7zS5B78 2013-08-10 11:43 - 2011-06-08 16:59 - 00000000 ____D C:\Temp\7zS1219 2013-08-10 11:43 - 2011-06-08 16:54 - 00000000 ____D C:\Temp\7zS3452 2013-08-10 11:43 - 2011-06-08 16:41 - 00000000 ____D C:\Temp\7zS6D2C 2013-08-10 11:43 - 2011-06-07 19:47 - 00000000 ____D C:\Temp\23D.dir 2013-08-10 11:43 - 2011-05-16 20:39 - 00000000 ____D C:\Temp\lu 2013-08-10 11:43 - 2011-04-29 20:05 - 00000000 ____D C:\Temp\de-de 2013-08-10 11:43 - 2011-03-16 17:32 - 00000000 ____D C:\Temp\C9.dir 2013-08-10 11:43 - 2011-03-14 13:13 - 00000000 ____D C:\Temp\{65FC407F-93C2-4A72-9DFC-29D3CB364B7E} 2013-08-10 11:43 - 2011-02-22 18:10 - 00000000 ___HD C:\Temp\Temporäres Verzeichnis 1 für SharePod397.zip 2013-08-10 11:43 - 2011-02-16 10:15 - 00000000 ____D C:\Temp\4A.dir 2013-08-10 11:43 - 2011-02-10 18:47 - 00000000 ____D C:\Temp\HPDiagnosticAlert 2013-08-10 11:43 - 2011-02-10 18:47 - 00000000 ____D C:\Temp\7zS31FC 2013-08-10 11:43 - 2011-02-02 16:29 - 00000000 ____D C:\Temp\7zS5E15 2013-08-10 11:43 - 2011-02-02 16:17 - 00000000 ____D C:\Temp\7zS11F3 2013-08-10 11:43 - 2011-02-02 15:49 - 00000000 ____D C:\Temp\7zS7932 2013-08-10 11:43 - 2011-02-02 15:45 - 00000000 ____D C:\Temp\7zS090A 2013-08-10 11:43 - 2011-02-02 01:56 - 00000000 ____D C:\Temp\ToolbarUpdater_1296604584 2013-08-10 11:43 - 2011-02-02 01:05 - 00000000 ____D C:\Temp\Google Toolbar 2013-08-10 11:43 - 2011-02-01 20:37 - 00000000 ____D C:\Temp\{46937E47-A407-404B-A547-A51A1A576832} 2013-08-10 11:32 - 2013-08-10 11:32 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Verwaltung 2013-08-09 15:38 - 2013-07-31 15:16 - 00000000 ____D C:\FRST Files to move or delete: ==================== ZeroAccess: C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} ZeroAccess: C:\Temp\{2F822836-52C6-427A-8690-91732CB6F143} ZeroAccess: C:\Temp\{46937E47-A407-404B-A547-A51A1A576832} ZeroAccess: C:\Temp\{65FC407F-93C2-4A72-9DFC-29D3CB364B7E} C:\Temp\Quarantine.exe C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706}\setup.exe C:\Temp\jrt\erunt\ERUNT.EXE C:\Temp\7zS50BD\hpzc3212.dll C:\Temp\7zS50BD\hpzids01.dll C:\Temp\7zS50BD\HPZIDS40.dll C:\Temp\7zS50BD\hpzsetup.exe C:\Temp\7zS50BD\hpzstub.exe C:\Temp\7zS50BD\hpzuci12.dll C:\Temp\7zS50BD\Setup.exe C:\Temp\7zS50BD\util\ccc\CCC_Uninstaller.exe C:\Temp\7zS50BD\util\ccc\FixErr1714.exe C:\Temp\7zS50BD\util\ccc\hpqrrx08.exe C:\Temp\7zS50BD\util\ccc\PrintUtil.exe C:\Temp\7zS50BD\util\ccc\x64\printutil.exe C:\Temp\7zS50BD\util\ccc\deu\WindowsXP-KB822603-x86-DEU.exe C:\Temp\7zS50BD\setup\difxapi.dll C:\Temp\7zS50BD\setup\doccd.exe C:\Temp\7zS50BD\setup\DOT4_Plugin.exe C:\Temp\7zS50BD\setup\HPCommunication.dll C:\Temp\7zS50BD\setup\HPeDiag.dll C:\Temp\7zS50BD\setup\HPeSupport.dll C:\Temp\7zS50BD\setup\hpqbhp01.exe C:\Temp\7zS50BD\setup\HPScripting.dll C:\Temp\7zS50BD\setup\hpzarp01.exe C:\Temp\7zS50BD\setup\hpzcdl01.exe C:\Temp\7zS50BD\setup\hpzchk01.exe C:\Temp\7zS50BD\setup\hpzdui01.exe C:\Temp\7zS50BD\setup\hpzdui40.exe C:\Temp\7zS50BD\setup\hpzfwx01.exe C:\Temp\7zS50BD\setup\hpzgat01.exe C:\Temp\7zS50BD\setup\hpzhsg01.exe C:\Temp\7zS50BD\setup\hpzmsi01.exe C:\Temp\7zS50BD\setup\hpznop01.exe C:\Temp\7zS50BD\setup\hpznui01.exe C:\Temp\7zS50BD\setup\hpznui40.exe C:\Temp\7zS50BD\setup\hpzpnp01.exe C:\Temp\7zS50BD\setup\hpzpnp40.exe C:\Temp\7zS50BD\setup\hpzprl01.exe C:\Temp\7zS50BD\setup\hpzprl40.exe C:\Temp\7zS50BD\setup\hpzpsc01.exe C:\Temp\7zS50BD\setup\hpzpsl01.exe C:\Temp\7zS50BD\setup\hpzrcn01.exe C:\Temp\7zS50BD\setup\hpzrcv01.exe C:\Temp\7zS50BD\setup\hpzrein01.exe C:\Temp\7zS50BD\setup\hpzscr01.exe C:\Temp\7zS50BD\setup\hpzscr40.exe C:\Temp\7zS50BD\setup\hpzshl01.exe C:\Temp\7zS50BD\setup\hpzshl40.exe C:\Temp\7zS50BD\setup\HPZSWP01.exe C:\Temp\7zS50BD\setup\hpztim01.exe C:\Temp\7zS50BD\setup\hpzwis01.exe C:\Temp\7zS50BD\setup\hpzwrp01.exe C:\Temp\7zS50BD\setup\hpzwup01.exe C:\Temp\7zS50BD\setup\InstallMetrics.dll C:\Temp\7zS50BD\setup\InternetUtil.dll C:\Temp\7zS50BD\setup\msxml3.dll C:\Temp\7zS50BD\setup\msxml3a.dll C:\Temp\7zS50BD\setup\msxml3r.dll C:\Temp\7zS50BD\setup\RulesEngine.dll C:\Temp\7zS50BD\setup\usbready.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-win32.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-x64.exe C:\Temp\7zS50BD\setup\yahoo\ytb_7.2.2.0_1.5.4_mail_bts_pub_uber_rev_setup_2008.11.25.01.exe C:\Temp\7zS50BD\setup\yahoo\y_hp_intl_detect.exe C:\Temp\7zS50BD\setup\x64\difxapi.dll C:\Temp\7zS50BD\setup\wowprint\wowprintflow.exe C:\Temp\7zS50BD\setup\wis\Win2K_XP\instmsi.exe C:\Temp\7zS50BD\setup\rocketlife\RLBootstrap.exe C:\Temp\7zS50BD\setup\hwsetupwizard\hw_guide.exe C:\Temp\7zS50BD\setup\hpqadobeui\hpqadobeui.exe C:\Temp\7zS50BD\setup\coupons\CouponPrinter.exe C:\Temp\7zS50BD\drivers\scanner\x64\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x64\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x64\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpotsti1.dll C:\Temp\7zS50BD\drivers\dot4\win2000\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hpzc3212.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.x64.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2008-04-14 06:52] - [2008-04-14 06:52] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2008-04-14 06:53] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2008-04-14 06:52] - [2008-04-14 06:52] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2008-04-14 06:22] - [2008-04-14 06:22] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
06.09.2013, 14:14 | #49 |
| BKA-TrojanerCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-09-2013 Ran by Karo at 2013-09-06 15:11:59 Running from C:\Dokumente und Einstellungen\Karo\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 32 Bit HP CIO Components Installer (Version: 7.1.8) Active@ ISO Burner (Version: 2.5.1) Adobe Flash Player 11 ActiveX (Version: 11.8.800.94) Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7) Apple Application Support (Version: 2.1.5) Apple Software Update (Version: 2.1.3.127) Avira AntiVir Personal - Free Antivirus (Version: 10.2.0.2100) B109a-m (Version: 140.0.690.000) Branding (Version: 1.00.0000) BufferChm (Version: 140.0.212.000) CameraHelperMsi (Version: 13.00.1774.0) Catalyst Control Center Core Implementation (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Full Existing (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Full New (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Light (Version: 0108.2146.2565.38893) Catalyst Control Center Localization German (Version: 0108.2146.2565.38893) CCC Help German (Version: 0108.2146.2564.38893) ccc-core-static (Version: 0108.2146.2565.38893) ccc-utility (Version: 0108.2146.2565.38893) CDBurnerXP (Version: 4.5.2.4214) Destinations (Version: 140.0.77.000) DeviceDiscovery (Version: 140.0.212.000) erLT (Version: 1.20.138.34) Facebook Video Calling 1.2.0.287 (Version: 1.2.287) Free YouTube to MP3 Converter version 3.12.9.725 (Version: 3.12.9.725) GPBaseService2 (Version: 140.0.211.000) Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000) Hotfix für Windows Media Player 11 (KB939683) Hotfix für Windows XP (KB2443685) (Version: 1) Hotfix für Windows XP (KB2570791) (Version: 1) Hotfix für Windows XP (KB2633952) (Version: 1) Hotfix für Windows XP (KB2756822) (Version: 1) Hotfix für Windows XP (KB2779562) (Version: 1) Hotfix für Windows XP (KB952287) (Version: 1) Hotfix für Windows XP (KB961118) (Version: 1) HP Customer Participation Program 14.0 (Version: 14.0) HP Imaging Device Functions 14.0 (Version: 14.0) HP Photosmart B109a-m All-in-One Driver Software 14.0 Rel. 6 (Version: 14.0) HP Product Detection (Version: 11.14.0001) HP Smart Web Printing 4.60 (Version: 4.60) HP Solution Center 14.0 (Version: 14.0) HP Update (Version: 5.003.001.001) HPDiagnosticAlert (Version: 1.00.0000) HPProductAssistant (Version: 140.0.212.000) HPSSupply (Version: 140.0.211.000) IrfanView (remove only) (Version: 4.28) iTunes (Version: 10.5.1.42) Java Auto Updater (Version: 2.0.3.1) Java(TM) 6 Update 22 (Version: 6.0.220) Java(TM) 6 Update 24 (Version: 6.0.240) Logitech Vid (Version: 1.70.1044) Logitech Webcam Software (Version: 2.0) LWS Facebook (Version: 13.00.1777.0) LWS Gallery (Version: 13.00.1778.0) LWS Help_main (Version: 13.00.1783.0) LWS Launcher (Version: 13.00.1776.0) LWS Motion Detection (Version: 13.00.1778.0) LWS Pictures And Video (Version: 13.00.1778.0) LWS Video Mask Maker (Version: 13.00.1774.0) LWS VideoEffects (Version: 13.00.1774.0) LWS Webcam Software (Version: 13.00.1774.0) LWS WLM Plugin (Version: 1.00.1774.0) LWS YouTube Plugin (Version: 13.00.1777.0) Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300) MarketResearch (Version: 140.0.212.000) Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729) Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft-Basissmartcard-Kryptografiedienstanbieterpaket MobileMe Control Panel (Version: 3.1.6.0) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) OpenOffice.org 3.3 (Version: 3.3.9567) PDFCreator (Version: 1.2.0) pdfforge Toolbar v7.3 (Version: 7.3) PS_AIO_06_B109a-m_SW_Min (Version: 140.0.690.000) QuickTransfer (Version: 140.0.98.000) REALTEK 11n USB Wireless LAN Driver and Utility (Version: 1.00.0106) Realtek High Definition Audio Driver (Version: 5.10.0.5345) Samsung Kies (Version: 2.5.0.12104_15) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.16.0) Scan (Version: 140.0.80.000) Shop for HP Supplies (Version: 14.0) Sicherheitsupdate für Microsoft Windows (KB2564958) Sicherheitsupdate für Windows Internet Explorer 8 (KB2360131) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2416400) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2482017) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2497640) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2510531) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2530548) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2544521) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2559049) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2586448) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2618444) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2647516) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2675157) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2699988) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2722913) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2744842) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2761465) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2792100) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2797052) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2799329) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2809289) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2817183) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2829530) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2838727) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2846071) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2847204) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2862772) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB971961) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB981332) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB982381) (Version: 1) Sicherheitsupdate für Windows Media Player (KB2378111) Sicherheitsupdate für Windows Media Player (KB2834904) Sicherheitsupdate für Windows Media Player (KB2834904-v2) Sicherheitsupdate für Windows Media Player (KB952069) Sicherheitsupdate für Windows Media Player (KB954155) Sicherheitsupdate für Windows Media Player (KB973540) Sicherheitsupdate für Windows Media Player (KB975558) Sicherheitsupdate für Windows Media Player (KB978695) Sicherheitsupdate für Windows Media Player 11 (KB954154) Sicherheitsupdate für Windows XP (KB2079403) (Version: 1) Sicherheitsupdate für Windows XP (KB2115168) (Version: 1) Sicherheitsupdate für Windows XP (KB2121546) (Version: 1) Sicherheitsupdate für Windows XP (KB2229593) (Version: 1) Sicherheitsupdate für Windows XP (KB2259922) (Version: 1) Sicherheitsupdate für Windows XP (KB2286198) (Version: 1) Sicherheitsupdate für Windows XP (KB2296011) (Version: 1) Sicherheitsupdate für Windows XP (KB2296199) (Version: 1) Sicherheitsupdate für Windows XP (KB2347290) (Version: 1) Sicherheitsupdate für Windows XP (KB2360937) (Version: 1) Sicherheitsupdate für Windows XP (KB2387149) (Version: 1) Sicherheitsupdate für Windows XP (KB2393802) (Version: 1) Sicherheitsupdate für Windows XP (KB2412687) (Version: 1) Sicherheitsupdate für Windows XP (KB2416400) (Version: 1) Sicherheitsupdate für Windows XP (KB2419632) (Version: 1) Sicherheitsupdate für Windows XP (KB2423089) (Version: 1) Sicherheitsupdate für Windows XP (KB2436673) (Version: 1) Sicherheitsupdate für Windows XP (KB2440591) (Version: 1) Sicherheitsupdate für Windows XP (KB2443105) (Version: 1) Sicherheitsupdate für Windows XP (KB2476490) (Version: 1) Sicherheitsupdate für Windows XP (KB2476687) (Version: 1) Sicherheitsupdate für Windows XP (KB2478960) (Version: 1) Sicherheitsupdate für Windows XP (KB2478971) (Version: 1) Sicherheitsupdate für Windows XP (KB2479628) (Version: 1) Sicherheitsupdate für Windows XP (KB2479943) (Version: 1) Sicherheitsupdate für Windows XP (KB2481109) (Version: 1) Sicherheitsupdate für Windows XP (KB2483185) (Version: 1) Sicherheitsupdate für Windows XP (KB2485376) (Version: 1) Sicherheitsupdate für Windows XP (KB2485663) (Version: 1) Sicherheitsupdate für Windows XP (KB2503658) (Version: 1) Sicherheitsupdate für Windows XP (KB2503665) (Version: 1) Sicherheitsupdate für Windows XP (KB2506212) (Version: 1) Sicherheitsupdate für Windows XP (KB2506223) (Version: 1) Sicherheitsupdate für Windows XP (KB2507618) (Version: 1) Sicherheitsupdate für Windows XP (KB2507938) (Version: 1) Sicherheitsupdate für Windows XP (KB2508272) (Version: 1) Sicherheitsupdate für Windows XP (KB2508429) (Version: 1) Sicherheitsupdate für Windows XP (KB2509553) (Version: 1) Sicherheitsupdate für Windows XP (KB2511455) (Version: 1) Sicherheitsupdate für Windows XP (KB2524375) (Version: 1) Sicherheitsupdate für Windows XP (KB2535512) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2544893) (Version: 1) Sicherheitsupdate für Windows XP (KB2544893-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2555917) (Version: 1) Sicherheitsupdate für Windows XP (KB2562937) (Version: 1) Sicherheitsupdate für Windows XP (KB2566454) (Version: 1) Sicherheitsupdate für Windows XP (KB2567053) (Version: 1) Sicherheitsupdate für Windows XP (KB2567680) (Version: 1) Sicherheitsupdate für Windows XP (KB2570222) (Version: 1) Sicherheitsupdate für Windows XP (KB2570947) (Version: 1) Sicherheitsupdate für Windows XP (KB2584146) (Version: 1) Sicherheitsupdate für Windows XP (KB2585542) (Version: 1) Sicherheitsupdate für Windows XP (KB2592799) (Version: 1) Sicherheitsupdate für Windows XP (KB2598479) (Version: 1) Sicherheitsupdate für Windows XP (KB2603381) (Version: 1) Sicherheitsupdate für Windows XP (KB2618451) (Version: 1) Sicherheitsupdate für Windows XP (KB2619339) (Version: 1) Sicherheitsupdate für Windows XP (KB2620712) (Version: 1) Sicherheitsupdate für Windows XP (KB2621440) (Version: 1) Sicherheitsupdate für Windows XP (KB2624667) (Version: 1) Sicherheitsupdate für Windows XP (KB2631813) (Version: 1) Sicherheitsupdate für Windows XP (KB2633171) (Version: 1) Sicherheitsupdate für Windows XP (KB2639417) (Version: 1) Sicherheitsupdate für Windows XP (KB2641653) (Version: 1) Sicherheitsupdate für Windows XP (KB2646524) (Version: 1) Sicherheitsupdate für Windows XP (KB2647518) (Version: 1) Sicherheitsupdate für Windows XP (KB2653956) (Version: 1) Sicherheitsupdate für Windows XP (KB2655992) (Version: 1) Sicherheitsupdate für Windows XP (KB2659262) (Version: 1) Sicherheitsupdate für Windows XP (KB2660465) (Version: 1) Sicherheitsupdate für Windows XP (KB2661637) (Version: 1) Sicherheitsupdate für Windows XP (KB2676562) (Version: 1) Sicherheitsupdate für Windows XP (KB2685939) (Version: 1) Sicherheitsupdate für Windows XP (KB2686509) (Version: 1) Sicherheitsupdate für Windows XP (KB2691442) (Version: 1) Sicherheitsupdate für Windows XP (KB2695962) (Version: 1) Sicherheitsupdate für Windows XP (KB2698365) (Version: 1) Sicherheitsupdate für Windows XP (KB2705219) (Version: 1) Sicherheitsupdate für Windows XP (KB2707511) (Version: 1) Sicherheitsupdate für Windows XP (KB2709162) (Version: 1) Sicherheitsupdate für Windows XP (KB2712808) (Version: 1) Sicherheitsupdate für Windows XP (KB2718523) (Version: 1) Sicherheitsupdate für Windows XP (KB2719985) (Version: 1) Sicherheitsupdate für Windows XP (KB2723135) (Version: 1) Sicherheitsupdate für Windows XP (KB2724197) (Version: 1) Sicherheitsupdate für Windows XP (KB2727528) (Version: 1) Sicherheitsupdate für Windows XP (KB2731847) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2757638) (Version: 1) Sicherheitsupdate für Windows XP (KB2758857) (Version: 1) Sicherheitsupdate für Windows XP (KB2761226) (Version: 1) Sicherheitsupdate für Windows XP (KB2770660) (Version: 1) Sicherheitsupdate für Windows XP (KB2778344) (Version: 1) Sicherheitsupdate für Windows XP (KB2779030) (Version: 1) Sicherheitsupdate für Windows XP (KB2780091) (Version: 1) Sicherheitsupdate für Windows XP (KB2799494) (Version: 1) Sicherheitsupdate für Windows XP (KB2802968) (Version: 1) Sicherheitsupdate für Windows XP (KB2807986) (Version: 1) Sicherheitsupdate für Windows XP (KB2808735) (Version: 1) Sicherheitsupdate für Windows XP (KB2813170) (Version: 1) Sicherheitsupdate für Windows XP (KB2813345) (Version: 1) Sicherheitsupdate für Windows XP (KB2820197) (Version: 1) Sicherheitsupdate für Windows XP (KB2820917) (Version: 1) Sicherheitsupdate für Windows XP (KB2829361) (Version: 1) Sicherheitsupdate für Windows XP (KB2834886) (Version: 1) Sicherheitsupdate für Windows XP (KB2839229) (Version: 1) Sicherheitsupdate für Windows XP (KB2845187) (Version: 1) Sicherheitsupdate für Windows XP (KB2849470) (Version: 1) Sicherheitsupdate für Windows XP (KB2850851) (Version: 1) Sicherheitsupdate für Windows XP (KB2850869) (Version: 1) Sicherheitsupdate für Windows XP (KB2859537) (Version: 1) Sicherheitsupdate für Windows XP (KB923561) (Version: 1) Sicherheitsupdate für Windows XP (KB923789) Sicherheitsupdate für Windows XP (KB941569) Sicherheitsupdate für Windows XP (KB946648) (Version: 1) Sicherheitsupdate für Windows XP (KB950762) (Version: 1) Sicherheitsupdate für Windows XP (KB950974) (Version: 1) Sicherheitsupdate für Windows XP (KB951376-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB951748) (Version: 1) Sicherheitsupdate für Windows XP (KB952004) (Version: 1) Sicherheitsupdate für Windows XP (KB952954) (Version: 1) Sicherheitsupdate für Windows XP (KB954459) (Version: 1) Sicherheitsupdate für Windows XP (KB956572) (Version: 1) Sicherheitsupdate für Windows XP (KB956744) (Version: 1) Sicherheitsupdate für Windows XP (KB956802) (Version: 1) Sicherheitsupdate für Windows XP (KB956803) (Version: 1) Sicherheitsupdate für Windows XP (KB956844) (Version: 1) Sicherheitsupdate für Windows XP (KB958644) (Version: 1) Sicherheitsupdate für Windows XP (KB958869) (Version: 1) Sicherheitsupdate für Windows XP (KB959426) (Version: 1) Sicherheitsupdate für Windows XP (KB960803) (Version: 1) Sicherheitsupdate für Windows XP (KB960859) (Version: 1) Sicherheitsupdate für Windows XP (KB961501) (Version: 1) Sicherheitsupdate für Windows XP (KB969059) (Version: 1) Sicherheitsupdate für Windows XP (KB970430) (Version: 1) Sicherheitsupdate für Windows XP (KB971657) (Version: 1) Sicherheitsupdate für Windows XP (KB971961) (Version: 1) Sicherheitsupdate für Windows XP (KB972270) (Version: 1) Sicherheitsupdate für Windows XP (KB973507) (Version: 1) Sicherheitsupdate für Windows XP (KB973869) (Version: 1) Sicherheitsupdate für Windows XP (KB973904) (Version: 1) Sicherheitsupdate für Windows XP (KB974112) (Version: 1) Sicherheitsupdate für Windows XP (KB974318) (Version: 1) Sicherheitsupdate für Windows XP (KB974392) (Version: 1) Sicherheitsupdate für Windows XP (KB974571) (Version: 1) Sicherheitsupdate für Windows XP (KB975025) (Version: 1) Sicherheitsupdate für Windows XP (KB975467) (Version: 1) Sicherheitsupdate für Windows XP (KB975560) (Version: 1) Sicherheitsupdate für Windows XP (KB975562) (Version: 1) Sicherheitsupdate für Windows XP (KB975713) (Version: 1) Sicherheitsupdate für Windows XP (KB977816) (Version: 1) Sicherheitsupdate für Windows XP (KB977914) (Version: 1) Sicherheitsupdate für Windows XP (KB978037) (Version: 1) Sicherheitsupdate für Windows XP (KB978338) (Version: 1) Sicherheitsupdate für Windows XP (KB978542) (Version: 1) Sicherheitsupdate für Windows XP (KB978601) (Version: 1) Sicherheitsupdate für Windows XP (KB978706) (Version: 1) Sicherheitsupdate für Windows XP (KB979309) (Version: 1) Sicherheitsupdate für Windows XP (KB979482) (Version: 1) Sicherheitsupdate für Windows XP (KB979687) (Version: 1) Sicherheitsupdate für Windows XP (KB980195) (Version: 1) Sicherheitsupdate für Windows XP (KB980232) (Version: 1) Sicherheitsupdate für Windows XP (KB980436) (Version: 1) Sicherheitsupdate für Windows XP (KB981322) (Version: 1) Sicherheitsupdate für Windows XP (KB981349) (Version: 1) Sicherheitsupdate für Windows XP (KB981852) (Version: 1) Sicherheitsupdate für Windows XP (KB981997) (Version: 1) Sicherheitsupdate für Windows XP (KB982132) (Version: 1) Sicherheitsupdate für Windows XP (KB982214) (Version: 1) Sicherheitsupdate für Windows XP (KB982665) (Version: 1) Skins (Version: 0108.2146.2565.38893) Skype Click to Call (Version: 6.3.11079) Skype™ 6.3 (Version: 6.3.105) SmartWebPrinting (Version: 140.0.186.000) SolutionCenter (Version: 140.0.213.000) Status (Version: 140.0.212.000) Toolbox (Version: 140.0.428.000) TrayApp (Version: 140.0.212.000) TuneUp Utilities 2013 (Version: 13.0.3000.132) TuneUp Utilities Language Pack (de-DE) (Version: 13.0.3000.132) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1) Update für Microsoft Windows (KB971513) Update für Windows Internet Explorer 8 (KB2447568) (Version: 1) Update für Windows Internet Explorer 8 (KB976662) (Version: 1) Update für Windows XP (KB2141007) (Version: 1) Update für Windows XP (KB2345886) (Version: 1) Update für Windows XP (KB2467659) (Version: 1) Update für Windows XP (KB2541763) (Version: 1) Update für Windows XP (KB2607712) (Version: 1) Update für Windows XP (KB2616676) (Version: 1) Update für Windows XP (KB2641690) (Version: 1) Update für Windows XP (KB2661254-v2) (Version: 2) Update für Windows XP (KB2718704) (Version: 1) Update für Windows XP (KB2736233) (Version: 1) Update für Windows XP (KB2749655) (Version: 1) Update für Windows XP (KB2863058) (Version: 1) Update für Windows XP (KB898461) (Version: 1) Update für Windows XP (KB951978) (Version: 1) Update für Windows XP (KB955759) (Version: 1) Update für Windows XP (KB967715) (Version: 1) Update für Windows XP (KB968389) (Version: 1) Update für Windows XP (KB971029) (Version: 1) Update für Windows XP (KB971737) (Version: 1) Update für Windows XP (KB973687) (Version: 1) Update für Windows XP (KB973815) (Version: 1) VLC Player (Version: 1.14) WebFldrs XP (Version: 9.50.7523) WebReg (Version: 140.0.212.017) Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0) Windows Genuine Advantage Validation Tool (KB892130) Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2) Windows Internet Explorer 8 (Version: 20090308.140743) Windows Media Format 11 runtime Windows Search 4.0 (Version: 04.00.6001.503) Windows-Treiberpaket - Atheros (AR5416) Net (06/04/2010 7.7.0.523) (Version: 06/04/2010 7.7.0.523) ==================== Restore Points ========================= 11-06-2013 17:52:14 Systemprüfpunkt 12-06-2013 18:08:33 Systemprüfpunkt 23-06-2013 16:41:51 Systemprüfpunkt 01-07-2013 17:03:21 Systemprüfpunkt 02-07-2013 10:17:28 Software Distribution Service 3.0 04-07-2013 16:29:04 Systemprüfpunkt 05-07-2013 16:51:12 Systemprüfpunkt 07-07-2013 15:19:16 Systemprüfpunkt 09-07-2013 19:36:44 Systemprüfpunkt 10-07-2013 19:52:25 Systemprüfpunkt 11-07-2013 19:22:50 Software Distribution Service 3.0 12-07-2013 20:23:45 Systemprüfpunkt 14-07-2013 15:50:53 Systemprüfpunkt 15-07-2013 16:43:05 Systemprüfpunkt 16-07-2013 17:57:46 Systemprüfpunkt 21-07-2013 15:48:55 Systemprüfpunkt 23-07-2013 13:30:14 Systemprüfpunkt 27-07-2013 07:34:24 Systemprüfpunkt 29-07-2013 17:48:44 Systemprüfpunkt 31-07-2013 07:35:03 Systemprüfpunkt 02-08-2013 21:18:27 Systemprüfpunkt 02-08-2013 21:56:06 ESET Smart Security wurde entfernt 05-08-2013 14:01:17 Java(TM) 6 Update 22 wird installiert 06-08-2013 14:36:40 Systemprüfpunkt 07-08-2013 16:23:15 Systemprüfpunkt 10-08-2013 14:26:48 Systemprüfpunkt 15-08-2013 22:45:47 Software Distribution Service 3.0 18-08-2013 20:26:55 Systemprüfpunkt 19-08-2013 21:03:58 Systemprüfpunkt 20-08-2013 22:06:30 Systemprüfpunkt 22-08-2013 15:22:30 Systemprüfpunkt 24-08-2013 20:53:57 Systemprüfpunkt 26-08-2013 17:04:28 Systemprüfpunkt 27-08-2013 18:17:57 Systemprüfpunkt 28-08-2013 15:31:33 Software Distribution Service 3.0 30-08-2013 07:24:41 Systemprüfpunkt 01-09-2013 12:09:27 Installed Active@ ISO Burner 01-09-2013 12:09:41 SPTD setup V1.62 01-09-2013 12:14:37 Uniblue SpeedUpMyPC installation 02-09-2013 17:21:23 Systemprüfpunkt 04-09-2013 18:48:55 Systemprüfpunkt 05-09-2013 21:11:09 Java(TM) 6 Update 22 wird entfernt 05-09-2013 21:11:50 Java(TM) 6 Update 22 wird installiert ==================== Hosts content: ========================== 2004-08-04 13:00 - 2013-08-16 13:13 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Programme\Apple Software Update\SoftwareUpdate.exe Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F660A0B-21EB-4224-A64D-9FCAFC9DDFD5}.job => C:\WINDOWS\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2008-04-14 06:51 - 2008-04-14 06:51 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime 2008-04-14 06:52 - 2009-02-09 12:51 - 00401408 _____ (Microsoft Corporation) c:\windows\system32\rpcss.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00082432 _____ (Microsoft Corporation) c:\windows\system32\WS2_32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00019968 _____ (Microsoft Corporation) c:\windows\system32\WS2HELP.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00297472 _____ (Microsoft Corporation) c:\windows\system32\termsrv.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00011264 _____ (Microsoft Corporation) c:\windows\system32\ICAAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00989696 _____ (Microsoft Corporation) c:\windows\system32\SETUPAPI.dll 2008-04-14 06:52 - 2012-08-24 15:53 - 00177664 _____ (Microsoft Corporation) c:\windows\system32\WINTRUST.dll 2008-04-14 06:52 - 2012-06-01 18:50 - 00606208 _____ (Microsoft Corporation) c:\windows\system32\CRYPT32.dll 2008-04-14 06:52 - 2009-09-04 23:03 - 00058880 _____ (Microsoft Corporation) c:\windows\system32\MSASN1.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00062464 _____ (Microsoft Corporation) c:\windows\system32\AUTHZ.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00116224 _____ (Microsoft Corporation) c:\windows\system32\mstlsapi.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00193536 _____ (Microsoft Corporation) c:\windows\system32\ACTIVEDS.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00143360 _____ (Microsoft Corporation) c:\windows\system32\adsldpc.dll 2008-04-14 06:52 - 2012-07-06 15:59 - 00337920 _____ (Microsoft Corporation) c:\windows\system32\NETAPI32.dll 2008-04-14 06:52 - 2009-07-17 21:01 - 00058880 _____ (Microsoft Corporation) c:\windows\system32\ATL.DLL 2008-04-14 06:52 - 2009-07-28 01:16 - 00135680 _____ (Microsoft Corporation) c:\windows\system32\shsvcs.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00127488 _____ (Microsoft Corporation) c:\windows\system32\dhcpcsvc.dll 2008-04-14 06:52 - 2011-03-03 08:54 - 00149504 _____ (Microsoft Corporation) c:\windows\system32\DNSAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00095744 _____ (Microsoft Corporation) c:\windows\system32\iphlpapi.dll 2008-04-14 09:52 - 2008-04-14 07:03 - 00483840 _____ (Microsoft Corporation) c:\windows\system32\wzcsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00044032 _____ (Microsoft Corporation) c:\windows\system32\rtutils.dll 2008-04-14 06:51 - 2008-04-14 06:51 - 00005632 _____ (Microsoft Corporation) c:\windows\system32\WMI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00030720 _____ (Microsoft Corporation) c:\windows\system32\EapolQec.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00076800 _____ (Microsoft Corporation) c:\windows\system32\QUtil.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00413696 _____ (Microsoft Corporation) c:\windows\system32\MSVCP60.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00026112 _____ (Microsoft Corporation) c:\windows\system32\dot3api.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00018432 _____ (Microsoft Corporation) c:\windows\system32\WTSAPI32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 01094144 _____ (Microsoft Corporation) c:\windows\system32\ESENT.dll 2011-01-31 20:34 - 2008-04-14 06:52 - 00193536 _____ (Microsoft Corporation) c:\windows\system32\schedsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00067072 _____ (Microsoft Corporation) c:\windows\system32\NTDSAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00042496 _____ (Microsoft Corporation) c:\windows\system32\audiosrv.dll 2008-04-14 06:52 - 2009-06-10 08:14 - 00132096 _____ (Microsoft Corporation) c:\windows\system32\wkssvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00062464 _____ (Microsoft Corporation) c:\windows\system32\cryptsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00198144 _____ (Microsoft Corporation) c:\windows\system32\certcli.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00023040 _____ (Microsoft Corporation) c:\windows\system32\ersvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00024064 _____ (Microsoft Corp.) c:\windows\system32\dmserver.dll 2008-04-14 06:52 - 2008-07-07 22:26 - 00253952 _____ (Microsoft Corporation) c:\windows\system32\es.dll 2008-04-14 06:52 - 2010-08-27 07:57 - 00099840 _____ (Microsoft Corporation) c:\windows\system32\srvsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00198144 _____ (Microsoft Corporation) c:\windows\system32\netman.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 01722880 _____ (Microsoft Corporation) c:\windows\system32\netshell.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00165376 _____ (Microsoft Corporation) c:\windows\system32\credui.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00009216 _____ (Microsoft Corporation) c:\windows\system32\dot3dlg.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00145408 _____ (Microsoft Corporation) c:\windows\system32\OneX.DLL 2008-04-14 06:52 - 2008-04-14 06:52 - 00126976 _____ (Microsoft Corporation) c:\windows\system32\eappcfg.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00040960 _____ (Microsoft Corporation) c:\windows\system32\eappprxy.dll 2008-04-14 09:52 - 2008-04-14 07:03 - 00052736 _____ (Microsoft Corporation) c:\windows\system32\WZCSAPI.DLL 2008-04-14 06:52 - 2008-04-14 06:52 - 00018944 _____ (Microsoft Corporation) c:\windows\system32\seclogon.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00039424 _____ (Microsoft Corporation) c:\windows\system32\sens.dll 2011-01-31 20:34 - 2008-04-14 06:52 - 00171520 _____ (Microsoft Corporation) c:\windows\system32\srsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00017408 _____ (Microsoft Corporation) c:\windows\system32\POWRPROF.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00090112 _____ (Microsoft Corporation) c:\windows\system32\trkwks.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00177152 _____ (Microsoft Corporation) c:\windows\system32\w32time.dll 2011-01-31 20:35 - 2008-04-14 06:52 - 00006656 _____ (Microsoft Corporation) c:\windows\system32\wuauserv.dll 2008-04-14 06:52 - 2012-07-06 15:59 - 00078336 _____ (Microsoft Corporation) c:\windows\system32\browser.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00334336 _____ (Microsoft Corporation) c:\windows\system32\ipnathlp.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00080896 _____ (Microsoft Corporation) c:\windows\system32\wscsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 02843136 _____ (Microsoft Corporation) c:\windows\system32\msi.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00249856 _____ (Microsoft Corporation) c:\windows\system32\tapisrv.dll 2006-09-28 19:56 - 2006-09-28 19:56 - 00055808 ____N (Microsoft Corporation) c:\windows\system32\wudfsvc.dll 2006-09-28 19:56 - 2006-09-28 19:56 - 00165376 ____N (Microsoft Corporation) c:\windows\system32\WUDFPlatform.dll 2011-02-02 15:48 - 2009-04-20 13:23 - 00123904 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpf3l70w.dll 2011-02-18 15:10 - 2001-10-28 17:42 - 00116224 _____ () C:\WINDOWS\system32\pdfcmnnt.dll 2011-02-02 15:48 - 2009-04-20 13:23 - 00315904 _____ (Hewlett-Packard Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpfpp70w.dll 2011-01-31 21:25 - 2008-07-06 14:06 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00008552 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\schedr.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00203112 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avevtlog.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00054120 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\cfglib.dll 2011-02-01 20:53 - 2010-06-17 15:27 - 00355688 _____ () C:\Programme\Avira\AntiVir Desktop\sqlite3.dll 2011-02-01 20:53 - 2010-06-17 15:27 - 00767488 _____ (Sleepycat Software) C:\Programme\Avira\AntiVir Desktop\libdb44.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00203112 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVEvtLog.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00037224 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\guardmsg.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00044904 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVPREF.DLL 2011-02-01 20:53 - 2010-12-13 09:39 - 00063848 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avsmtp.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00089960 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVGIO.DLL 2011-02-01 20:53 - 2010-06-17 15:26 - 00062312 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avipc.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00137344 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqddsvc.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00217728 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqddcmn.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00253568 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqcxs08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00633984 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpocxi08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00297600 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqcob08.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\wmiaprpl.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00044032 _____ (Hewlett-Packard) c:\windows\system32\hpzinw12.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00024576 _____ (Microsoft Corporation) c:\windows\system32\WSOCK32.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00053760 _____ (Hewlett-Packard) c:\windows\system32\hpzipm12.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00334336 _____ (Microsoft Corporation) c:\windows\system32\wiaservc.dll 2008-04-14 06:50 - 2008-04-14 06:50 - 00016896 _____ (Microsoft Corporation) c:\windows\system32\CFGMGR32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00989696 _____ (Microsoft Corporation) c:\windows\system32\setupapi.DLL 2008-04-14 06:52 - 2008-06-24 18:42 - 00074240 _____ (Microsoft Corporation) c:\windows\system32\mscms.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00053760 _____ (Microsoft Corporation) c:\windows\system32\WINSTA.dll 2008-05-26 23:23 - 2008-05-26 23:23 - 00262144 ____N (Microsoft Corporation) C:\WINDOWS\system32\de-de\tQuery.dll.mui 2011-01-31 20:35 - 2008-04-14 06:52 - 00409088 _____ (Microsoft Corporation) c:\windows\system32\qmgr.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00025088 _____ (Microsoft Corporation) c:\windows\system32\SHFOLDER.dll 2008-04-14 06:52 - 2011-11-16 16:21 - 00354816 _____ (Microsoft Corporation) c:\windows\system32\WINHTTP.dll 2011-01-31 20:32 - 2008-04-14 06:24 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\WMIApRes.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\wmiprov.dll 2011-04-29 20:01 - 2010-05-07 18:47 - 00114520 _____ (Logitech Inc.) C:\WINDOWS\system32\logishrd\LVPrcInj01.dll 2013-05-10 09:57 - 2013-05-10 09:57 - 00301056 _____ () C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.DEU 2012-11-29 16:06 - 2012-11-29 16:06 - 00030048 _____ (TuneUp Software) C:\Programme\TuneUp Utilities 2013\SDShelEx-win32.dll 2011-02-01 20:53 - 2010-06-17 15:27 - 00086376 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\shlext.dll 2011-01-17 17:19 - 2011-01-17 17:19 - 00420864 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll 2008-04-14 06:50 - 2008-04-14 06:50 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\system32\HHCTRL.OCX 2004-08-04 13:00 - 2004-08-04 13:00 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mui\0007\HHCTRLui.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00288616 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\ccwkrlib.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00054120 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cfglib.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00873832 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgen.dll 2011-02-01 20:53 - 2011-05-08 20:30 - 00039784 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgenrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00446312 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccguard.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00025448 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgrdrc.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00092520 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgrdw.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00290664 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccupdate.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00025448 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccupdrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00174440 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cclic.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00005480 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cclicrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00304488 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmsg.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00005480 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmsgrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 02589544 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\rcimage.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00008552 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmainrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00121704 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccupdw.dll 2010-05-07 18:35 - 2010-05-07 18:35 - 02143576 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtCore4.dll 2010-05-07 18:35 - 2010-05-07 18:35 - 07954776 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtGui4.dll 2010-05-07 18:36 - 2010-05-07 18:36 - 00340824 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtXml4.dll 2010-05-07 18:36 - 2010-05-07 18:36 - 00921944 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtNetwork4.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00027480 _____ () C:\Programme\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00126808 _____ () C:\Programme\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2010-11-17 14:16 - 2010-11-17 14:16 - 00053024 _____ (Open Source Software community project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\pthreadVC2.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 01292136 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libicuin.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 00923496 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libicuuc.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 16303976 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\icudt46.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00290648 _____ () C:\Programme\Gemeinsame Dateien\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 02141016 _____ () C:\Programme\Logitech\Vid\QtCore4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 07704408 _____ () C:\Programme\Logitech\Vid\QtGui4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00969048 _____ () C:\Programme\Logitech\Vid\QtNetwork4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00475480 _____ () C:\Programme\Logitech\Vid\QtOpenGL4.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 00363864 _____ () C:\Programme\Logitech\Vid\QtXml4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00200024 _____ () C:\Programme\Logitech\Vid\QtSql4.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 00027480 _____ () C:\Programme\Logitech\Vid\SDL.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 11311960 _____ () C:\Programme\Logitech\Vid\QtWebKit4.dll 2010-05-11 16:40 - 2010-05-11 16:40 - 00291672 _____ () C:\Programme\Logitech\Vid\phonon4.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00124320 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avutil-49.dll 2010-05-11 16:38 - 2010-05-11 16:38 - 03740560 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avcodec-52.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00366768 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avformat-52.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00755032 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264VidEncodeAPI.dll 2010-05-11 16:43 - 2010-05-11 16:43 - 00062808 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\StreamIO2.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00099672 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264NvidiaVidDecodeAPI.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00427352 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264VidDecodeAPI.dll 2010-05-11 16:40 - 2010-05-11 16:40 - 00267608 _____ (LuraTech Imaging GmbH) C:\Programme\Logitech\Vid\lwf_jp2.dll 2010-05-11 16:44 - 2010-05-11 16:44 - 00029016 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qgif4.dll 2010-05-11 16:44 - 2010-05-11 16:44 - 00035160 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qico4.dll 2010-05-11 16:45 - 2010-05-11 16:45 - 00138072 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qjpeg4.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00210048 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpquio08.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00048128 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtra08.rsc 2009-11-18 04:42 - 2009-11-18 04:42 - 00154752 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtao08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00279168 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotradd.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00542848 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotra08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00036992 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotra08.rsc 2009-11-17 21:39 - 2009-11-17 21:39 - 00330880 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqrif08.dll 2009-11-17 22:58 - 2009-11-17 22:58 - 00342656 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqmif08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 01176192 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpodio08.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00053888 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqddusr.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00217728 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqddcmn.dll 2009-11-17 22:58 - 2009-11-17 22:58 - 00559232 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqusg.dll 2011-01-31 23:36 - 2008-10-23 00:59 - 00036864 _____ (Realtek) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtlICS.dll 2011-01-31 23:36 - 2009-04-03 17:32 - 00110592 _____ () C:\Programme\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll 2011-01-31 23:36 - 2009-05-07 17:07 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtlLib.dll 2011-01-31 23:36 - 2007-11-28 05:32 - 01163264 _____ () C:\Programme\Realtek\11n USB Wireless LAN Utility\acAuth.dll 2011-01-31 23:36 - 2009-01-12 16:50 - 00143360 _____ (TODO: <Company name>) C:\Programme\Realtek\11n USB Wireless LAN Utility\IpLib.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01740800 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\sal3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00086016 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\uwinapi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 00379904 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sofficeapp.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01033728 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\comphelp4MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00432128 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00013312 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\salhelper3MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00142848 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\cppu3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00597504 _____ (STLport Consulting, Inc.) C:\Programme\OpenOffice.org 3\URE\bin\stlport_vc7145.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00358912 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucbhelper4MSC.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00094208 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\vos3MSC.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00135680 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\deploymentmiscmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00832000 _____ (Oracle) C:\Programme\OpenOffice.org 3\program\libdb47.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00529408 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\tlmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00700928 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\basegfxmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00026112 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18nisolang1MSC.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00958464 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\utlmi.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00531456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\xcrmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 03234816 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sfxmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00869888 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwemi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00311296 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwimi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 02863616 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svtmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 02186752 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\tkmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 03266560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\vclmi.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00256000 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sotmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00029184 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18npapermi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00066560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18nutilMSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00951296 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icuuc40.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 13914112 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icudt40.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00777216 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svlmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00092160 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\jvmfwk3.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00985088 _____ () C:\Programme\OpenOffice.org 3\program\libxml2.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01577984 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sbmi.dll 2010-11-19 13:42 - 2010-11-19 13:42 - 00083456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\saxmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00051712 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\msci_uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00452608 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\bootstrap.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00092672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\reg3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00053248 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\store3.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00396800 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\configmgr.uno.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00024064 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\localebe1.uno.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00092672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\stocservices.uno.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00212992 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucb1.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 01649152 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwkmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00257024 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucpfile1.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01317376 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18npool.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 01071616 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icuin40.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00083968 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\oooimprovementmi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 02524672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svxmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 01457152 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\editengmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 02967552 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\xomi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00991744 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\lngmi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 05470208 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svxcoremi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00211456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\avmediami.dll 2011-01-17 17:18 - 2011-01-31 23:44 - 01026560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\drawinglayermi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00503296 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\canvastoolsmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00129024 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\aggmi.dll 2011-01-17 17:18 - 2011-01-31 23:44 - 00285184 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\cppcanvasmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00287232 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\oleautobridge.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00148480 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\emsermi.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00499840 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqwso08.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00034816 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzipr12.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00314496 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqsti08.dll 2009-11-17 20:49 - 2009-11-17 20:49 - 00045184 _____ (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpb01.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00289920 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqstp08.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00012288 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqstp08.rsc 2009-11-18 04:02 - 2009-11-18 04:02 - 00208000 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqssm08.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00978432 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqsem08.rsc 2009-11-18 04:02 - 2009-11-18 04:02 - 00062080 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\HpqSplh08.dll 2009-11-17 21:39 - 2009-11-17 21:39 - 00101504 _____ (Hewlett Packard) C:\Programme\HP\Digital Imaging\Product Assistant\bin\hprbevst.dll 2009-11-17 20:49 - 2009-11-17 20:49 - 00043136 _____ (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpreh.dll 2008-04-14 06:52 - 2009-11-21 17:54 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\AppPatch\AcLayers.DLL 2009-10-22 05:29 - 2009-10-22 05:29 - 00328248 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00116280 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\UtilityLib.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00030776 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00206392 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\SatelliteDEU.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00053304 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\hpXRE.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00428088 _____ (sqlite.org) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\sqlite3.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00606264 _____ (Netscape Communications Corporation) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\js3250.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00049720 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\hpNeoLogging.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00026168 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00071736 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00023096 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00048696 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00027704 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00042040 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00144952 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_Operation.dll 2011-02-09 17:31 - 2011-02-09 17:31 - 00041760 _____ (Sun Microsystems, Inc.) C:\Programme\Java\jre6\bin\jp2ssv.dll 2011-02-09 17:31 - 2011-02-09 17:31 - 00079648 _____ (Sun Microsystems, Inc.) C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00517688 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00144952 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\ClipBookDBComponent.dll 2013-08-22 16:41 - 2013-08-22 16:41 - 16230792 ____R (Adobe Systems, Inc.) C:\WINDOWS\system32\Macromed\Flash\Flash32_11_8_800_94.ocx ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= Name: Videocontroller (VGA-kompatibel) Description: Videocontroller (VGA-kompatibel) Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318} Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Modemgerät auf High Definition Audio-Bus Description: Modemgerät auf High Definition Audio-Bus Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318} Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/06/2013 02:45:58 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (09/02/2013 06:34:18 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (09/01/2013 02:44:23 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung OTLPE.exe, Version 3.1.48.0, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (09/01/2013 01:39:05 PM) (Source: Application Hang) (User: ) Description: Fehlerhafter Speicherbereich 1180947459. Error: (09/01/2013 01:38:58 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (08/30/2013 08:12:25 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/23/2013 03:16:49 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/22/2013 01:18:25 AM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (08/11/2013 00:35:43 PM) (Source: ESENT) (User: ) Description: svchost (1012) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb" für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (08/08/2013 08:55:54 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. System errors: ============= Error: (08/18/2013 03:04:14 AM) (Source: WPDMTPDriver) (User: ) Description: MTP WPD Driver has failed to start. Error 0x8007048f. Error: (08/18/2013 03:03:32 AM) (Source: WPDMTPDriver) (User: ) Description: MTP WPD Driver has failed to start. Error 0x80070005. Error: (08/16/2013 00:42:07 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Process Monitor" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/16/2013 00:42:06 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Skype C2C Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/16/2013 00:08:42 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/16/2013 02:39:28 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/16/2013 00:05:02 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 00:34:49 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 00:24:51 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 01:23:19 AM) (Source: DCOM) (User: ERIC-2E84DA5617) Description: Der Server "{DC0C2640-1415-4644-875C-6F4D769839BA}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Microsoft Office Sessions: ========================= Error: (09/06/2013 02:45:58 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (09/02/2013 06:34:18 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (09/01/2013 02:44:23 PM) (Source: Application Hang)(User: ) Description: OTLPE.exe3.1.48.0hungapp0.0.0.000000000 Error: (09/01/2013 01:39:05 PM) (Source: Application Hang)(User: ) Description: 1180947459 Error: (09/01/2013 01:38:58 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (08/30/2013 08:12:25 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/23/2013 03:16:49 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/22/2013 01:18:25 AM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (08/11/2013 00:35:43 PM) (Source: ESENT)(User: ) Description: svchost1012C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (08/08/2013 08:55:54 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 ==================== Memory info =========================== Percentage of memory in use: 68% Total physical RAM: 1918.16 MB Available physical RAM: 598.65 MB Total Pagefile: 3814.94 MB Available Pagefile: 2318.88 MB Total Virtual: 2047.88 MB Available Virtual: 1944.54 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.83 GB) (Free:13.19 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive d: () (Fixed) (Total:100.21 GB) (Free:99.9 GB) NTFS Drive f: (KINGSTON) (Removable) (Total:0.48 GB) (Free:0.46 GB) FAT ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 149 GB) (Disk ID: 15DBD2CF) Partition 1: (Active) - (Size=49 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=100 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 492 MB) (Disk ID: 00000000) Partition 1: (Active) - (Size=491 MB) - (Type=0E) ==================== End Of Log ============================ |
06.09.2013, 17:48 | #50 |
/// the machine /// TB-Ausbilder | BKA-Trojaner Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKU\Administrator\...\Run: [ctfmon32.exe] - C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat,XFG00 [x] <===== ATTENTION C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat ZeroAccess: C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} ZeroAccess: C:\Temp\{2F822836-52C6-427A-8690-91732CB6F143} ZeroAccess: C:\Temp\{46937E47-A407-404B-A547-A51A1A576832} ZeroAccess: C:\Temp\{65FC407F-93C2-4A72-9DFC-29D3CB364B7E} C:\Temp\Quarantine.exe C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706}\setup.exe C:\Temp\jrt\erunt\ERUNT.EXE C:\Temp\7zS50BD\hpzc3212.dll C:\Temp\7zS50BD\hpzids01.dll C:\Temp\7zS50BD\HPZIDS40.dll C:\Temp\7zS50BD\hpzsetup.exe C:\Temp\7zS50BD\hpzstub.exe C:\Temp\7zS50BD\hpzuci12.dll C:\Temp\7zS50BD\Setup.exe C:\Temp\7zS50BD\util\ccc\CCC_Uninstaller.exe C:\Temp\7zS50BD\util\ccc\FixErr1714.exe C:\Temp\7zS50BD\util\ccc\hpqrrx08.exe C:\Temp\7zS50BD\util\ccc\PrintUtil.exe C:\Temp\7zS50BD\util\ccc\x64\printutil.exe C:\Temp\7zS50BD\util\ccc\deu\WindowsXP-KB822603-x86-DEU.exe C:\Temp\7zS50BD\setup\difxapi.dll C:\Temp\7zS50BD\setup\doccd.exe C:\Temp\7zS50BD\setup\DOT4_Plugin.exe C:\Temp\7zS50BD\setup\HPCommunication.dll C:\Temp\7zS50BD\setup\HPeDiag.dll C:\Temp\7zS50BD\setup\HPeSupport.dll C:\Temp\7zS50BD\setup\hpqbhp01.exe C:\Temp\7zS50BD\setup\HPScripting.dll C:\Temp\7zS50BD\setup\hpzarp01.exe C:\Temp\7zS50BD\setup\hpzcdl01.exe C:\Temp\7zS50BD\setup\hpzchk01.exe C:\Temp\7zS50BD\setup\hpzdui01.exe C:\Temp\7zS50BD\setup\hpzdui40.exe C:\Temp\7zS50BD\setup\hpzfwx01.exe C:\Temp\7zS50BD\setup\hpzgat01.exe C:\Temp\7zS50BD\setup\hpzhsg01.exe C:\Temp\7zS50BD\setup\hpzmsi01.exe C:\Temp\7zS50BD\setup\hpznop01.exe C:\Temp\7zS50BD\setup\hpznui01.exe C:\Temp\7zS50BD\setup\hpznui40.exe C:\Temp\7zS50BD\setup\hpzpnp01.exe C:\Temp\7zS50BD\setup\hpzpnp40.exe C:\Temp\7zS50BD\setup\hpzprl01.exe C:\Temp\7zS50BD\setup\hpzprl40.exe C:\Temp\7zS50BD\setup\hpzpsc01.exe C:\Temp\7zS50BD\setup\hpzpsl01.exe C:\Temp\7zS50BD\setup\hpzrcn01.exe C:\Temp\7zS50BD\setup\hpzrcv01.exe C:\Temp\7zS50BD\setup\hpzrein01.exe C:\Temp\7zS50BD\setup\hpzscr01.exe C:\Temp\7zS50BD\setup\hpzscr40.exe C:\Temp\7zS50BD\setup\hpzshl01.exe C:\Temp\7zS50BD\setup\hpzshl40.exe C:\Temp\7zS50BD\setup\HPZSWP01.exe C:\Temp\7zS50BD\setup\hpztim01.exe C:\Temp\7zS50BD\setup\hpzwis01.exe C:\Temp\7zS50BD\setup\hpzwrp01.exe C:\Temp\7zS50BD\setup\hpzwup01.exe C:\Temp\7zS50BD\setup\InstallMetrics.dll C:\Temp\7zS50BD\setup\InternetUtil.dll C:\Temp\7zS50BD\setup\msxml3.dll C:\Temp\7zS50BD\setup\msxml3a.dll C:\Temp\7zS50BD\setup\msxml3r.dll C:\Temp\7zS50BD\setup\RulesEngine.dll C:\Temp\7zS50BD\setup\usbready.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-win32.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-x64.exe C:\Temp\7zS50BD\setup\yahoo\ytb_7.2.2.0_1.5.4_mail_bts_pub_uber_rev_setup_2008.11.25.01.exe C:\Temp\7zS50BD\setup\yahoo\y_hp_intl_detect.exe C:\Temp\7zS50BD\setup\x64\difxapi.dll C:\Temp\7zS50BD\setup\wowprint\wowprintflow.exe C:\Temp\7zS50BD\setup\wis\Win2K_XP\instmsi.exe C:\Temp\7zS50BD\setup\rocketlife\RLBootstrap.exe C:\Temp\7zS50BD\setup\hwsetupwizard\hw_guide.exe C:\Temp\7zS50BD\setup\hpqadobeui\hpqadobeui.exe C:\Temp\7zS50BD\setup\coupons\CouponPrinter.exe C:\Temp\7zS50BD\drivers\scanner\x64\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x64\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x64\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpotsti1.dll C:\Temp\7zS50BD\drivers\dot4\win2000\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hpzc3212.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.x64.dll Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Frisches FRST Log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
08.09.2013, 12:30 | #51 |
| BKA-TrojanerCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 06-09-2013 Ran by Karo at 2013-09-08 13:26:48 Run:7 Running from C:\Dokumente und Einstellungen\Karo\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKU\Administrator\...\Run: [ctfmon32.exe] - C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat,XFG00 [x] <===== ATTENTION C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat ZeroAccess: C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} ZeroAccess: C:\Temp\{2F822836-52C6-427A-8690-91732CB6F143} ZeroAccess: C:\Temp\{46937E47-A407-404B-A547-A51A1A576832} ZeroAccess: C:\Temp\{65FC407F-93C2-4A72-9DFC-29D3CB364B7E} C:\Temp\Quarantine.exe C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706}\setup.exe C:\Temp\jrt\erunt\ERUNT.EXE C:\Temp\7zS50BD\hpzc3212.dll C:\Temp\7zS50BD\hpzids01.dll C:\Temp\7zS50BD\HPZIDS40.dll C:\Temp\7zS50BD\hpzsetup.exe C:\Temp\7zS50BD\hpzstub.exe C:\Temp\7zS50BD\hpzuci12.dll C:\Temp\7zS50BD\Setup.exe C:\Temp\7zS50BD\util\ccc\CCC_Uninstaller.exe C:\Temp\7zS50BD\util\ccc\FixErr1714.exe C:\Temp\7zS50BD\util\ccc\hpqrrx08.exe C:\Temp\7zS50BD\util\ccc\PrintUtil.exe C:\Temp\7zS50BD\util\ccc\x64\printutil.exe C:\Temp\7zS50BD\util\ccc\deu\WindowsXP-KB822603-x86-DEU.exe C:\Temp\7zS50BD\setup\difxapi.dll C:\Temp\7zS50BD\setup\doccd.exe C:\Temp\7zS50BD\setup\DOT4_Plugin.exe C:\Temp\7zS50BD\setup\HPCommunication.dll C:\Temp\7zS50BD\setup\HPeDiag.dll C:\Temp\7zS50BD\setup\HPeSupport.dll C:\Temp\7zS50BD\setup\hpqbhp01.exe C:\Temp\7zS50BD\setup\HPScripting.dll C:\Temp\7zS50BD\setup\hpzarp01.exe C:\Temp\7zS50BD\setup\hpzcdl01.exe C:\Temp\7zS50BD\setup\hpzchk01.exe C:\Temp\7zS50BD\setup\hpzdui01.exe C:\Temp\7zS50BD\setup\hpzdui40.exe C:\Temp\7zS50BD\setup\hpzfwx01.exe C:\Temp\7zS50BD\setup\hpzgat01.exe C:\Temp\7zS50BD\setup\hpzhsg01.exe C:\Temp\7zS50BD\setup\hpzmsi01.exe C:\Temp\7zS50BD\setup\hpznop01.exe C:\Temp\7zS50BD\setup\hpznui01.exe C:\Temp\7zS50BD\setup\hpznui40.exe C:\Temp\7zS50BD\setup\hpzpnp01.exe C:\Temp\7zS50BD\setup\hpzpnp40.exe C:\Temp\7zS50BD\setup\hpzprl01.exe C:\Temp\7zS50BD\setup\hpzprl40.exe C:\Temp\7zS50BD\setup\hpzpsc01.exe C:\Temp\7zS50BD\setup\hpzpsl01.exe C:\Temp\7zS50BD\setup\hpzrcn01.exe C:\Temp\7zS50BD\setup\hpzrcv01.exe C:\Temp\7zS50BD\setup\hpzrein01.exe C:\Temp\7zS50BD\setup\hpzscr01.exe C:\Temp\7zS50BD\setup\hpzscr40.exe C:\Temp\7zS50BD\setup\hpzshl01.exe C:\Temp\7zS50BD\setup\hpzshl40.exe C:\Temp\7zS50BD\setup\HPZSWP01.exe C:\Temp\7zS50BD\setup\hpztim01.exe C:\Temp\7zS50BD\setup\hpzwis01.exe C:\Temp\7zS50BD\setup\hpzwrp01.exe C:\Temp\7zS50BD\setup\hpzwup01.exe C:\Temp\7zS50BD\setup\InstallMetrics.dll C:\Temp\7zS50BD\setup\InternetUtil.dll C:\Temp\7zS50BD\setup\msxml3.dll C:\Temp\7zS50BD\setup\msxml3a.dll C:\Temp\7zS50BD\setup\msxml3r.dll C:\Temp\7zS50BD\setup\RulesEngine.dll C:\Temp\7zS50BD\setup\usbready.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-win32.exe C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-x64.exe C:\Temp\7zS50BD\setup\yahoo\ytb_7.2.2.0_1.5.4_mail_bts_pub_uber_rev_setup_2008.11.25.01.exe C:\Temp\7zS50BD\setup\yahoo\y_hp_intl_detect.exe C:\Temp\7zS50BD\setup\x64\difxapi.dll C:\Temp\7zS50BD\setup\wowprint\wowprintflow.exe C:\Temp\7zS50BD\setup\wis\Win2K_XP\instmsi.exe C:\Temp\7zS50BD\setup\rocketlife\RLBootstrap.exe C:\Temp\7zS50BD\setup\hwsetupwizard\hw_guide.exe C:\Temp\7zS50BD\setup\hpqadobeui\hpqadobeui.exe C:\Temp\7zS50BD\setup\coupons\CouponPrinter.exe C:\Temp\7zS50BD\drivers\scanner\x64\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x64\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x64\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposc_p02a.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpost_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hposwia_p02e.dll C:\Temp\7zS50BD\drivers\scanner\x32\hpotsti1.dll C:\Temp\7zS50BD\drivers\dot4\win2000\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\win2000\hpzc3212.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\difxapi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.dll C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.x64.dll ***************** HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\ctfmon32.exe => Value deleted successfully. "C:\DOKUME~1\ALLUSE~1\ANWEND~1\rundll32.exe" => File/Directory not found. "C:\DOKUME~1\ALLUSE~1\ANWEND~1\jhlor.dat" => File/Directory not found. C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706} => Moved successfully. C:\Temp\{2F822836-52C6-427A-8690-91732CB6F143} => Moved successfully. C:\Temp\{46937E47-A407-404B-A547-A51A1A576832} => Moved successfully. C:\Temp\{65FC407F-93C2-4A72-9DFC-29D3CB364B7E} => Moved successfully. C:\Temp\Quarantine.exe => Moved successfully. "C:\Temp\{0DA8F8F0-CD6A-405D-8E54-7D65934BF706}\setup.exe" => File/Directory not found. C:\Temp\jrt\erunt\ERUNT.EXE => Moved successfully. C:\Temp\7zS50BD\hpzc3212.dll => Moved successfully. C:\Temp\7zS50BD\hpzids01.dll => Moved successfully. C:\Temp\7zS50BD\HPZIDS40.dll => Moved successfully. C:\Temp\7zS50BD\hpzsetup.exe => Moved successfully. C:\Temp\7zS50BD\hpzstub.exe => Moved successfully. C:\Temp\7zS50BD\hpzuci12.dll => Moved successfully. C:\Temp\7zS50BD\Setup.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\CCC_Uninstaller.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\FixErr1714.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\hpqrrx08.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\PrintUtil.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\x64\printutil.exe => Moved successfully. C:\Temp\7zS50BD\util\ccc\deu\WindowsXP-KB822603-x86-DEU.exe => Moved successfully. C:\Temp\7zS50BD\setup\difxapi.dll => Moved successfully. C:\Temp\7zS50BD\setup\doccd.exe => Moved successfully. C:\Temp\7zS50BD\setup\DOT4_Plugin.exe => Moved successfully. C:\Temp\7zS50BD\setup\HPCommunication.dll => Moved successfully. C:\Temp\7zS50BD\setup\HPeDiag.dll => Moved successfully. C:\Temp\7zS50BD\setup\HPeSupport.dll => Moved successfully. C:\Temp\7zS50BD\setup\hpqbhp01.exe => Moved successfully. C:\Temp\7zS50BD\setup\HPScripting.dll => Moved successfully. C:\Temp\7zS50BD\setup\hpzarp01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzcdl01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzchk01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzdui01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzdui40.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzfwx01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzgat01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzhsg01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzmsi01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpznop01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpznui01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpznui40.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzpnp01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzpnp40.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzprl01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzprl40.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzpsc01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzpsl01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzrcn01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzrcv01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzrein01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzscr01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzscr40.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzshl01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzshl40.exe => Moved successfully. C:\Temp\7zS50BD\setup\HPZSWP01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpztim01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzwis01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzwrp01.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpzwup01.exe => Moved successfully. C:\Temp\7zS50BD\setup\InstallMetrics.dll => Moved successfully. C:\Temp\7zS50BD\setup\InternetUtil.dll => Moved successfully. C:\Temp\7zS50BD\setup\msxml3.dll => Moved successfully. C:\Temp\7zS50BD\setup\msxml3a.dll => Moved successfully. C:\Temp\7zS50BD\setup\msxml3r.dll => Moved successfully. C:\Temp\7zS50BD\setup\RulesEngine.dll => Moved successfully. C:\Temp\7zS50BD\setup\usbready.exe => Moved successfully. C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-win32.exe => Moved successfully. C:\Temp\7zS50BD\setup\yahoo\YTBInstallWrapper-x64.exe => Moved successfully. C:\Temp\7zS50BD\setup\yahoo\ytb_7.2.2.0_1.5.4_mail_bts_pub_uber_rev_setup_2008.11.25.01.exe => Moved successfully. C:\Temp\7zS50BD\setup\yahoo\y_hp_intl_detect.exe => Moved successfully. C:\Temp\7zS50BD\setup\x64\difxapi.dll => Moved successfully. C:\Temp\7zS50BD\setup\wowprint\wowprintflow.exe => Moved successfully. C:\Temp\7zS50BD\setup\wis\Win2K_XP\instmsi.exe => Moved successfully. C:\Temp\7zS50BD\setup\rocketlife\RLBootstrap.exe => Moved successfully. C:\Temp\7zS50BD\setup\hwsetupwizard\hw_guide.exe => Moved successfully. C:\Temp\7zS50BD\setup\hpqadobeui\hpqadobeui.exe => Moved successfully. C:\Temp\7zS50BD\setup\coupons\CouponPrinter.exe => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x64\hposc_p02a.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x64\hpost_p02e.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x64\hposwia_p02e.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x32\hposc_p02a.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x32\hpost_p02e.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x32\hposwia_p02e.dll => Moved successfully. C:\Temp\7zS50BD\drivers\scanner\x32\hpotsti1.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\win2000\difxapi.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\win2000\hppldcoi.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\win2000\hpzc3212.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\difxapi.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.dll => Moved successfully. C:\Temp\7zS50BD\drivers\dot4\amd64\winxp\hppldcoi.x64.dll => Moved successfully. ==== End of Fixlog ==== FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-09-2013 Ran by Karo (administrator) on ERIC-2E84DA5617 on 08-09-2013 13:27:42 Running from C:\Dokumente und Einstellungen\Karo\Desktop Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avguard.exe (Sun Microsystems, Inc.) C:\Programme\Java\jre6\bin\jqs.exe (Logitech Inc.) C:\Programme\Gemeinsame Dateien\Logishrd\LVMVFM\LVPrcSrv.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Skype Technologies S.A.) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype\Toolbars\Skype C2C Service\c2c_service.exe (TuneUp Software) C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (TuneUp Software) C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Logitech Inc.) C:\Programme\Logitech\LWS\Webcam Software\LWS.exe (Hewlett-Packard) C:\Programme\HP\HP Software Update\HPWuSchd2.exe (Apple Inc.) C:\Programme\iTunes\iTunesHelper.exe (Samsung Electronics Co., Ltd.) C:\Programme\Samsung\Kies\KiesTrayAgent.exe () C:\Programme\Logitech\LWS\Webcam Software\CameraHelperShell.exe () C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe (Logitech Inc.) C:\Programme\Logitech\Vid\vid.exe (Apple Inc.) C:\Programme\iPod\bin\iPodService.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe (Realtek Semiconductor Corp.) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Microsoft Corporation) C:\Programme\Windows Desktop Search\WindowsSearch.exe (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\soffice.bin (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpc01.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe (Logitech, Inc.) C:\Programme\Logitech\LWS\LU\LULnchr.exe (Logitech, Inc.) C:\Programme\Logitech\LWS\LU\LogitechUpdate.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [16062464 2006-12-19] (Realtek Semiconductor Corp.) HKLM\...\Run: [SkyTel] - C:\Windows\SkyTel.EXE [2879488 2006-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [281768 2010-12-13] (Avira GmbH) HKLM\...\Run: [AppleSyncNotifier] - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleSyncNotifier.exe [58656 2011-04-20] (Apple Inc.) HKLM\...\Run: [LWS] - C:\Programme\Logitech\LWS\Webcam Software\LWS.exe [165208 2010-05-07] (Logitech Inc.) HKLM\...\Run: [HP Software Update] - C:\Programme\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.) HKLM\...\Run: [iTunesHelper] - C:\Programme\iTunes\iTunesHelper.exe [421736 2011-11-13] (Apple Inc.) HKLM\...\Run: [KiesTrayAgent] - C:\Programme\Samsung\Kies\KiesTrayAgent.exe [309688 2012-12-03] (Samsung Electronics Co., Ltd.) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-10] (Adobe Systems Incorporated) HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1 HKLM\...\Policies\Explorer: [NoDriveAutoRun] 67108863 HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 323 HKLM\...\Policies\Explorer: [NoDrives] 0 HKCU\...\Run: [StartCCC] - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [90112 2006-11-10] () HKCU\...\Run: [Logitech Vid HD] - C:\Programme\Logitech\Vid\vid.exe [6061400 2010-05-11] (Logitech Inc.) HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 323 HKCU\...\Policies\Explorer: [NoDriveAutoRun] 67108863 HKCU\...\Policies\Explorer: [NoDrives] 0 HKU\Administrator\...\Run: [] - [x] HKU\Administrator\...\Run: [StartCCC] - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [ 2006-11-10] () HKU\Administrator\...\Run: [swg] - "C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Administrator\...\Run: [MSMSGS] - C:\Programme\Messenger\msmsgs.exe [ 2008-04-14] (Microsoft Corporation) HKU\Administrator\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe -update activex [x] HKU\Default User\...\RunOnce: [nltide_3] - C:\Windows\System32\advpack.dll [ 2009-03-08] (Microsoft Corporation) HKU\Default User\...\RunOnce: [_nltide_3] - C:\Windows\System32\advpack.dll [ 2009-03-08] (Microsoft Corporation) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\REALTEK 11n USB Wireless LAN Utility.lnk ShortcutTarget: REALTEK 11n USB Wireless LAN Utility.lnk -> C:\Programme\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Windows Search.lnk ShortcutTarget: Windows Search.lnk -> C:\Programme\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation) Startup: C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Programme\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {65759893-8694-43BC-876A-6699814FD7C9} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=827316&p={searchTerms} BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKCU -No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1296499764250 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~1\GEMEIN~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL (Skype Technologies) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Programme\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx CHR HKLM\...\Chrome\Extension: [odnofacmifkjndflfmmplhckcbfjckhj] - C:\Programme\LyriXeeker\125.crx ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [136360 2011-05-08] (Avira GmbH) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [269480 2011-06-28] (Avira GmbH) R3 hpqcxs08; C:\Programme\HP\Digital Imaging\bin\hpqcxs08.dll [253568 2009-11-18] (Hewlett-Packard Co.) R2 hpqddsvc; C:\Programme\HP\Digital Imaging\bin\hpqddsvc.dll [137344 2009-11-18] (Hewlett-Packard Co.) R3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [821608 2011-11-13] (Apple Inc.) R2 LVPrcSrv; C:\Programme\Gemeinsame Dateien\Logishrd\LVMVFM\LVPrcSrv.exe [162648 2010-05-07] (Logitech Inc.) R2 MBAMScheduler; C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Skype C2C Service; C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S2 SkypeUpdate; C:\Programme\Skype\Updater\Updater.exe [161384 2013-02-28] (Skype Technologies) R2 TuneUp.UtilitiesSvc; C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [1723744 2012-11-29] (TuneUp Software) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2009-02-04] (Microsoft Corporation) R2 JavaQuickStarterService; "C:\Programme\Java\jre6\bin\jqs.exe" -service -config "C:\Programme\Java\jre6\lib\deploy\jqs\jqs.conf" [x] ==================== Drivers (Whitelisted) ==================== R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21361 2011-01-31] (Cisco Systems, Inc.) R3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1606368 2011-01-31] (Atheros Communications, Inc.) R1 avgio; C:\Programme\Avira\AntiVir Desktop\avgio.sys [11608 2010-06-17] (Avira GmbH) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [66616 2011-06-28] (Avira GmbH) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [138192 2011-06-28] (Avira GmbH) S3 CompFilter; C:\Windows\System32\DRIVERS\lvbusflt.sys [20704 2010-05-14] (Logitech Inc.) S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49920 2008-10-29] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2008-10-29] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21568 2008-10-29] (HP) R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25824 2010-05-07] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2013-09-01] () S3 sscebus; C:\Windows\System32\DRIVERS\sscebus.sys [98560 2012-06-27] (MCCI Corporation) S3 sscemdfl; C:\Windows\System32\DRIVERS\sscemdfl.sys [14848 2012-06-27] (MCCI Corporation) S3 sscemdm; C:\Windows\System32\DRIVERS\sscemdm.sys [123648 2012-06-27] (MCCI Corporation) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2010-06-17] (Avira GmbH) R2 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5504 2012-06-03] () R3 TuneUpUtilitiesDrv; C:\Programme\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [10088 2012-11-16] (TuneUp Software) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S4 IntelIde; No ImagePath S3 USBAAPL; System32\Drivers\usbaapl.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-08 13:28 - 2013-09-08 13:28 - 00011322 _____ C:\Temp\log1 2013-09-08 13:28 - 2013-09-08 13:28 - 00001191 _____ C:\Temp\ads000 2013-09-08 13:27 - 2013-09-08 13:28 - 00014072 _____ C:\Temp\frstlog 2013-09-08 13:27 - 2013-09-08 13:27 - 00103245 _____ C:\Temp\modules00 2013-09-08 13:27 - 2013-09-08 13:27 - 00016384 ____T C:\Temp\~DFA31A.tmp 2013-09-08 13:27 - 2013-09-08 13:27 - 00000303 _____ C:\Temp\users00 2013-09-08 13:27 - 2013-09-08 13:27 - 00000003 _____ C:\Temp\others 2013-09-08 13:24 - 2013-09-08 13:27 - 00020480 ____T C:\Temp\~DF44CA.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00032768 _____ C:\Temp\~DFDD34.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00032768 _____ C:\Temp\~DFD6A5.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00016384 ____T C:\Temp\~DF3950.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00016384 _____ C:\Temp\~DFD943.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFDDED.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFD9BA.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFD6DA.tmp 2013-09-08 13:23 - 2013-09-08 13:23 - 00001313 ____T C:\Temp\MAR4F.tmp 2013-09-08 13:23 - 2013-09-08 13:23 - 00001285 ____T C:\Temp\MAR50.tmp 2013-09-08 13:23 - 2013-09-08 13:23 - 00000000 ____D C:\Temp\sv4jf.tmp 2013-09-08 13:22 - 2013-09-08 13:22 - 00000000 ____D C:\Temp\WPDNSE 2013-09-06 15:10 - 2013-09-06 15:10 - 01081729 _____ (Farbar) C:\Dokumente und Einstellungen\Karo\Desktop\FRST.exe 2013-09-06 14:51 - 2013-09-06 14:51 - 00006582 _____ C:\Temp\HPWUCl002.log 2013-09-06 14:46 - 2013-09-06 14:46 - 00001313 ____T C:\Temp\MAR4D.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00001285 ____T C:\Temp\MAR4E.tmp 2013-09-05 23:12 - 2011-02-02 22:40 - 00157472 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaws.exe 2013-09-05 23:12 - 2011-02-02 22:40 - 00145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaw.exe 2013-09-05 23:12 - 2011-02-02 22:40 - 00145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\java.exe 2013-09-05 23:11 - 2013-09-05 23:12 - 00028832 _____ C:\Temp\java_install.log 2013-09-05 23:11 - 2013-09-05 23:12 - 00003802 _____ C:\Temp\java_install_reg.log 2013-09-05 23:11 - 2013-09-05 23:12 - 00000409 _____ C:\Temp\JAUReg.log 2013-09-05 23:10 - 2013-09-05 23:10 - 00077824 _____ C:\Temp\fd8c4.mst 2013-09-05 22:57 - 2013-09-05 22:57 - 00001313 ____T C:\Temp\MAR4B.tmp 2013-09-05 22:57 - 2013-09-05 22:57 - 00001285 ____T C:\Temp\MAR4C.tmp 2013-09-04 20:08 - 2013-09-04 20:08 - 00000000 ____D C:\Temp\RarSFX1 2013-09-04 19:00 - 2013-09-04 19:00 - 02347384 _____ (ESET) C:\Dokumente und Einstellungen\Karo\Desktop\esetsmartinstaller_enu.exe 2013-09-04 18:41 - 2013-09-04 18:41 - 00001313 ____T C:\Temp\MAR49.tmp 2013-09-04 18:41 - 2013-09-04 18:41 - 00001285 ____T C:\Temp\MAR4A.tmp 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Temp\JRT.txt 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Dokumente und Einstellungen\Karo\Desktop\JRT.txt 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\WINDOWS\ERUNT 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\Temp\jrt 2013-09-03 19:18 - 2013-09-03 19:18 - 00001313 ____T C:\Temp\MAR47.tmp 2013-09-03 19:18 - 2013-09-03 19:18 - 00001285 ____T C:\Temp\MAR48.tmp 2013-09-03 19:04 - 2013-09-03 19:09 - 00000000 ____D C:\AdwCleaner 2013-09-03 19:04 - 2013-09-03 19:09 - 00000000 _____ C:\Temp\preferences 2013-09-03 19:04 - 2013-09-03 19:04 - 01037222 _____ C:\Dokumente und Einstellungen\Karo\Desktop\adwcleaner.exe 2013-09-03 19:02 - 2013-09-03 19:02 - 01028757 _____ (Thisisu) C:\Dokumente und Einstellungen\Karo\Desktop\JRT.exe 2013-09-03 18:58 - 2013-09-03 18:58 - 00001313 ____T C:\Temp\MAR45.tmp 2013-09-03 18:58 - 2013-09-03 18:58 - 00001285 ____T C:\Temp\MAR46.tmp 2013-09-03 18:33 - 2013-09-03 18:33 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Malwarebytes 2013-09-03 18:32 - 2013-09-03 18:33 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-09-03 18:32 - 2013-09-03 18:32 - 00000756 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-03 18:32 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-09-03 18:31 - 2013-09-03 18:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Karo\Desktop\mbam-setup-1.75.0.1300.exe 2013-09-03 17:55 - 2013-09-03 17:55 - 00001313 ____T C:\Temp\MAR43.tmp 2013-09-03 17:55 - 2013-09-03 17:55 - 00001285 ____T C:\Temp\MAR44.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001313 ____T C:\Temp\MAR41.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001285 ____T C:\Temp\MAR42.tmp 2013-09-02 20:28 - 2013-09-02 20:28 - 00000000 ____D C:\_OTL 2013-09-02 20:28 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-09-02 19:56 - 2013-09-02 19:56 - 00001417 _____ C:\Temp\hpC3.html 2013-09-02 19:54 - 2013-09-02 19:55 - 00000637 _____ C:\Temp\IOConnection.txt 2013-09-02 19:52 - 2013-09-08 13:26 - 00000000 ____D C:\Temp\7zS50BD 2013-09-02 19:41 - 2013-09-02 19:41 - 00081405 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\wohngeld.xps 2013-09-02 19:39 - 2013-09-02 19:40 - 00012783 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\WOHNGEL FORTZAHLUNG.odt 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO63.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO61.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO5D.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\HP 2013-09-02 18:25 - 2013-09-02 18:25 - 00001313 ____T C:\Temp\MAR3F.tmp 2013-09-02 18:25 - 2013-09-02 18:25 - 00001285 ____T C:\Temp\MAR40.tmp 2013-09-02 18:24 - 2013-09-02 18:24 - 00000000 ____D C:\Temp\comtypes_cache 2013-09-01 14:48 - 2013-09-01 14:48 - 00449554 _____ C:\OTL.Txt 2013-09-01 14:48 - 2013-09-01 14:48 - 00046964 _____ C:\Extras.Txt 2013-09-01 14:39 - 2013-09-01 14:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Notepad++ 2013-09-01 14:14 - 2013-09-03 19:09 - 00000000 ____D C:\Programme\Uniblue 2013-09-01 14:14 - 2013-09-03 19:09 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Uniblue 2013-09-01 14:14 - 2013-09-01 14:14 - 00001576 _____ C:\Dokumente und Einstellungen\All Users\Desktop\CDBurnerXP.lnk 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Temp\CDBurnerXP-updates 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\CDBurnerXP 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Canneverbe Limited 2013-09-01 14:14 - 2012-06-03 10:45 - 00005504 _____ C:\WINDOWS\system32\Drivers\StarOpen.sys 2013-09-01 14:13 - 2013-09-01 14:13 - 05199536 _____ (Canneverbe Limited ) C:\Dokumente und Einstellungen\Karo\Desktop\cdbxp_setup_4.5.2.4214.exe 2013-09-01 14:09 - 2013-09-01 14:09 - 00691696 _____ C:\WINDOWS\system32\Drivers\sptd.sys 2013-09-01 14:09 - 2013-09-01 14:09 - 00000000 ____D C:\Programme\LSoft Technologies 2013-09-01 14:02 - 2013-09-01 14:02 - 127231689 _____ (Igor Pavlov) C:\Dokumente und Einstellungen\Karo\Desktop\OTLPENet.exe 2013-09-01 13:57 - 2013-09-01 13:57 - 00384512 _____ C:\Dokumente und Einstellungen\Karo\Desktop\IsoBurner-Setup.exe 2013-09-01 12:23 - 2013-09-01 12:23 - 00001313 ____T C:\Temp\MAR3D.tmp 2013-09-01 12:23 - 2013-09-01 12:23 - 00001285 ____T C:\Temp\MAR3E.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001313 ____T C:\Temp\MAR3B.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001285 ____T C:\Temp\MAR3C.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001313 ____T C:\Temp\MAR39.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001285 ____T C:\Temp\MAR3A.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001313 ____T C:\Temp\MAR37.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001285 ____T C:\Temp\MAR38.tmp 2013-08-30 08:31 - 2013-08-30 08:31 - 00006582 _____ C:\Temp\HPWUCl001.log 2013-08-30 08:26 - 2013-08-30 08:26 - 00001313 ____T C:\Temp\MAR35.tmp 2013-08-30 08:26 - 2013-08-30 08:26 - 00001285 ____T C:\Temp\MAR36.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001313 ____T C:\Temp\MAR33.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001285 ____T C:\Temp\MAR34.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001313 ____T C:\Temp\MAR31.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001285 ____T C:\Temp\MAR32.tmp 2013-08-28 17:31 - 2013-08-28 17:32 - 00004243 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-28 17:31 - 2013-08-28 17:31 - 00001313 ____T C:\Temp\MAR2F.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00001285 ____T C:\Temp\MAR30.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-27 20:03 - 2013-08-27 20:03 - 00001313 ____T C:\Temp\MAR2D.tmp 2013-08-27 20:03 - 2013-08-27 20:03 - 00001285 ____T C:\Temp\MAR2E.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001313 ____T C:\Temp\MAR2B.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001285 ____T C:\Temp\MAR2C.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001313 ____T C:\Temp\MAR29.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001285 ____T C:\Temp\MAR2A.tmp 2013-08-25 09:56 - 2013-09-05 23:12 - 00000598 _____ C:\Temp\AUCHECK_PARSER.txt 2013-08-25 09:56 - 2013-08-30 08:54 - 00000604 _____ C:\Temp\AUCHECK_CORE.txt 2013-08-25 05:57 - 2013-08-25 05:57 - 00001313 ____T C:\Temp\MAR27.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001285 ____T C:\Temp\MAR28.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF990B.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF8AF4.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00016384 _____ C:\Temp\~DF8EA0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF99B0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF9332.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF8B4A.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DFBFF.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DF3C4D.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001313 ____T C:\Temp\MAR25.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001285 ____T C:\Temp\MAR26.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001313 ____T C:\Temp\MAR23.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001285 ____T C:\Temp\MAR24.tmp 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir32005 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2470 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir23556 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2083 2013-08-24 22:33 - 2013-08-24 22:37 - 00114688 ____T C:\Temp\~DFFF56.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF3A03.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF30EF.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 ____T C:\Temp\~DFACE4.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 _____ C:\Temp\~DF361D.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001313 ____T C:\Temp\MAR21.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001285 ____T C:\Temp\MAR22.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3A11.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3724.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3274.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001313 ____T C:\Temp\MAR1F.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001285 ____T C:\Temp\MAR20.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001313 ____T C:\Temp\MAR1D.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001285 ____T C:\Temp\MAR1E.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001313 ____T C:\Temp\MAR1B.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001285 ____T C:\Temp\MAR1C.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001313 ____T C:\Temp\MAR19.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001285 ____T C:\Temp\MAR1A.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001313 ____T C:\Temp\MAR17.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001285 ____T C:\Temp\MAR18.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001313 ____T C:\Temp\MAR15.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001285 ____T C:\Temp\MAR16.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001313 ____T C:\Temp\MAR13.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001285 ____T C:\Temp\MAR14.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001313 ____T C:\Temp\MAR11.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001285 ____T C:\Temp\MAR12.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001313 ____T C:\Temp\MARF.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001285 ____T C:\Temp\MAR10.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001313 ____T C:\Temp\MARD.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001285 ____T C:\Temp\MARE.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001313 ____T C:\Temp\MARB.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001285 ____T C:\Temp\MARC.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001313 ____T C:\Temp\MAR9.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001285 ____T C:\Temp\MARA.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001313 ____T C:\Temp\MAR7.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001285 ____T C:\Temp\MAR8.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001313 ____T C:\Temp\MAR3.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001285 ____T C:\Temp\MAR6.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001313 ____T C:\Temp\MAR1.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001285 ____T C:\Temp\MAR2.tmp 2013-08-16 13:18 - 2013-09-05 23:12 - 00071402 _____ C:\Temp\jusched.log 2013-08-16 13:18 - 2013-08-16 13:18 - 00019213 _____ C:\ComboFix.txt 2013-08-16 13:15 - 2013-09-08 13:24 - 00159355 _____ C:\Temp\lws.man.xml 2013-08-16 13:15 - 2013-09-08 13:24 - 00000128 _____ C:\Temp\lws.man.xml.sig 2013-08-16 13:15 - 2013-09-08 13:23 - 00012320 _____ C:\Temp\hpqddusr.log 2013-08-16 13:15 - 2013-08-16 13:15 - 00001313 ____T C:\Temp\MAR4.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00001285 ____T C:\Temp\MAR5.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00000000 _____ C:\Temp\LuUpdater.log 2013-08-16 13:13 - 2013-09-08 13:22 - 00032625 _____ C:\Temp\AdobeARM.log 2013-08-16 13:13 - 2013-08-16 13:13 - 00027753 _____ C:\Temp\Spanish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027410 _____ C:\Temp\Italian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027235 _____ C:\Temp\French.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026260 _____ C:\Temp\Portuguese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026126 _____ C:\Temp\Russian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026080 _____ C:\Temp\Hungarian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025753 _____ C:\Temp\German.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025747 _____ C:\Temp\Dutch.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025082 _____ C:\Temp\Greek.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025071 _____ C:\Temp\Portuguese(Brazil).bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024312 _____ C:\Temp\Czech.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024297 _____ C:\Temp\Japanese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024221 _____ C:\Temp\Polish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024082 _____ C:\Temp\SWEDISH.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022857 _____ C:\Temp\Finnish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022783 _____ C:\Temp\Danish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022253 _____ C:\Temp\Turkish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021976 _____ C:\Temp\Thai.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021964 _____ C:\Temp\Norwegian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021914 _____ C:\Temp\English.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020972 _____ C:\Temp\Arabic.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020135 _____ C:\Temp\Korean.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00019553 _____ C:\Temp\Hebrew.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016949 _____ C:\Temp\TradChin.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016408 _____ C:\Temp\SimChin.bin 2013-08-16 13:11 - 2013-08-16 13:11 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG 2013-08-16 13:01 - 2013-08-16 13:01 - 00000000 _RSHD C:\cmdcons 2013-08-16 13:00 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2013-08-16 12:51 - 2013-08-16 12:51 - 00000227 _____ C:\Dokumente und Einstellungen\Karo\Desktop\CFSkript.txt 2013-08-16 12:45 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\nsc7E.tmp 2013-08-16 12:45 - 2013-08-16 12:45 - 05104782 ____R (Swearware) C:\Dokumente und Einstellungen\Karo\Desktop\ComboFix.exe 2013-08-16 12:43 - 2013-08-16 12:43 - 00000752 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Verknüpfung mit ComboFix.lnk 2013-08-16 00:56 - 2013-08-16 00:57 - 00011907 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-16 00:52 - 2013-08-16 00:56 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-16 00:51 - 2013-08-16 00:51 - 00005189 _____ C:\WINDOWS\KB2863058.log 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-16 00:12 - 2013-08-16 00:51 - 00009070 _____ C:\WINDOWS\KB2850869.log 2013-08-16 00:11 - 2013-08-16 00:51 - 00010872 _____ C:\WINDOWS\KB2859537.log 2013-08-10 12:48 - 2013-08-10 12:48 - 00001711 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00001707 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp Utilities 2013.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Programme\TuneUp Utilities 2013 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\TuneUp Software 2013-08-10 12:48 - 2012-11-29 16:06 - 00031584 _____ (TuneUp Software) C:\WINDOWS\system32\TURegOpt.exe 2013-08-10 12:47 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\DVDVideoSoft 2013-08-10 12:47 - 2013-08-10 12:47 - 00001023 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Free YouTube to MP3 Converter.lnk 2013-08-10 12:47 - 2013-08-10 12:47 - 00000906 _____ C:\Dokumente und Einstellungen\All Users\Desktop\DVDVideoSoft Free Studio.lnk 2013-08-10 12:46 - 2013-08-10 12:47 - 00000000 ____D C:\Temp\8944214B-BAB0-7891-A63A-DE461084E7F1 2013-08-10 12:46 - 2013-08-10 12:47 - 00000000 ____D C:\Programme\DVDVideoSoft 2013-08-10 12:46 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\Gemeinsame Dateien\DVDVideoSoft 2013-08-10 12:44 - 2013-08-16 13:06 - 00000000 ____D C:\Temp\is-6BI3I.tmp 2013-08-10 12:44 - 2013-08-10 13:00 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\DVDVideoSoft 2013-08-10 12:44 - 2013-08-10 12:44 - 01211376 _____ (DVDVideoSoft Ltd. ) C:\Dokumente und Einstellungen\Karo\Desktop\FreeYouTubeToMP3Converter-3.12.9.725.exe 2013-08-10 11:37 - 2013-08-16 12:50 - 00000327 _____ C:\Boot.bak 2013-08-10 11:37 - 2004-08-03 23:00 - 00262448 __RSH C:\cmldr 2013-08-10 11:35 - 2011-06-26 08:45 - 00256000 _____ C:\WINDOWS\PEV.exe 2013-08-10 11:35 - 2010-11-07 19:20 - 00208896 _____ C:\WINDOWS\MBR.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00098816 _____ C:\WINDOWS\sed.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00080412 _____ C:\WINDOWS\grep.exe 2013-08-10 11:35 - 2000-08-31 02:00 - 00068096 _____ C:\WINDOWS\zip.exe 2013-08-10 11:33 - 2013-08-16 13:18 - 00000000 ____D C:\Qoobox 2013-08-10 11:32 - 2013-08-16 13:11 - 00000000 ____D C:\WINDOWS\erdnt 2013-08-10 11:32 - 2013-08-10 11:32 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Verwaltung ==================== One Month Modified Files and Folders ======= 2013-09-08 13:28 - 2013-09-08 13:28 - 00011322 _____ C:\Temp\log1 2013-09-08 13:28 - 2013-09-08 13:28 - 00001191 _____ C:\Temp\ads000 2013-09-08 13:28 - 2013-09-08 13:27 - 00014072 _____ C:\Temp\frstlog 2013-09-08 13:27 - 2013-09-08 13:27 - 00103245 _____ C:\Temp\modules00 2013-09-08 13:27 - 2013-09-08 13:27 - 00016384 ____T C:\Temp\~DFA31A.tmp 2013-09-08 13:27 - 2013-09-08 13:27 - 00000303 _____ C:\Temp\users00 2013-09-08 13:27 - 2013-09-08 13:27 - 00000003 _____ C:\Temp\others 2013-09-08 13:27 - 2013-09-08 13:24 - 00020480 ____T C:\Temp\~DF44CA.tmp 2013-09-08 13:27 - 2011-01-31 21:45 - 00000434 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F660A0B-21EB-4224-A64D-9FCAFC9DDFD5}.job 2013-09-08 13:26 - 2013-09-02 19:52 - 00000000 ____D C:\Temp\7zS50BD 2013-09-08 13:24 - 2013-09-08 13:24 - 00032768 _____ C:\Temp\~DFDD34.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00032768 _____ C:\Temp\~DFD6A5.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00016384 ____T C:\Temp\~DF3950.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00016384 _____ C:\Temp\~DFD943.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFDDED.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFD9BA.tmp 2013-09-08 13:24 - 2013-09-08 13:24 - 00000512 ____T C:\Temp\~DFD6DA.tmp 2013-09-08 13:24 - 2013-08-16 13:15 - 00159355 _____ C:\Temp\lws.man.xml 2013-09-08 13:24 - 2013-08-16 13:15 - 00000128 _____ C:\Temp\lws.man.xml.sig 2013-09-08 13:23 - 2013-09-08 13:23 - 00001313 ____T C:\Temp\MAR4F.tmp 2013-09-08 13:23 - 2013-09-08 13:23 - 00001285 ____T C:\Temp\MAR50.tmp 2013-09-08 13:23 - 2013-09-08 13:23 - 00000000 ____D C:\Temp\sv4jf.tmp 2013-09-08 13:23 - 2013-08-16 13:15 - 00012320 _____ C:\Temp\hpqddusr.log 2013-09-08 13:23 - 2011-02-01 20:50 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-09-08 13:23 - 2011-01-31 23:37 - 00000000 _____ C:\WINDOWS\RTacDbg.txt 2013-09-08 13:22 - 2013-09-08 13:22 - 00000000 ____D C:\Temp\WPDNSE 2013-09-08 13:22 - 2013-08-16 13:13 - 00032625 _____ C:\Temp\AdobeARM.log 2013-09-08 13:20 - 2011-01-31 20:36 - 01094319 _____ C:\WINDOWS\WindowsUpdate.log 2013-09-08 13:18 - 2011-04-29 20:01 - 00000000 ____D C:\WINDOWS\system32\logishrd 2013-09-08 13:18 - 2011-02-02 15:48 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-09-08 13:18 - 2011-02-02 15:48 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-09-08 13:18 - 2011-01-31 20:43 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-09-08 13:18 - 2004-08-04 13:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl 2013-09-06 16:46 - 2012-12-19 21:34 - 00065536 _____ C:\WINDOWS\system32\config\TuneUp.evt 2013-09-06 16:46 - 2011-02-02 00:25 - 00000190 ___SH C:\Dokumente und Einstellungen\Karo\ntuser.ini 2013-09-06 16:46 - 2011-02-02 00:25 - 00000000 ____D C:\Dokumente und Einstellungen\Karo 2013-09-06 16:46 - 2011-01-31 20:43 - 00032374 _____ C:\WINDOWS\SchedLgU.Txt 2013-09-06 16:39 - 2012-10-16 21:22 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-09-06 15:13 - 2013-07-31 15:28 - 00063083 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Addition.txt 2013-09-06 15:10 - 2013-09-06 15:10 - 01081729 _____ (Farbar) C:\Dokumente und Einstellungen\Karo\Desktop\FRST.exe 2013-09-06 15:08 - 2011-02-02 15:09 - 00000000 ____D C:\Temp\MSNL 2013-09-06 14:51 - 2013-09-06 14:51 - 00006582 _____ C:\Temp\HPWUCl002.log 2013-09-06 14:46 - 2013-09-06 14:46 - 00001313 ____T C:\Temp\MAR4D.tmp 2013-09-06 14:46 - 2013-09-06 14:46 - 00001285 ____T C:\Temp\MAR4E.tmp 2013-09-05 23:12 - 2013-09-05 23:11 - 00028832 _____ C:\Temp\java_install.log 2013-09-05 23:12 - 2013-09-05 23:11 - 00003802 _____ C:\Temp\java_install_reg.log 2013-09-05 23:12 - 2013-09-05 23:11 - 00000409 _____ C:\Temp\JAUReg.log 2013-09-05 23:12 - 2013-08-25 09:56 - 00000598 _____ C:\Temp\AUCHECK_PARSER.txt 2013-09-05 23:12 - 2013-08-16 13:18 - 00071402 _____ C:\Temp\jusched.log 2013-09-05 23:12 - 2011-02-06 21:17 - 00000000 ____D C:\Temp\hsperfdata_Karo 2013-09-05 23:11 - 2011-01-31 20:24 - 01079632 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-09-05 23:10 - 2013-09-05 23:10 - 00077824 _____ C:\Temp\fd8c4.mst 2013-09-05 23:08 - 2013-07-25 12:43 - 00001714 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Adobe Reader X.lnk 2013-09-05 22:57 - 2013-09-05 22:57 - 00001313 ____T C:\Temp\MAR4B.tmp 2013-09-05 22:57 - 2013-09-05 22:57 - 00001285 ____T C:\Temp\MAR4C.tmp 2013-09-05 22:55 - 2011-01-31 20:24 - 00000000 ____D C:\Programme 2013-09-04 20:08 - 2013-09-04 20:08 - 00000000 ____D C:\Temp\RarSFX1 2013-09-04 20:08 - 2013-08-03 12:14 - 00891115 _____ C:\Dokumente und Einstellungen\Karo\Desktop\SecurityCheck.exe 2013-09-04 19:00 - 2013-09-04 19:00 - 02347384 _____ (ESET) C:\Dokumente und Einstellungen\Karo\Desktop\esetsmartinstaller_enu.exe 2013-09-04 18:41 - 2013-09-04 18:41 - 00001313 ____T C:\Temp\MAR49.tmp 2013-09-04 18:41 - 2013-09-04 18:41 - 00001285 ____T C:\Temp\MAR4A.tmp 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Temp\JRT.txt 2013-09-03 19:37 - 2013-09-03 19:37 - 00001035 _____ C:\Dokumente und Einstellungen\Karo\Desktop\JRT.txt 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\WINDOWS\ERUNT 2013-09-03 19:30 - 2013-09-03 19:30 - 00000000 ____D C:\Temp\jrt 2013-09-03 19:18 - 2013-09-03 19:18 - 00001313 ____T C:\Temp\MAR47.tmp 2013-09-03 19:18 - 2013-09-03 19:18 - 00001285 ____T C:\Temp\MAR48.tmp 2013-09-03 19:09 - 2013-09-03 19:04 - 00000000 ____D C:\AdwCleaner 2013-09-03 19:09 - 2013-09-03 19:04 - 00000000 _____ C:\Temp\preferences 2013-09-03 19:09 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\Uniblue 2013-09-03 19:09 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Uniblue 2013-09-03 19:09 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme 2013-09-03 19:04 - 2013-09-03 19:04 - 01037222 _____ C:\Dokumente und Einstellungen\Karo\Desktop\adwcleaner.exe 2013-09-03 19:02 - 2013-09-03 19:02 - 01028757 _____ (Thisisu) C:\Dokumente und Einstellungen\Karo\Desktop\JRT.exe 2013-09-03 18:58 - 2013-09-03 18:58 - 00001313 ____T C:\Temp\MAR45.tmp 2013-09-03 18:58 - 2013-09-03 18:58 - 00001285 ____T C:\Temp\MAR46.tmp 2013-09-03 18:33 - 2013-09-03 18:33 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Malwarebytes 2013-09-03 18:33 - 2013-09-03 18:32 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-09-03 18:32 - 2013-09-03 18:32 - 00000756 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-03 18:32 - 2013-09-03 18:31 - 10285040 _____ (Malwarebytes Corporation ) C:\Dokumente und Einstellungen\Karo\Desktop\mbam-setup-1.75.0.1300.exe 2013-09-03 17:55 - 2013-09-03 17:55 - 00001313 ____T C:\Temp\MAR43.tmp 2013-09-03 17:55 - 2013-09-03 17:55 - 00001285 ____T C:\Temp\MAR44.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001313 ____T C:\Temp\MAR41.tmp 2013-09-02 20:35 - 2013-09-02 20:35 - 00001285 ____T C:\Temp\MAR42.tmp 2013-09-02 20:28 - 2013-09-02 20:28 - 00000000 ____D C:\_OTL 2013-09-02 19:56 - 2013-09-02 19:56 - 00001417 _____ C:\Temp\hpC3.html 2013-09-02 19:55 - 2013-09-02 19:54 - 00000637 _____ C:\Temp\IOConnection.txt 2013-09-02 19:41 - 2013-09-02 19:41 - 00081405 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\wohngeld.xps 2013-09-02 19:40 - 2013-09-02 19:39 - 00012783 _____ C:\Dokumente und Einstellungen\Karo\Eigene Dateien\WOHNGEL FORTZAHLUNG.odt 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO63.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO61.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00047416 ____T C:\Temp\DIO5D.tmp 2013-09-02 19:39 - 2013-09-02 19:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\HP 2013-09-02 18:55 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Eigene Dateien\Eigene Musik 2013-09-02 18:25 - 2013-09-02 18:25 - 00001313 ____T C:\Temp\MAR3F.tmp 2013-09-02 18:25 - 2013-09-02 18:25 - 00001285 ____T C:\Temp\MAR40.tmp 2013-09-02 18:24 - 2013-09-02 18:24 - 00000000 ____D C:\Temp\comtypes_cache 2013-09-02 18:10 - 2011-02-02 15:08 - 00327824 _____ C:\WINDOWS\setupapi.log 2013-09-01 15:09 - 2011-02-02 00:25 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Eigene Dateien\Eigene Bilder 2013-09-01 14:48 - 2013-09-01 14:48 - 00449554 _____ C:\OTL.Txt 2013-09-01 14:48 - 2013-09-01 14:48 - 00046964 _____ C:\Extras.Txt 2013-09-01 14:39 - 2013-09-01 14:39 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Notepad++ 2013-09-01 14:14 - 2013-09-01 14:14 - 00001576 _____ C:\Dokumente und Einstellungen\All Users\Desktop\CDBurnerXP.lnk 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Temp\CDBurnerXP-updates 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Programme\CDBurnerXP 2013-09-01 14:14 - 2013-09-01 14:14 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\Canneverbe Limited 2013-09-01 14:13 - 2013-09-01 14:13 - 05199536 _____ (Canneverbe Limited ) C:\Dokumente und Einstellungen\Karo\Desktop\cdbxp_setup_4.5.2.4214.exe 2013-09-01 14:09 - 2013-09-01 14:09 - 00691696 _____ C:\WINDOWS\system32\Drivers\sptd.sys 2013-09-01 14:09 - 2013-09-01 14:09 - 00000000 ____D C:\Programme\LSoft Technologies 2013-09-01 14:09 - 2011-01-31 22:37 - 00000000 ___HD C:\Programme\InstallShield Installation Information 2013-09-01 14:02 - 2013-09-01 14:02 - 127231689 _____ (Igor Pavlov) C:\Dokumente und Einstellungen\Karo\Desktop\OTLPENet.exe 2013-09-01 13:57 - 2013-09-01 13:57 - 00384512 _____ C:\Dokumente und Einstellungen\Karo\Desktop\IsoBurner-Setup.exe 2013-09-01 12:23 - 2013-09-01 12:23 - 00001313 ____T C:\Temp\MAR3D.tmp 2013-09-01 12:23 - 2013-09-01 12:23 - 00001285 ____T C:\Temp\MAR3E.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001313 ____T C:\Temp\MAR3B.tmp 2013-09-01 01:05 - 2013-09-01 01:05 - 00001285 ____T C:\Temp\MAR3C.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001313 ____T C:\Temp\MAR39.tmp 2013-08-31 12:28 - 2013-08-31 12:28 - 00001285 ____T C:\Temp\MAR3A.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001313 ____T C:\Temp\MAR37.tmp 2013-08-30 16:13 - 2013-08-30 16:13 - 00001285 ____T C:\Temp\MAR38.tmp 2013-08-30 08:54 - 2013-08-25 09:56 - 00000604 _____ C:\Temp\AUCHECK_CORE.txt 2013-08-30 08:31 - 2013-08-30 08:31 - 00006582 _____ C:\Temp\HPWUCl001.log 2013-08-30 08:26 - 2013-08-30 08:26 - 00001313 ____T C:\Temp\MAR35.tmp 2013-08-30 08:26 - 2013-08-30 08:26 - 00001285 ____T C:\Temp\MAR36.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001313 ____T C:\Temp\MAR33.tmp 2013-08-29 14:56 - 2013-08-29 14:56 - 00001285 ____T C:\Temp\MAR34.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001313 ____T C:\Temp\MAR31.tmp 2013-08-28 21:03 - 2013-08-28 21:03 - 00001285 ____T C:\Temp\MAR32.tmp 2013-08-28 17:32 - 2013-08-28 17:31 - 00004243 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00927251 _____ C:\WINDOWS\iis6.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00860042 _____ C:\WINDOWS\FaxSetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00440272 _____ C:\WINDOWS\ocgen.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00393890 _____ C:\WINDOWS\tsoc.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00285752 _____ C:\WINDOWS\comsetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00261964 _____ C:\WINDOWS\msmqinst.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00173413 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00151046 _____ C:\WINDOWS\netfxocm.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00059369 _____ C:\WINDOWS\MedCtrOC.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00047665 _____ C:\WINDOWS\ocmsn.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00043229 _____ C:\WINDOWS\tabletoc.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00043121 _____ C:\WINDOWS\msgsocm.log 2013-08-28 17:32 - 2011-02-09 19:14 - 00001374 _____ C:\WINDOWS\imsins.log 2013-08-28 17:31 - 2013-08-28 17:31 - 00001313 ____T C:\Temp\MAR2F.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00001285 ____T C:\Temp\MAR30.tmp 2013-08-28 17:31 - 2013-08-28 17:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-27 20:03 - 2013-08-27 20:03 - 00001313 ____T C:\Temp\MAR2D.tmp 2013-08-27 20:03 - 2013-08-27 20:03 - 00001285 ____T C:\Temp\MAR2E.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001313 ____T C:\Temp\MAR2B.tmp 2013-08-27 14:04 - 2013-08-27 14:04 - 00001285 ____T C:\Temp\MAR2C.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001313 ____T C:\Temp\MAR29.tmp 2013-08-26 18:40 - 2013-08-26 18:40 - 00001285 ____T C:\Temp\MAR2A.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001313 ____T C:\Temp\MAR27.tmp 2013-08-25 05:57 - 2013-08-25 05:57 - 00001285 ____T C:\Temp\MAR28.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF990B.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00032768 _____ C:\Temp\~DF8AF4.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00016384 _____ C:\Temp\~DF8EA0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF99B0.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF9332.tmp 2013-08-25 05:42 - 2013-08-25 05:42 - 00000512 ____T C:\Temp\~DF8B4A.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DFBFF.tmp 2013-08-25 05:41 - 2013-08-25 05:41 - 00000000 ____T C:\Temp\~DF3C4D.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001313 ____T C:\Temp\MAR25.tmp 2013-08-25 05:38 - 2013-08-25 05:38 - 00001285 ____T C:\Temp\MAR26.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001313 ____T C:\Temp\MAR23.tmp 2013-08-24 23:22 - 2013-08-24 23:22 - 00001285 ____T C:\Temp\MAR24.tmp 2013-08-24 23:21 - 2011-01-31 21:19 - 00000000 ____D C:\WINDOWS\system32\LogFiles 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir32005 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2470 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir23556 2013-08-24 22:48 - 2013-08-24 22:48 - 00000000 ____D C:\Temp\scoped_dir2083 2013-08-24 22:37 - 2013-08-24 22:33 - 00114688 ____T C:\Temp\~DFFF56.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF3A03.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00032768 _____ C:\Temp\~DF30EF.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 ____T C:\Temp\~DFACE4.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00016384 _____ C:\Temp\~DF361D.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001313 ____T C:\Temp\MAR21.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00001285 ____T C:\Temp\MAR22.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3A11.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3724.tmp 2013-08-24 22:33 - 2013-08-24 22:33 - 00000512 ____T C:\Temp\~DF3274.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001313 ____T C:\Temp\MAR1F.tmp 2013-08-24 08:07 - 2013-08-24 08:07 - 00001285 ____T C:\Temp\MAR20.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001313 ____T C:\Temp\MAR1D.tmp 2013-08-23 03:19 - 2013-08-23 03:19 - 00001285 ____T C:\Temp\MAR1E.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001313 ____T C:\Temp\MAR1B.tmp 2013-08-22 23:16 - 2013-08-22 23:16 - 00001285 ____T C:\Temp\MAR1C.tmp 2013-08-22 16:41 - 2012-10-16 21:22 - 00692104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-22 16:41 - 2011-06-07 19:47 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-22 16:39 - 2013-08-22 16:39 - 00001313 ____T C:\Temp\MAR19.tmp 2013-08-22 16:39 - 2013-08-22 16:39 - 00001285 ____T C:\Temp\MAR1A.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001313 ____T C:\Temp\MAR17.tmp 2013-08-22 00:58 - 2013-08-22 00:58 - 00001285 ____T C:\Temp\MAR18.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001313 ____T C:\Temp\MAR15.tmp 2013-08-20 21:57 - 2013-08-20 21:57 - 00001285 ____T C:\Temp\MAR16.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001313 ____T C:\Temp\MAR13.tmp 2013-08-20 16:44 - 2013-08-20 16:44 - 00001285 ____T C:\Temp\MAR14.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001313 ____T C:\Temp\MAR11.tmp 2013-08-20 16:15 - 2013-08-20 16:15 - 00001285 ____T C:\Temp\MAR12.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001313 ____T C:\Temp\MARF.tmp 2013-08-20 13:55 - 2013-08-20 13:55 - 00001285 ____T C:\Temp\MAR10.tmp 2013-08-20 10:18 - 2011-01-31 20:41 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService 2013-08-20 09:10 - 2013-08-20 09:10 - 00001313 ____T C:\Temp\MARD.tmp 2013-08-20 09:10 - 2013-08-20 09:10 - 00001285 ____T C:\Temp\MARE.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001313 ____T C:\Temp\MARB.tmp 2013-08-19 18:45 - 2013-08-19 18:45 - 00001285 ____T C:\Temp\MARC.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001313 ____T C:\Temp\MAR9.tmp 2013-08-19 13:52 - 2013-08-19 13:52 - 00001285 ____T C:\Temp\MARA.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001313 ____T C:\Temp\MAR7.tmp 2013-08-19 10:12 - 2013-08-19 10:12 - 00001285 ____T C:\Temp\MAR8.tmp 2013-08-18 22:15 - 2011-01-31 21:24 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-18 22:08 - 2013-08-18 22:08 - 00001313 ____T C:\Temp\MAR3.tmp 2013-08-18 22:08 - 2013-08-18 22:08 - 00001285 ____T C:\Temp\MAR6.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001313 ____T C:\Temp\MAR1.tmp 2013-08-18 02:02 - 2013-08-18 02:02 - 00001285 ____T C:\Temp\MAR2.tmp 2013-08-16 13:18 - 2013-08-16 13:18 - 00019213 _____ C:\ComboFix.txt 2013-08-16 13:18 - 2013-08-10 11:33 - 00000000 ____D C:\Qoobox 2013-08-16 13:15 - 2013-08-16 13:15 - 00001313 ____T C:\Temp\MAR4.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00001285 ____T C:\Temp\MAR5.tmp 2013-08-16 13:15 - 2013-08-16 13:15 - 00000000 _____ C:\Temp\LuUpdater.log 2013-08-16 13:13 - 2013-08-16 13:13 - 00027753 _____ C:\Temp\Spanish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027410 _____ C:\Temp\Italian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00027235 _____ C:\Temp\French.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026260 _____ C:\Temp\Portuguese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026126 _____ C:\Temp\Russian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00026080 _____ C:\Temp\Hungarian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025753 _____ C:\Temp\German.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025747 _____ C:\Temp\Dutch.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025082 _____ C:\Temp\Greek.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00025071 _____ C:\Temp\Portuguese(Brazil).bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024312 _____ C:\Temp\Czech.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024297 _____ C:\Temp\Japanese.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024221 _____ C:\Temp\Polish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00024082 _____ C:\Temp\SWEDISH.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022857 _____ C:\Temp\Finnish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022783 _____ C:\Temp\Danish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00022253 _____ C:\Temp\Turkish.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021976 _____ C:\Temp\Thai.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021964 _____ C:\Temp\Norwegian.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00021914 _____ C:\Temp\English.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020972 _____ C:\Temp\Arabic.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00020135 _____ C:\Temp\Korean.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00019553 _____ C:\Temp\Hebrew.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016949 _____ C:\Temp\TradChin.bin 2013-08-16 13:13 - 2013-08-16 13:13 - 00016408 _____ C:\Temp\SimChin.bin 2013-08-16 13:13 - 2004-08-04 13:00 - 00000227 _____ C:\WINDOWS\system.ini 2013-08-16 13:12 - 2011-01-31 21:17 - 27000832 _____ C:\WINDOWS\system32\config\software.bak 2013-08-16 13:12 - 2011-01-31 21:17 - 04718592 _____ C:\WINDOWS\system32\config\system.bak 2013-08-16 13:12 - 2011-01-31 21:17 - 00524288 _____ C:\WINDOWS\system32\config\default.bak 2013-08-16 13:12 - 2011-01-31 20:22 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.bak 2013-08-16 13:12 - 2011-01-31 20:22 - 00262144 _____ C:\WINDOWS\system32\config\SAM.bak 2013-08-16 13:11 - 2013-08-16 13:11 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG 2013-08-16 13:11 - 2013-08-16 13:11 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG 2013-08-16 13:11 - 2013-08-10 11:32 - 00000000 ____D C:\WINDOWS\erdnt 2013-08-16 13:06 - 2013-08-16 12:45 - 00000000 ____D C:\Temp\nsc7E.tmp 2013-08-16 13:06 - 2013-08-10 12:47 - 00000000 ____D C:\Temp\DVDVideoSoft 2013-08-16 13:06 - 2013-08-10 12:44 - 00000000 ____D C:\Temp\is-6BI3I.tmp 2013-08-16 13:01 - 2013-08-16 13:01 - 00000000 _RSHD C:\cmdcons 2013-08-16 13:01 - 2011-01-31 21:17 - 00000327 __RSH C:\boot.ini 2013-08-16 12:51 - 2013-08-16 12:51 - 00000227 _____ C:\Dokumente und Einstellungen\Karo\Desktop\CFSkript.txt 2013-08-16 12:50 - 2013-08-10 11:37 - 00000327 _____ C:\Boot.bak 2013-08-16 12:45 - 2013-08-16 12:45 - 05104782 ____R (Swearware) C:\Dokumente und Einstellungen\Karo\Desktop\ComboFix.exe 2013-08-16 12:43 - 2013-08-16 12:43 - 00000752 _____ C:\Dokumente und Einstellungen\Karo\Desktop\Verknüpfung mit ComboFix.lnk 2013-08-16 00:57 - 2013-08-16 00:56 - 00011907 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-16 00:57 - 2011-02-09 19:14 - 00071177 _____ C:\WINDOWS\updspapi.log 2013-08-16 00:57 - 2011-02-09 19:14 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-08-16 00:56 - 2013-08-16 00:52 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-16 00:56 - 2011-01-31 21:35 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-16 00:52 - 2011-01-31 21:33 - 75778376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-16 00:51 - 2013-08-16 00:51 - 00005189 _____ C:\WINDOWS\KB2863058.log 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-16 00:51 - 2013-08-16 00:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-16 00:51 - 2013-08-16 00:12 - 00009070 _____ C:\WINDOWS\KB2850869.log 2013-08-16 00:51 - 2013-08-16 00:11 - 00010872 _____ C:\WINDOWS\KB2859537.log 2013-08-16 00:51 - 2011-01-31 21:41 - 00032870 _____ C:\WINDOWS\system32\TZLog.log 2013-08-10 13:00 - 2013-08-10 12:44 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\DVDVideoSoft 2013-08-10 12:48 - 2013-08-10 12:48 - 00001711 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00001707 _____ C:\Dokumente und Einstellungen\All Users\Desktop\TuneUp Utilities 2013.lnk 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Programme\TuneUp Utilities 2013 2013-08-10 12:48 - 2013-08-10 12:48 - 00000000 ____D C:\Dokumente und Einstellungen\Karo\Anwendungsdaten\TuneUp Software 2013-08-10 12:47 - 2013-08-10 12:47 - 00001023 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Free YouTube to MP3 Converter.lnk 2013-08-10 12:47 - 2013-08-10 12:47 - 00000906 _____ C:\Dokumente und Einstellungen\All Users\Desktop\DVDVideoSoft Free Studio.lnk 2013-08-10 12:47 - 2013-08-10 12:46 - 00000000 ____D C:\Temp\8944214B-BAB0-7891-A63A-DE461084E7F1 2013-08-10 12:47 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\DVDVideoSoft 2013-08-10 12:46 - 2013-08-10 12:46 - 00000000 ____D C:\Programme\Gemeinsame Dateien\DVDVideoSoft 2013-08-10 12:44 - 2013-08-10 12:44 - 01211376 _____ (DVDVideoSoft Ltd. ) C:\Dokumente und Einstellungen\Karo\Desktop\FreeYouTubeToMP3Converter-3.12.9.725.exe 2013-08-10 11:43 - 2013-07-31 14:32 - 00000000 ____D C:\Temp\ish135531 2013-08-10 11:43 - 2013-07-31 14:32 - 00000000 ____D C:\Temp\B5EC8CB8-BAB0-7891-93B8-0638EA6B0C45 2013-08-10 11:43 - 2013-07-31 13:52 - 00000000 ____D C:\Temp\ish18754078 2013-08-10 11:43 - 2013-07-30 15:09 - 00000000 ____D C:\Temp\ish6262156 2013-08-10 11:43 - 2013-07-30 15:09 - 00000000 ____D C:\Temp\is357113909 2013-08-10 11:43 - 2013-07-27 02:35 - 00000000 ____D C:\Temp\WER104a.dir00 2013-08-10 11:43 - 2013-07-27 02:35 - 00000000 ____D C:\Temp\WER1022.dir00 2013-08-10 11:43 - 2013-05-27 21:00 - 00000000 ____D C:\Temp\tmpb7e33b0a 2013-08-10 11:43 - 2013-05-26 20:10 - 00000000 ____D C:\Temp\tmp9dd21216 2013-08-10 11:43 - 2013-05-25 20:33 - 00000000 ____D C:\Temp\tmpb83eb886 2013-08-10 11:43 - 2013-05-25 00:15 - 00000000 ____D C:\Temp\tmpea9051a7 2013-08-10 11:43 - 2013-05-22 20:16 - 00000000 ____D C:\Temp\tmp95b2271e 2013-08-10 11:43 - 2013-05-20 17:52 - 00000000 ____D C:\Temp\tmpf68bbd41 2013-08-10 11:43 - 2013-05-17 06:18 - 00000000 ____D C:\Temp\tmp9bede2e7 2013-08-10 11:43 - 2013-05-16 23:57 - 00000000 ____D C:\Temp\tmpebd05d37 2013-08-10 11:43 - 2013-05-15 19:30 - 00000000 ____D C:\Temp\tmp40c9c6e8 2013-08-10 11:43 - 2013-05-14 18:55 - 00000000 ____D C:\Temp\tmp2faf446c 2013-08-10 11:43 - 2013-04-14 20:56 - 00000000 ____D C:\Temp\99CAA8DB-BAB0-7891-800A-77CCC61BCCEB 2013-08-10 11:43 - 2013-04-14 20:54 - 00000000 ____D C:\Temp\nsd92C.tmp 2013-08-10 11:43 - 2013-01-20 12:13 - 00000000 ____D C:\Temp\84A.tmp 2013-08-10 11:43 - 2013-01-04 01:02 - 00000000 ____D C:\Temp\res 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\a00b69d3-feda-476c-946e-8608d96bfe39 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\68dcf78f-8c83-43a0-83ef-e71ac98ac477 2013-08-10 11:43 - 2012-12-19 20:21 - 00000000 ____D C:\Temp\4b4395bc-4234-4ead-8d0f-a8cfc7b298ec 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\c3d576a3-923f-483e-9285-c1487497175a 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\3d083b50-7f3e-4293-bc13-1f4d16bd927c 2013-08-10 11:43 - 2012-12-19 20:15 - 00000000 ____D C:\Temp\22775de3-904c-421e-8a03-b7b6cac921fa 2013-08-10 11:43 - 2012-12-19 20:11 - 00000000 ____D C:\Temp\KiesTemporary 2013-08-10 11:43 - 2012-11-25 12:35 - 00000000 ____D C:\Temp\ct2625848 2013-08-10 11:43 - 2012-08-29 14:48 - 00000000 ____D C:\Temp\WER2c85.dir00 2013-08-10 11:43 - 2012-08-29 14:48 - 00000000 ____D C:\Temp\WER23bc.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERe12e.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERd800.dir00 2013-08-10 11:43 - 2012-08-29 14:47 - 00000000 ____D C:\Temp\WERcf32.dir00 2013-08-10 11:43 - 2012-07-16 19:46 - 00000000 ____D C:\Temp\WER122c.dir00 2013-08-10 11:43 - 2012-04-06 11:05 - 00000000 ____D C:\Temp\WER5162.dir00 2013-08-10 11:43 - 2012-03-30 15:08 - 00000000 ____D C:\Temp\WER5fed.dir00 2013-08-10 11:43 - 2012-03-30 15:07 - 00000000 ____D C:\Temp\WER4d47.dir00 2013-08-10 11:43 - 2011-12-11 14:30 - 00000000 ____D C:\Temp\43235A2A-BAB0-7891-99B7-7E488FB7B1D2 2013-08-10 11:43 - 2011-11-14 06:53 - 00000000 ____D C:\Temp\487.dir 2013-08-10 11:43 - 2011-06-29 13:37 - 00000000 ____D C:\Temp\APN-Stub 2013-08-10 11:43 - 2011-06-15 16:00 - 00000000 ____D C:\Temp\7zS58F2 2013-08-10 11:43 - 2011-06-08 19:41 - 00000000 ____D C:\Temp\7zS5B78 2013-08-10 11:43 - 2011-06-08 16:59 - 00000000 ____D C:\Temp\7zS1219 2013-08-10 11:43 - 2011-06-08 16:54 - 00000000 ____D C:\Temp\7zS3452 2013-08-10 11:43 - 2011-06-08 16:41 - 00000000 ____D C:\Temp\7zS6D2C 2013-08-10 11:43 - 2011-06-07 19:47 - 00000000 ____D C:\Temp\23D.dir 2013-08-10 11:43 - 2011-05-16 20:39 - 00000000 ____D C:\Temp\lu 2013-08-10 11:43 - 2011-04-29 20:05 - 00000000 ____D C:\Temp\de-de 2013-08-10 11:43 - 2011-03-16 17:32 - 00000000 ____D C:\Temp\C9.dir 2013-08-10 11:43 - 2011-02-22 18:10 - 00000000 ___HD C:\Temp\Temporäres Verzeichnis 1 für SharePod397.zip 2013-08-10 11:43 - 2011-02-16 10:15 - 00000000 ____D C:\Temp\4A.dir 2013-08-10 11:43 - 2011-02-10 18:47 - 00000000 ____D C:\Temp\HPDiagnosticAlert 2013-08-10 11:43 - 2011-02-10 18:47 - 00000000 ____D C:\Temp\7zS31FC 2013-08-10 11:43 - 2011-02-02 16:29 - 00000000 ____D C:\Temp\7zS5E15 2013-08-10 11:43 - 2011-02-02 16:17 - 00000000 ____D C:\Temp\7zS11F3 2013-08-10 11:43 - 2011-02-02 15:49 - 00000000 ____D C:\Temp\7zS7932 2013-08-10 11:43 - 2011-02-02 15:45 - 00000000 ____D C:\Temp\7zS090A 2013-08-10 11:43 - 2011-02-02 01:56 - 00000000 ____D C:\Temp\ToolbarUpdater_1296604584 2013-08-10 11:43 - 2011-02-02 01:05 - 00000000 ____D C:\Temp\Google Toolbar 2013-08-10 11:32 - 2013-08-10 11:32 - 00000000 ___RD C:\Dokumente und Einstellungen\Karo\Startmenü\Programme\Verwaltung 2013-08-09 15:38 - 2013-07-31 15:16 - 00000000 ____D C:\FRST ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2008-04-14 06:52] - [2008-04-14 06:52] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2008-04-14 06:53] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2008-04-14 06:52] - [2008-04-14 06:52] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2008-04-14 06:53] - [2008-04-14 06:53] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2008-04-14 06:22] - [2008-04-14 06:22] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ --- --- --- |
08.09.2013, 12:31 | #52 |
| BKA-TrojanerCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-09-2013 Ran by Karo at 2013-09-08 13:29:03 Running from C:\Dokumente und Einstellungen\Karo\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 32 Bit HP CIO Components Installer (Version: 7.1.8) Active@ ISO Burner (Version: 2.5.1) Adobe Flash Player 11 ActiveX (Version: 11.8.800.94) Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7) Apple Application Support (Version: 2.1.5) Apple Software Update (Version: 2.1.3.127) Avira AntiVir Personal - Free Antivirus (Version: 10.2.0.2100) B109a-m (Version: 140.0.690.000) Branding (Version: 1.00.0000) BufferChm (Version: 140.0.212.000) CameraHelperMsi (Version: 13.00.1774.0) Catalyst Control Center Core Implementation (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Full Existing (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Full New (Version: 0108.2146.2565.38893) Catalyst Control Center Graphics Light (Version: 0108.2146.2565.38893) Catalyst Control Center Localization German (Version: 0108.2146.2565.38893) CCC Help German (Version: 0108.2146.2564.38893) ccc-core-static (Version: 0108.2146.2565.38893) ccc-utility (Version: 0108.2146.2565.38893) CDBurnerXP (Version: 4.5.2.4214) Destinations (Version: 140.0.77.000) DeviceDiscovery (Version: 140.0.212.000) erLT (Version: 1.20.138.34) Facebook Video Calling 1.2.0.287 (Version: 1.2.287) Free YouTube to MP3 Converter version 3.12.9.725 (Version: 3.12.9.725) GPBaseService2 (Version: 140.0.211.000) Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000) Hotfix für Windows Media Player 11 (KB939683) Hotfix für Windows XP (KB2443685) (Version: 1) Hotfix für Windows XP (KB2570791) (Version: 1) Hotfix für Windows XP (KB2633952) (Version: 1) Hotfix für Windows XP (KB2756822) (Version: 1) Hotfix für Windows XP (KB2779562) (Version: 1) Hotfix für Windows XP (KB952287) (Version: 1) Hotfix für Windows XP (KB961118) (Version: 1) HP Customer Participation Program 14.0 (Version: 14.0) HP Imaging Device Functions 14.0 (Version: 14.0) HP Photosmart B109a-m All-in-One Driver Software 14.0 Rel. 6 (Version: 14.0) HP Product Detection (Version: 11.14.0001) HP Smart Web Printing 4.60 (Version: 4.60) HP Solution Center 14.0 (Version: 14.0) HP Update (Version: 5.003.001.001) HPDiagnosticAlert (Version: 1.00.0000) HPProductAssistant (Version: 140.0.212.000) HPSSupply (Version: 140.0.211.000) IrfanView (remove only) (Version: 4.28) iTunes (Version: 10.5.1.42) Java Auto Updater (Version: 2.0.3.1) Java(TM) 6 Update 22 (Version: 6.0.220) Java(TM) 6 Update 24 (Version: 6.0.240) Logitech Vid (Version: 1.70.1044) Logitech Webcam Software (Version: 2.0) LWS Facebook (Version: 13.00.1777.0) LWS Gallery (Version: 13.00.1778.0) LWS Help_main (Version: 13.00.1783.0) LWS Launcher (Version: 13.00.1776.0) LWS Motion Detection (Version: 13.00.1778.0) LWS Pictures And Video (Version: 13.00.1778.0) LWS Video Mask Maker (Version: 13.00.1774.0) LWS VideoEffects (Version: 13.00.1774.0) LWS Webcam Software (Version: 13.00.1774.0) LWS WLM Plugin (Version: 1.00.1774.0) LWS YouTube Plugin (Version: 13.00.1777.0) Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300) MarketResearch (Version: 140.0.212.000) Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729) Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft-Basissmartcard-Kryptografiedienstanbieterpaket MobileMe Control Panel (Version: 3.1.6.0) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) OpenOffice.org 3.3 (Version: 3.3.9567) PDFCreator (Version: 1.2.0) pdfforge Toolbar v7.3 (Version: 7.3) PS_AIO_06_B109a-m_SW_Min (Version: 140.0.690.000) QuickTransfer (Version: 140.0.98.000) REALTEK 11n USB Wireless LAN Driver and Utility (Version: 1.00.0106) Realtek High Definition Audio Driver (Version: 5.10.0.5345) Samsung Kies (Version: 2.5.0.12104_15) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.16.0) Scan (Version: 140.0.80.000) Shop for HP Supplies (Version: 14.0) Sicherheitsupdate für Microsoft Windows (KB2564958) Sicherheitsupdate für Windows Internet Explorer 8 (KB2360131) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2416400) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2482017) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2497640) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2510531) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2530548) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2544521) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2559049) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2586448) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2618444) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2647516) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2675157) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2699988) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2722913) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2744842) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2761465) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2792100) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2797052) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2799329) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2809289) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2817183) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2829530) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2838727) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2846071) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2847204) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2862772) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB971961) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB981332) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB982381) (Version: 1) Sicherheitsupdate für Windows Media Player (KB2378111) Sicherheitsupdate für Windows Media Player (KB2834904) Sicherheitsupdate für Windows Media Player (KB2834904-v2) Sicherheitsupdate für Windows Media Player (KB952069) Sicherheitsupdate für Windows Media Player (KB954155) Sicherheitsupdate für Windows Media Player (KB973540) Sicherheitsupdate für Windows Media Player (KB975558) Sicherheitsupdate für Windows Media Player (KB978695) Sicherheitsupdate für Windows Media Player 11 (KB954154) Sicherheitsupdate für Windows XP (KB2079403) (Version: 1) Sicherheitsupdate für Windows XP (KB2115168) (Version: 1) Sicherheitsupdate für Windows XP (KB2121546) (Version: 1) Sicherheitsupdate für Windows XP (KB2229593) (Version: 1) Sicherheitsupdate für Windows XP (KB2259922) (Version: 1) Sicherheitsupdate für Windows XP (KB2286198) (Version: 1) Sicherheitsupdate für Windows XP (KB2296011) (Version: 1) Sicherheitsupdate für Windows XP (KB2296199) (Version: 1) Sicherheitsupdate für Windows XP (KB2347290) (Version: 1) Sicherheitsupdate für Windows XP (KB2360937) (Version: 1) Sicherheitsupdate für Windows XP (KB2387149) (Version: 1) Sicherheitsupdate für Windows XP (KB2393802) (Version: 1) Sicherheitsupdate für Windows XP (KB2412687) (Version: 1) Sicherheitsupdate für Windows XP (KB2416400) (Version: 1) Sicherheitsupdate für Windows XP (KB2419632) (Version: 1) Sicherheitsupdate für Windows XP (KB2423089) (Version: 1) Sicherheitsupdate für Windows XP (KB2436673) (Version: 1) Sicherheitsupdate für Windows XP (KB2440591) (Version: 1) Sicherheitsupdate für Windows XP (KB2443105) (Version: 1) Sicherheitsupdate für Windows XP (KB2476490) (Version: 1) Sicherheitsupdate für Windows XP (KB2476687) (Version: 1) Sicherheitsupdate für Windows XP (KB2478960) (Version: 1) Sicherheitsupdate für Windows XP (KB2478971) (Version: 1) Sicherheitsupdate für Windows XP (KB2479628) (Version: 1) Sicherheitsupdate für Windows XP (KB2479943) (Version: 1) Sicherheitsupdate für Windows XP (KB2481109) (Version: 1) Sicherheitsupdate für Windows XP (KB2483185) (Version: 1) Sicherheitsupdate für Windows XP (KB2485376) (Version: 1) Sicherheitsupdate für Windows XP (KB2485663) (Version: 1) Sicherheitsupdate für Windows XP (KB2503658) (Version: 1) Sicherheitsupdate für Windows XP (KB2503665) (Version: 1) Sicherheitsupdate für Windows XP (KB2506212) (Version: 1) Sicherheitsupdate für Windows XP (KB2506223) (Version: 1) Sicherheitsupdate für Windows XP (KB2507618) (Version: 1) Sicherheitsupdate für Windows XP (KB2507938) (Version: 1) Sicherheitsupdate für Windows XP (KB2508272) (Version: 1) Sicherheitsupdate für Windows XP (KB2508429) (Version: 1) Sicherheitsupdate für Windows XP (KB2509553) (Version: 1) Sicherheitsupdate für Windows XP (KB2511455) (Version: 1) Sicherheitsupdate für Windows XP (KB2524375) (Version: 1) Sicherheitsupdate für Windows XP (KB2535512) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2544893) (Version: 1) Sicherheitsupdate für Windows XP (KB2544893-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2555917) (Version: 1) Sicherheitsupdate für Windows XP (KB2562937) (Version: 1) Sicherheitsupdate für Windows XP (KB2566454) (Version: 1) Sicherheitsupdate für Windows XP (KB2567053) (Version: 1) Sicherheitsupdate für Windows XP (KB2567680) (Version: 1) Sicherheitsupdate für Windows XP (KB2570222) (Version: 1) Sicherheitsupdate für Windows XP (KB2570947) (Version: 1) Sicherheitsupdate für Windows XP (KB2584146) (Version: 1) Sicherheitsupdate für Windows XP (KB2585542) (Version: 1) Sicherheitsupdate für Windows XP (KB2592799) (Version: 1) Sicherheitsupdate für Windows XP (KB2598479) (Version: 1) Sicherheitsupdate für Windows XP (KB2603381) (Version: 1) Sicherheitsupdate für Windows XP (KB2618451) (Version: 1) Sicherheitsupdate für Windows XP (KB2619339) (Version: 1) Sicherheitsupdate für Windows XP (KB2620712) (Version: 1) Sicherheitsupdate für Windows XP (KB2621440) (Version: 1) Sicherheitsupdate für Windows XP (KB2624667) (Version: 1) Sicherheitsupdate für Windows XP (KB2631813) (Version: 1) Sicherheitsupdate für Windows XP (KB2633171) (Version: 1) Sicherheitsupdate für Windows XP (KB2639417) (Version: 1) Sicherheitsupdate für Windows XP (KB2641653) (Version: 1) Sicherheitsupdate für Windows XP (KB2646524) (Version: 1) Sicherheitsupdate für Windows XP (KB2647518) (Version: 1) Sicherheitsupdate für Windows XP (KB2653956) (Version: 1) Sicherheitsupdate für Windows XP (KB2655992) (Version: 1) Sicherheitsupdate für Windows XP (KB2659262) (Version: 1) Sicherheitsupdate für Windows XP (KB2660465) (Version: 1) Sicherheitsupdate für Windows XP (KB2661637) (Version: 1) Sicherheitsupdate für Windows XP (KB2676562) (Version: 1) Sicherheitsupdate für Windows XP (KB2685939) (Version: 1) Sicherheitsupdate für Windows XP (KB2686509) (Version: 1) Sicherheitsupdate für Windows XP (KB2691442) (Version: 1) Sicherheitsupdate für Windows XP (KB2695962) (Version: 1) Sicherheitsupdate für Windows XP (KB2698365) (Version: 1) Sicherheitsupdate für Windows XP (KB2705219) (Version: 1) Sicherheitsupdate für Windows XP (KB2707511) (Version: 1) Sicherheitsupdate für Windows XP (KB2709162) (Version: 1) Sicherheitsupdate für Windows XP (KB2712808) (Version: 1) Sicherheitsupdate für Windows XP (KB2718523) (Version: 1) Sicherheitsupdate für Windows XP (KB2719985) (Version: 1) Sicherheitsupdate für Windows XP (KB2723135) (Version: 1) Sicherheitsupdate für Windows XP (KB2724197) (Version: 1) Sicherheitsupdate für Windows XP (KB2727528) (Version: 1) Sicherheitsupdate für Windows XP (KB2731847) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2757638) (Version: 1) Sicherheitsupdate für Windows XP (KB2758857) (Version: 1) Sicherheitsupdate für Windows XP (KB2761226) (Version: 1) Sicherheitsupdate für Windows XP (KB2770660) (Version: 1) Sicherheitsupdate für Windows XP (KB2778344) (Version: 1) Sicherheitsupdate für Windows XP (KB2779030) (Version: 1) Sicherheitsupdate für Windows XP (KB2780091) (Version: 1) Sicherheitsupdate für Windows XP (KB2799494) (Version: 1) Sicherheitsupdate für Windows XP (KB2802968) (Version: 1) Sicherheitsupdate für Windows XP (KB2807986) (Version: 1) Sicherheitsupdate für Windows XP (KB2808735) (Version: 1) Sicherheitsupdate für Windows XP (KB2813170) (Version: 1) Sicherheitsupdate für Windows XP (KB2813345) (Version: 1) Sicherheitsupdate für Windows XP (KB2820197) (Version: 1) Sicherheitsupdate für Windows XP (KB2820917) (Version: 1) Sicherheitsupdate für Windows XP (KB2829361) (Version: 1) Sicherheitsupdate für Windows XP (KB2834886) (Version: 1) Sicherheitsupdate für Windows XP (KB2839229) (Version: 1) Sicherheitsupdate für Windows XP (KB2845187) (Version: 1) Sicherheitsupdate für Windows XP (KB2849470) (Version: 1) Sicherheitsupdate für Windows XP (KB2850851) (Version: 1) Sicherheitsupdate für Windows XP (KB2850869) (Version: 1) Sicherheitsupdate für Windows XP (KB2859537) (Version: 1) Sicherheitsupdate für Windows XP (KB923561) (Version: 1) Sicherheitsupdate für Windows XP (KB923789) Sicherheitsupdate für Windows XP (KB941569) Sicherheitsupdate für Windows XP (KB946648) (Version: 1) Sicherheitsupdate für Windows XP (KB950762) (Version: 1) Sicherheitsupdate für Windows XP (KB950974) (Version: 1) Sicherheitsupdate für Windows XP (KB951376-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB951748) (Version: 1) Sicherheitsupdate für Windows XP (KB952004) (Version: 1) Sicherheitsupdate für Windows XP (KB952954) (Version: 1) Sicherheitsupdate für Windows XP (KB954459) (Version: 1) Sicherheitsupdate für Windows XP (KB956572) (Version: 1) Sicherheitsupdate für Windows XP (KB956744) (Version: 1) Sicherheitsupdate für Windows XP (KB956802) (Version: 1) Sicherheitsupdate für Windows XP (KB956803) (Version: 1) Sicherheitsupdate für Windows XP (KB956844) (Version: 1) Sicherheitsupdate für Windows XP (KB958644) (Version: 1) Sicherheitsupdate für Windows XP (KB958869) (Version: 1) Sicherheitsupdate für Windows XP (KB959426) (Version: 1) Sicherheitsupdate für Windows XP (KB960803) (Version: 1) Sicherheitsupdate für Windows XP (KB960859) (Version: 1) Sicherheitsupdate für Windows XP (KB961501) (Version: 1) Sicherheitsupdate für Windows XP (KB969059) (Version: 1) Sicherheitsupdate für Windows XP (KB970430) (Version: 1) Sicherheitsupdate für Windows XP (KB971657) (Version: 1) Sicherheitsupdate für Windows XP (KB971961) (Version: 1) Sicherheitsupdate für Windows XP (KB972270) (Version: 1) Sicherheitsupdate für Windows XP (KB973507) (Version: 1) Sicherheitsupdate für Windows XP (KB973869) (Version: 1) Sicherheitsupdate für Windows XP (KB973904) (Version: 1) Sicherheitsupdate für Windows XP (KB974112) (Version: 1) Sicherheitsupdate für Windows XP (KB974318) (Version: 1) Sicherheitsupdate für Windows XP (KB974392) (Version: 1) Sicherheitsupdate für Windows XP (KB974571) (Version: 1) Sicherheitsupdate für Windows XP (KB975025) (Version: 1) Sicherheitsupdate für Windows XP (KB975467) (Version: 1) Sicherheitsupdate für Windows XP (KB975560) (Version: 1) Sicherheitsupdate für Windows XP (KB975562) (Version: 1) Sicherheitsupdate für Windows XP (KB975713) (Version: 1) Sicherheitsupdate für Windows XP (KB977816) (Version: 1) Sicherheitsupdate für Windows XP (KB977914) (Version: 1) Sicherheitsupdate für Windows XP (KB978037) (Version: 1) Sicherheitsupdate für Windows XP (KB978338) (Version: 1) Sicherheitsupdate für Windows XP (KB978542) (Version: 1) Sicherheitsupdate für Windows XP (KB978601) (Version: 1) Sicherheitsupdate für Windows XP (KB978706) (Version: 1) Sicherheitsupdate für Windows XP (KB979309) (Version: 1) Sicherheitsupdate für Windows XP (KB979482) (Version: 1) Sicherheitsupdate für Windows XP (KB979687) (Version: 1) Sicherheitsupdate für Windows XP (KB980195) (Version: 1) Sicherheitsupdate für Windows XP (KB980232) (Version: 1) Sicherheitsupdate für Windows XP (KB980436) (Version: 1) Sicherheitsupdate für Windows XP (KB981322) (Version: 1) Sicherheitsupdate für Windows XP (KB981349) (Version: 1) Sicherheitsupdate für Windows XP (KB981852) (Version: 1) Sicherheitsupdate für Windows XP (KB981997) (Version: 1) Sicherheitsupdate für Windows XP (KB982132) (Version: 1) Sicherheitsupdate für Windows XP (KB982214) (Version: 1) Sicherheitsupdate für Windows XP (KB982665) (Version: 1) Skins (Version: 0108.2146.2565.38893) Skype Click to Call (Version: 6.3.11079) Skype™ 6.3 (Version: 6.3.105) SmartWebPrinting (Version: 140.0.186.000) SolutionCenter (Version: 140.0.213.000) Status (Version: 140.0.212.000) Toolbox (Version: 140.0.428.000) TrayApp (Version: 140.0.212.000) TuneUp Utilities 2013 (Version: 13.0.3000.132) TuneUp Utilities Language Pack (de-DE) (Version: 13.0.3000.132) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1) Update für Microsoft Windows (KB971513) Update für Windows Internet Explorer 8 (KB2447568) (Version: 1) Update für Windows Internet Explorer 8 (KB976662) (Version: 1) Update für Windows XP (KB2141007) (Version: 1) Update für Windows XP (KB2345886) (Version: 1) Update für Windows XP (KB2467659) (Version: 1) Update für Windows XP (KB2541763) (Version: 1) Update für Windows XP (KB2607712) (Version: 1) Update für Windows XP (KB2616676) (Version: 1) Update für Windows XP (KB2641690) (Version: 1) Update für Windows XP (KB2661254-v2) (Version: 2) Update für Windows XP (KB2718704) (Version: 1) Update für Windows XP (KB2736233) (Version: 1) Update für Windows XP (KB2749655) (Version: 1) Update für Windows XP (KB2863058) (Version: 1) Update für Windows XP (KB898461) (Version: 1) Update für Windows XP (KB951978) (Version: 1) Update für Windows XP (KB955759) (Version: 1) Update für Windows XP (KB967715) (Version: 1) Update für Windows XP (KB968389) (Version: 1) Update für Windows XP (KB971029) (Version: 1) Update für Windows XP (KB971737) (Version: 1) Update für Windows XP (KB973687) (Version: 1) Update für Windows XP (KB973815) (Version: 1) VLC Player (Version: 1.14) WebFldrs XP (Version: 9.50.7523) WebReg (Version: 140.0.212.017) Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0) Windows Genuine Advantage Validation Tool (KB892130) Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2) Windows Internet Explorer 8 (Version: 20090308.140743) Windows Media Format 11 runtime Windows Search 4.0 (Version: 04.00.6001.503) Windows-Treiberpaket - Atheros (AR5416) Net (06/04/2010 7.7.0.523) (Version: 06/04/2010 7.7.0.523) ==================== Restore Points ========================= 11-06-2013 17:52:14 Systemprüfpunkt 12-06-2013 18:08:33 Systemprüfpunkt 23-06-2013 16:41:51 Systemprüfpunkt 01-07-2013 17:03:21 Systemprüfpunkt 02-07-2013 10:17:28 Software Distribution Service 3.0 04-07-2013 16:29:04 Systemprüfpunkt 05-07-2013 16:51:12 Systemprüfpunkt 07-07-2013 15:19:16 Systemprüfpunkt 09-07-2013 19:36:44 Systemprüfpunkt 10-07-2013 19:52:25 Systemprüfpunkt 11-07-2013 19:22:50 Software Distribution Service 3.0 12-07-2013 20:23:45 Systemprüfpunkt 14-07-2013 15:50:53 Systemprüfpunkt 15-07-2013 16:43:05 Systemprüfpunkt 16-07-2013 17:57:46 Systemprüfpunkt 21-07-2013 15:48:55 Systemprüfpunkt 23-07-2013 13:30:14 Systemprüfpunkt 27-07-2013 07:34:24 Systemprüfpunkt 29-07-2013 17:48:44 Systemprüfpunkt 31-07-2013 07:35:03 Systemprüfpunkt 02-08-2013 21:18:27 Systemprüfpunkt 02-08-2013 21:56:06 ESET Smart Security wurde entfernt 05-08-2013 14:01:17 Java(TM) 6 Update 22 wird installiert 06-08-2013 14:36:40 Systemprüfpunkt 07-08-2013 16:23:15 Systemprüfpunkt 10-08-2013 14:26:48 Systemprüfpunkt 15-08-2013 22:45:47 Software Distribution Service 3.0 18-08-2013 20:26:55 Systemprüfpunkt 19-08-2013 21:03:58 Systemprüfpunkt 20-08-2013 22:06:30 Systemprüfpunkt 22-08-2013 15:22:30 Systemprüfpunkt 24-08-2013 20:53:57 Systemprüfpunkt 26-08-2013 17:04:28 Systemprüfpunkt 27-08-2013 18:17:57 Systemprüfpunkt 28-08-2013 15:31:33 Software Distribution Service 3.0 30-08-2013 07:24:41 Systemprüfpunkt 01-09-2013 12:09:27 Installed Active@ ISO Burner 01-09-2013 12:09:41 SPTD setup V1.62 01-09-2013 12:14:37 Uniblue SpeedUpMyPC installation 02-09-2013 17:21:23 Systemprüfpunkt 04-09-2013 18:48:55 Systemprüfpunkt 05-09-2013 21:11:09 Java(TM) 6 Update 22 wird entfernt 05-09-2013 21:11:50 Java(TM) 6 Update 22 wird installiert ==================== Hosts content: ========================== 2004-08-04 13:00 - 2013-08-16 13:13 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Programme\Apple Software Update\SoftwareUpdate.exe Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F660A0B-21EB-4224-A64D-9FCAFC9DDFD5}.job => C:\WINDOWS\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2008-04-14 06:51 - 2008-04-14 06:51 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime 2008-04-14 06:52 - 2009-02-09 12:51 - 00401408 _____ (Microsoft Corporation) c:\windows\system32\rpcss.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00082432 _____ (Microsoft Corporation) c:\windows\system32\WS2_32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00019968 _____ (Microsoft Corporation) c:\windows\system32\WS2HELP.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00297472 _____ (Microsoft Corporation) c:\windows\system32\termsrv.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00011264 _____ (Microsoft Corporation) c:\windows\system32\ICAAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00989696 _____ (Microsoft Corporation) c:\windows\system32\SETUPAPI.dll 2008-04-14 06:52 - 2012-08-24 15:53 - 00177664 _____ (Microsoft Corporation) c:\windows\system32\WINTRUST.dll 2008-04-14 06:52 - 2012-06-01 18:50 - 00606208 _____ (Microsoft Corporation) c:\windows\system32\CRYPT32.dll 2008-04-14 06:52 - 2009-09-04 23:03 - 00058880 _____ (Microsoft Corporation) c:\windows\system32\MSASN1.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00062464 _____ (Microsoft Corporation) c:\windows\system32\AUTHZ.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00116224 _____ (Microsoft Corporation) c:\windows\system32\mstlsapi.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00193536 _____ (Microsoft Corporation) c:\windows\system32\ACTIVEDS.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00143360 _____ (Microsoft Corporation) c:\windows\system32\adsldpc.dll 2008-04-14 06:52 - 2012-07-06 15:59 - 00337920 _____ (Microsoft Corporation) c:\windows\system32\NETAPI32.dll 2008-04-14 06:52 - 2009-07-17 21:01 - 00058880 _____ (Microsoft Corporation) c:\windows\system32\ATL.DLL 2008-04-14 06:52 - 2009-07-28 01:16 - 00135680 _____ (Microsoft Corporation) c:\windows\system32\shsvcs.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00127488 _____ (Microsoft Corporation) c:\windows\system32\dhcpcsvc.dll 2008-04-14 06:52 - 2011-03-03 08:54 - 00149504 _____ (Microsoft Corporation) c:\windows\system32\DNSAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00095744 _____ (Microsoft Corporation) c:\windows\system32\iphlpapi.dll 2008-04-14 09:52 - 2008-04-14 07:03 - 00483840 _____ (Microsoft Corporation) c:\windows\system32\wzcsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00044032 _____ (Microsoft Corporation) c:\windows\system32\rtutils.dll 2008-04-14 06:51 - 2008-04-14 06:51 - 00005632 _____ (Microsoft Corporation) c:\windows\system32\WMI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00030720 _____ (Microsoft Corporation) c:\windows\system32\EapolQec.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00076800 _____ (Microsoft Corporation) c:\windows\system32\QUtil.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00413696 _____ (Microsoft Corporation) c:\windows\system32\MSVCP60.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00026112 _____ (Microsoft Corporation) c:\windows\system32\dot3api.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00018432 _____ (Microsoft Corporation) c:\windows\system32\WTSAPI32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 01094144 _____ (Microsoft Corporation) c:\windows\system32\ESENT.dll 2011-01-31 20:34 - 2008-04-14 06:52 - 00193536 _____ (Microsoft Corporation) c:\windows\system32\schedsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00067072 _____ (Microsoft Corporation) c:\windows\system32\NTDSAPI.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00042496 _____ (Microsoft Corporation) c:\windows\system32\audiosrv.dll 2008-04-14 06:52 - 2009-06-10 08:14 - 00132096 _____ (Microsoft Corporation) c:\windows\system32\wkssvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00062464 _____ (Microsoft Corporation) c:\windows\system32\cryptsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00198144 _____ (Microsoft Corporation) c:\windows\system32\certcli.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00024064 _____ (Microsoft Corp.) c:\windows\system32\dmserver.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00023040 _____ (Microsoft Corporation) c:\windows\system32\ersvc.dll 2008-04-14 06:52 - 2008-07-07 22:26 - 00253952 _____ (Microsoft Corporation) c:\windows\system32\es.dll 2008-04-14 06:52 - 2010-08-27 07:57 - 00099840 _____ (Microsoft Corporation) c:\windows\system32\srvsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00198144 _____ (Microsoft Corporation) c:\windows\system32\netman.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 01722880 _____ (Microsoft Corporation) c:\windows\system32\netshell.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00165376 _____ (Microsoft Corporation) c:\windows\system32\credui.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00009216 _____ (Microsoft Corporation) c:\windows\system32\dot3dlg.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00145408 _____ (Microsoft Corporation) c:\windows\system32\OneX.DLL 2008-04-14 06:52 - 2008-04-14 06:52 - 00126976 _____ (Microsoft Corporation) c:\windows\system32\eappcfg.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00040960 _____ (Microsoft Corporation) c:\windows\system32\eappprxy.dll 2008-04-14 09:52 - 2008-04-14 07:03 - 00052736 _____ (Microsoft Corporation) c:\windows\system32\WZCSAPI.DLL 2008-04-14 06:52 - 2008-04-14 06:52 - 00018944 _____ (Microsoft Corporation) c:\windows\system32\seclogon.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00039424 _____ (Microsoft Corporation) c:\windows\system32\sens.dll 2011-01-31 20:34 - 2008-04-14 06:52 - 00171520 _____ (Microsoft Corporation) c:\windows\system32\srsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00017408 _____ (Microsoft Corporation) c:\windows\system32\POWRPROF.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00090112 _____ (Microsoft Corporation) c:\windows\system32\trkwks.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00177152 _____ (Microsoft Corporation) c:\windows\system32\w32time.dll 2011-01-31 20:35 - 2008-04-14 06:52 - 00006656 _____ (Microsoft Corporation) c:\windows\system32\wuauserv.dll 2008-04-14 06:52 - 2012-07-06 15:59 - 00078336 _____ (Microsoft Corporation) c:\windows\system32\browser.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00334336 _____ (Microsoft Corporation) c:\windows\system32\ipnathlp.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00080896 _____ (Microsoft Corporation) c:\windows\system32\wscsvc.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 02843136 _____ (Microsoft Corporation) c:\windows\system32\msi.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00249856 _____ (Microsoft Corporation) c:\windows\system32\tapisrv.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00186368 _____ (Microsoft Corporation) c:\windows\system32\rasmans.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00032256 _____ (Microsoft Corporation) c:\windows\system32\WINIPSEC.DLL 2008-04-14 06:52 - 2008-04-14 06:52 - 00633856 _____ (Microsoft Corporation) c:\windows\system32\netcfgx.dll 2006-09-28 19:56 - 2006-09-28 19:56 - 00055808 ____N (Microsoft Corporation) c:\windows\system32\wudfsvc.dll 2006-09-28 19:56 - 2006-09-28 19:56 - 00165376 ____N (Microsoft Corporation) c:\windows\system32\WUDFPlatform.dll 2011-02-02 15:48 - 2009-04-20 13:23 - 00123904 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpf3l70w.dll 2011-02-18 15:10 - 2001-10-28 17:42 - 00116224 _____ () C:\WINDOWS\system32\pdfcmnnt.dll 2011-02-02 15:48 - 2009-04-20 13:23 - 00315904 _____ (Hewlett-Packard Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpfpp70w.dll 2011-01-31 21:25 - 2008-07-06 14:06 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00008552 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\schedr.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00203112 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avevtlog.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00054120 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\cfglib.dll 2011-02-01 20:53 - 2010-06-17 15:27 - 00355688 _____ () C:\Programme\Avira\AntiVir Desktop\sqlite3.dll 2011-02-01 20:53 - 2010-06-17 15:27 - 00767488 _____ (Sleepycat Software) C:\Programme\Avira\AntiVir Desktop\libdb44.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00203112 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVEvtLog.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00037224 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\guardmsg.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00063848 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avsmtp.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00089960 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVGIO.DLL 2011-02-01 20:53 - 2010-06-17 15:26 - 00062312 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avipc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00044904 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\AVPREF.DLL 2009-11-18 04:16 - 2009-11-18 04:16 - 00137344 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqddsvc.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00217728 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqddcmn.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00253568 _____ (Hewlett-Packard Co.) c:\programme\hp\digital imaging\bin\hpqcxs08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00633984 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpocxi08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00297600 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqcob08.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\wmiaprpl.dll 2011-04-29 20:01 - 2010-05-07 18:47 - 00114520 _____ (Logitech Inc.) C:\WINDOWS\system32\logishrd\LVPrcInj01.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00044032 _____ (Hewlett-Packard) c:\windows\system32\hpzinw12.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00024576 _____ (Microsoft Corporation) c:\windows\system32\WSOCK32.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00053760 _____ (Hewlett-Packard) c:\windows\system32\hpzipm12.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00334336 _____ (Microsoft Corporation) c:\windows\system32\wiaservc.dll 2008-04-14 06:50 - 2008-04-14 06:50 - 00016896 _____ (Microsoft Corporation) c:\windows\system32\CFGMGR32.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00989696 _____ (Microsoft Corporation) c:\windows\system32\setupapi.DLL 2008-04-14 06:52 - 2008-06-24 18:42 - 00074240 _____ (Microsoft Corporation) c:\windows\system32\mscms.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00053760 _____ (Microsoft Corporation) c:\windows\system32\WINSTA.dll 2008-05-26 23:23 - 2008-05-26 23:23 - 00262144 ____N (Microsoft Corporation) C:\WINDOWS\system32\de-de\tQuery.dll.mui 2011-01-31 20:35 - 2008-04-14 06:52 - 00409088 _____ (Microsoft Corporation) c:\windows\system32\qmgr.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00025088 _____ (Microsoft Corporation) c:\windows\system32\SHFOLDER.dll 2008-04-14 06:52 - 2011-11-16 16:21 - 00354816 _____ (Microsoft Corporation) c:\windows\system32\WINHTTP.dll 2011-01-31 20:32 - 2008-04-14 06:24 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\WMIApRes.dll 2011-01-31 20:32 - 2008-04-14 06:52 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\wmiprov.dll 2013-05-10 09:57 - 2013-05-10 09:57 - 00301056 _____ () C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.DEU 2008-04-14 06:50 - 2008-04-14 06:50 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\system32\HHCTRL.OCX 2004-08-04 13:00 - 2004-08-04 13:00 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mui\0007\HHCTRLui.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00288616 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\ccwkrlib.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00054120 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cfglib.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00873832 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgen.dll 2011-02-01 20:53 - 2011-05-08 20:30 - 00039784 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgenrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00446312 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccguard.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00025448 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgrdrc.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00092520 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccgrdw.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00290664 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccupdate.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00025448 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccupdrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00174440 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cclic.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00005480 _____ (Avira GmbH) c:\programme\avira\antivir desktop\cclicrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 00304488 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmsg.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00005480 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmsgrc.dll 2011-02-01 20:53 - 2011-06-28 14:09 - 02589544 _____ (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\rcimage.dll 2011-02-01 20:53 - 2010-12-13 09:39 - 00008552 _____ (Avira GmbH) c:\programme\avira\antivir desktop\ccmainrc.dll 2010-05-07 18:35 - 2010-05-07 18:35 - 02143576 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtCore4.dll 2010-05-07 18:35 - 2010-05-07 18:35 - 07954776 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtGui4.dll 2010-05-07 18:36 - 2010-05-07 18:36 - 00340824 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtXml4.dll 2010-05-07 18:36 - 2010-05-07 18:36 - 00921944 _____ () C:\Programme\Logitech\LWS\Webcam Software\QtNetwork4.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00027480 _____ () C:\Programme\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00126808 _____ () C:\Programme\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2010-11-17 14:16 - 2010-11-17 14:16 - 00053024 _____ (Open Source Software community project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\pthreadVC2.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 01292136 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libicuin.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 00923496 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libicuuc.dll 2011-09-27 08:22 - 2011-09-27 08:22 - 16303976 _____ (The ICU Project) C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\icudt46.dll 2010-05-07 18:37 - 2010-05-07 18:37 - 00290648 _____ () C:\Programme\Gemeinsame Dateien\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 02141016 _____ () C:\Programme\Logitech\Vid\QtCore4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 07704408 _____ () C:\Programme\Logitech\Vid\QtGui4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00969048 _____ () C:\Programme\Logitech\Vid\QtNetwork4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00475480 _____ () C:\Programme\Logitech\Vid\QtOpenGL4.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 00363864 _____ () C:\Programme\Logitech\Vid\QtXml4.dll 2010-05-11 16:41 - 2010-05-11 16:41 - 00200024 _____ () C:\Programme\Logitech\Vid\QtSql4.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 00027480 _____ () C:\Programme\Logitech\Vid\SDL.dll 2010-05-11 16:42 - 2010-05-11 16:42 - 11311960 _____ () C:\Programme\Logitech\Vid\QtWebKit4.dll 2010-05-11 16:40 - 2010-05-11 16:40 - 00291672 _____ () C:\Programme\Logitech\Vid\phonon4.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00124320 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avutil-49.dll 2010-05-11 16:38 - 2010-05-11 16:38 - 03740560 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avcodec-52.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00366768 _____ (FFMPEG.org) C:\Programme\Logitech\Vid\avformat-52.dll 2008-04-14 06:52 - 2008-04-14 06:52 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00755032 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264VidEncodeAPI.dll 2010-05-11 16:43 - 2010-05-11 16:43 - 00062808 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\StreamIO2.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00099672 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264NvidiaVidDecodeAPI.dll 2010-05-11 16:39 - 2010-05-11 16:39 - 00427352 _____ (dicas digital image coding GmbH) C:\Programme\Logitech\Vid\H264VidDecodeAPI.dll 2010-05-11 16:40 - 2010-05-11 16:40 - 00267608 _____ (LuraTech Imaging GmbH) C:\Programme\Logitech\Vid\lwf_jp2.dll 2010-05-11 16:44 - 2010-05-11 16:44 - 00029016 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qgif4.dll 2010-05-11 16:44 - 2010-05-11 16:44 - 00035160 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qico4.dll 2010-05-11 16:45 - 2010-05-11 16:45 - 00138072 _____ () C:\Programme\Logitech\Vid\plugins\imageformats\qjpeg4.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00210048 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpquio08.dll 2009-11-18 04:42 - 2009-11-18 04:42 - 00048128 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtra08.rsc 2009-11-18 04:42 - 2009-11-18 04:42 - 00154752 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqtao08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00279168 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotradd.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00542848 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotra08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 00036992 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpotra08.rsc 2009-11-17 21:39 - 2009-11-17 21:39 - 00330880 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqrif08.dll 2009-11-17 22:58 - 2009-11-17 22:58 - 00342656 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqmif08.dll 2010-01-29 23:52 - 2010-01-29 23:52 - 01176192 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpodio08.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00053888 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqddusr.dll 2009-11-18 04:16 - 2009-11-18 04:16 - 00217728 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqddcmn.dll 2009-11-17 22:58 - 2009-11-17 22:58 - 00559232 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqusg.dll 2011-01-31 23:36 - 2008-10-23 00:59 - 00036864 _____ (Realtek) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtlICS.dll 2011-01-31 23:36 - 2009-04-03 17:32 - 00110592 _____ () C:\Programme\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll 2011-01-31 23:36 - 2009-05-07 17:07 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Programme\Realtek\11n USB Wireless LAN Utility\RtlLib.dll 2011-01-31 23:36 - 2007-11-28 05:32 - 01163264 _____ () C:\Programme\Realtek\11n USB Wireless LAN Utility\acAuth.dll 2011-01-31 23:36 - 2009-01-12 16:50 - 00143360 _____ (TODO: <Company name>) C:\Programme\Realtek\11n USB Wireless LAN Utility\IpLib.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01740800 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\sal3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00086016 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\uwinapi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 00379904 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sofficeapp.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01033728 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\comphelp4MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00432128 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00013312 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\salhelper3MSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00142848 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\cppu3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00597504 _____ (STLport Consulting, Inc.) C:\Programme\OpenOffice.org 3\URE\bin\stlport_vc7145.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00358912 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucbhelper4MSC.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00094208 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\vos3MSC.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00135680 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\deploymentmiscmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00832000 _____ (Oracle) C:\Programme\OpenOffice.org 3\program\libdb47.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00529408 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\tlmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00700928 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\basegfxmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00026112 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18nisolang1MSC.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00958464 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\utlmi.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00531456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\xcrmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 03234816 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sfxmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00869888 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwemi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00311296 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwimi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 02863616 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svtmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 02186752 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\tkmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 03266560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\vclmi.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00256000 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sotmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00029184 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18npapermi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00066560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18nutilMSC.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00951296 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icuuc40.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 13914112 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icudt40.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00777216 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svlmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00092160 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\jvmfwk3.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00985088 _____ () C:\Programme\OpenOffice.org 3\program\libxml2.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01577984 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\sbmi.dll 2010-11-19 13:42 - 2010-11-19 13:42 - 00083456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\saxmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00051712 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\msci_uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00452608 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\bootstrap.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00092672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\reg3.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00053248 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\store3.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00396800 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\configmgr.uno.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00024064 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\localebe1.uno.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00092672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\URE\bin\stocservices.uno.dll 2010-11-19 19:46 - 2011-01-31 23:44 - 00212992 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucb1.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 01649152 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\fwkmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 00257024 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\ucpfile1.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 01317376 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\i18npool.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 01071616 _____ (IBM Corporation and others) C:\Programme\OpenOffice.org 3\program\icuin40.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00083968 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\oooimprovementmi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 02524672 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svxmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 01457152 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\editengmi.dll 2011-01-17 17:19 - 2011-01-31 23:44 - 02967552 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\xomi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00991744 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\lngmi.dll 2010-12-13 17:23 - 2011-01-31 23:44 - 05470208 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\svxcoremi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00211456 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\avmediami.dll 2011-01-17 17:18 - 2011-01-31 23:44 - 01026560 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\drawinglayermi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00503296 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\canvastoolsmi.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00129024 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\aggmi.dll 2011-01-17 17:18 - 2011-01-31 23:44 - 00285184 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\cppcanvasmi.dll 2010-12-13 17:22 - 2011-01-31 23:44 - 00287232 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\oleautobridge.uno.dll 2010-11-19 19:45 - 2011-01-31 23:44 - 00148480 _____ (OpenOffice.org) C:\Programme\OpenOffice.org 3\program\emsermi.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00499840 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqwso08.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 00034816 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzipr12.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00314496 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqsti08.dll 2009-11-17 20:49 - 2009-11-17 20:49 - 00045184 _____ (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpb01.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00289920 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqstp08.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00012288 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqstp08.rsc 2009-11-18 04:02 - 2009-11-18 04:02 - 00208000 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqssm08.dll 2009-11-18 04:02 - 2009-11-18 04:02 - 00978432 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\hpqsem08.rsc 2009-11-18 04:02 - 2009-11-18 04:02 - 00062080 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\bin\HpqSplh08.dll 2009-11-17 21:39 - 2009-11-17 21:39 - 00101504 _____ (Hewlett Packard) C:\Programme\HP\Digital Imaging\Product Assistant\bin\hprbevst.dll 2009-11-17 20:49 - 2009-11-17 20:49 - 00043136 _____ (Hewlett-Packard) C:\Programme\HP\Digital Imaging\bin\hpqgpreh.dll 2008-04-14 06:52 - 2009-11-21 17:54 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\AppPatch\AcLayers.DLL 2009-10-22 05:29 - 2009-10-22 05:29 - 00328248 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00116280 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\UtilityLib.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00030776 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00206392 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\SatelliteDEU.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00053304 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\hpXRE.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00428088 _____ (sqlite.org) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\sqlite3.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00606264 _____ (Netscape Communications Corporation) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\js3250.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00049720 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\hpNeoLogging.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00026168 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00071736 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00023096 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00048696 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00027704 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00042040 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00144952 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_Operation.dll 2011-02-09 17:31 - 2011-02-09 17:31 - 00041760 _____ (Sun Microsystems, Inc.) C:\Programme\Java\jre6\bin\jp2ssv.dll 2011-02-09 17:31 - 2011-02-09 17:31 - 00079648 _____ (Sun Microsystems, Inc.) C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00517688 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll 2009-10-22 05:29 - 2009-10-22 05:29 - 00144952 _____ (Hewlett-Packard Co.) C:\Programme\HP\Digital Imaging\Smart Web Printing\ClipBookDBComponent.dll 2013-08-22 16:41 - 2013-08-22 16:41 - 16230792 ____R (Adobe Systems, Inc.) C:\WINDOWS\system32\Macromed\Flash\Flash32_11_8_800_94.ocx ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= Name: Videocontroller (VGA-kompatibel) Description: Videocontroller (VGA-kompatibel) Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318} Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Modemgerät auf High Definition Audio-Bus Description: Modemgerät auf High Definition Audio-Bus Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318} Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/06/2013 02:45:58 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (09/02/2013 06:34:18 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (09/01/2013 02:44:23 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung OTLPE.exe, Version 3.1.48.0, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (09/01/2013 01:39:05 PM) (Source: Application Hang) (User: ) Description: Fehlerhafter Speicherbereich 1180947459. Error: (09/01/2013 01:38:58 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (08/30/2013 08:12:25 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/23/2013 03:16:49 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/22/2013 01:18:25 AM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (08/11/2013 00:35:43 PM) (Source: ESENT) (User: ) Description: svchost (1012) Versuch, Datei "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb" für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (08/08/2013 08:55:54 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. System errors: ============= Error: (08/18/2013 03:04:14 AM) (Source: WPDMTPDriver) (User: ) Description: MTP WPD Driver has failed to start. Error 0x8007048f. Error: (08/18/2013 03:03:32 AM) (Source: WPDMTPDriver) (User: ) Description: MTP WPD Driver has failed to start. Error 0x80070005. Error: (08/16/2013 00:42:07 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Process Monitor" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/16/2013 00:42:06 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Skype C2C Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/16/2013 00:08:42 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/16/2013 02:39:28 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/16/2013 00:05:02 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 00:34:49 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 00:24:51 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrowserDefendert" wurde aufgrund folgenden Fehlers nicht gestartet: %%193 Error: (08/11/2013 01:23:19 AM) (Source: DCOM) (User: ERIC-2E84DA5617) Description: Der Server "{DC0C2640-1415-4644-875C-6F4D769839BA}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Microsoft Office Sessions: ========================= Error: (09/06/2013 02:45:58 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (09/02/2013 06:34:18 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (09/01/2013 02:44:23 PM) (Source: Application Hang)(User: ) Description: OTLPE.exe3.1.48.0hungapp0.0.0.000000000 Error: (09/01/2013 01:39:05 PM) (Source: Application Hang)(User: ) Description: 1180947459 Error: (09/01/2013 01:38:58 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (08/30/2013 08:12:25 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/23/2013 03:16:49 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL) Error: (08/22/2013 01:18:25 AM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (08/11/2013 00:35:43 PM) (Source: ESENT)(User: ) Description: svchost1012C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (08/08/2013 08:55:54 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 ==================== Memory info =========================== Percentage of memory in use: 49% Total physical RAM: 1918.16 MB Available physical RAM: 967.47 MB Total Pagefile: 3814.94 MB Available Pagefile: 2690.45 MB Total Virtual: 2047.88 MB Available Virtual: 1941.6 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.83 GB) (Free:13.17 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive d: () (Fixed) (Total:100.21 GB) (Free:99.9 GB) NTFS Drive f: (KINGSTON) (Removable) (Total:0.48 GB) (Free:0.46 GB) FAT ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 149 GB) (Disk ID: 15DBD2CF) Partition 1: (Active) - (Size=49 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=100 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 492 MB) (Disk ID: 00000000) Partition 1: (Active) - (Size=491 MB) - (Type=0E) ==================== End Of Log ============================ |
09.09.2013, 05:57 | #53 |
/// the machine /// TB-Ausbilder | BKA-Trojaner Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
10.09.2013, 20:10 | #54 |
| BKA-Trojaner Hallo Schrauber, komme nach wie vor nicht in meinen Benutzer. Nach Doppelklick auf meinen Benutzer, erscheint ein schwarzer Bildschirm mit weißen blinkenden Strich links oben, dann erscheinen wieder beide Benutzer und meiner in den ich will lädt länger wie normal. Dann kommt wieder das schwarze Fenster mit cms.exe oder so und der üblige Text das meine Einstellugen etc. nicht gefunden werden konnten. Ausserdem erscheint jetzt so ein Programm "TuneUp Utilities 2013". Gibt es noch eine Möglichkeit? Ansonsten würde ich auch ein neues System auflegen. Gruß |
11.09.2013, 07:54 | #55 |
/// the machine /// TB-Ausbilder | BKA-Trojaner kannst Du denn vom Nutzer Karo aus auf deinen User-Ordner zugreifen und die Daten sichern?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.09.2013, 20:42 | #56 |
| BKA-Trojaner weiß nicht wo ich da schauen soll. bei gemeinsame dateien??? |
12.09.2013, 09:44 | #57 |
/// the machine /// TB-Ausbilder | BKA-Trojaner Nein, unter User sollten alle ordner zu finden sein, nicht nur Deiner.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu BKA-Trojaner |
abend, ander, benutzer, dateien, desktop, eingefangen, falsch, fenster, folge, folgendes, freundin, funde, gefangen, gestern, interne, internet, konnte, leer, miteinander, nicht mehr, rescue, schwarzes, troja, trojaner, zugreifen |