![]() |
Log-Analyse und Auswertung: < http://www_getwindowinfo/ >Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
![]() | ![]() < http://www_getwindowinfo/ > Ich nutze diese Seite heute erstmalig und bin noch etwas unbeholfen. Möge man es mir verzeihen. Mein Problem: Im IE wird ständig < hxxp://www_getwindowinfo/ > aufgerufen. Was kann ich tun, um diese lästige Seite wieder los zu werden? Ich hoffe, dass mir jemand helfen kann. Vielen Dank |
![]() | #2 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ >!! Hinweis an Mitlesende !! Dieses Thema und die Anweisungen sind nur für diesen speziellen Fall gedacht. Sie könnten andere Computer schwer beschädigen. Öffnet bitte euer eigenes Thema. ![]() Ich werde dir bei deinem Problem helfen. Die Bereinigung funktioniert nur, wenn du dich an die folgenden Regeln hälst: ![]() Regeln für die Bereinigung
Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Deinstallation von Programmen
Schritt 2: AdwCleaner: Werbeprogramme suchen und löschen Downloade Dir bitte ![]()
Schritt 3: Scan mit DDS (mit attach) Downloade dir bitte DDS (von sUBs) und speichere die Datei auf deinem Desktop.
__________________ |
![]() | #3 |
![]() | ![]() < http://www_getwindowinfo/ >Code:
ATTFilter # AdwCleaner v2.306 - Datei am 31/07/2013 um 12:45:29 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Fritz-Otto - RECHNER01 # Bootmodus : Normal # Ausgeführt unter : C:\Users\Fritz-Otto\Downloads\AdwCleaner (6).exe # Option [Suche] **** [Dienste] **** ***** [Dateien / Ordner] ***** Ordner Gefunden : C:\ProgramData\ParetoLogic Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\DriverCure Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\ParetoLogic ***** [Registrierungsdatenbank] ***** ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 [OK] Die Registrierungsdatenbank ist sauber. -\\ Google Chrome v27.0.1453.110 Datei : C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[R10].txt - [18570 octets] - [30/06/2013 15:02:07] AdwCleaner[R11].txt - [2420 octets] - [30/06/2013 15:18:32] AdwCleaner[R12].txt - [2466 octets] - [30/07/2013 08:56:53] AdwCleaner[R13].txt - [2267 octets] - [30/07/2013 18:02:11] AdwCleaner[R14].txt - [1249 octets] - [31/07/2013 12:45:29] AdwCleaner[R1].txt - [0 octets] - [14/03/2013 18:43:44] AdwCleaner[R2].txt - [41420 octets] - [14/03/2013 19:04:28] AdwCleaner[R3].txt - [1169 octets] - [14/03/2013 19:10:58] AdwCleaner[R4].txt - [1434 octets] - [14/03/2013 19:39:58] AdwCleaner[R5].txt - [7236 octets] - [15/03/2013 14:59:08] AdwCleaner[R6].txt - [12458 octets] - [30/03/2013 16:01:24] AdwCleaner[R7].txt - [11530 octets] - [31/03/2013 10:33:56] AdwCleaner[R9].txt - [16360 octets] - [20/05/2013 14:38:51] AdwCleaner[S10].txt - [2529 octets] - [30/07/2013 08:57:43] AdwCleaner[S11].txt - [2330 octets] - [30/07/2013 18:04:00] AdwCleaner[S1].txt - [41094 octets] - [14/03/2013 19:07:08] AdwCleaner[S2].txt - [1496 octets] - [14/03/2013 19:40:43] AdwCleaner[S3].txt - [7182 octets] - [15/03/2013 15:00:29] AdwCleaner[S4].txt - [12345 octets] - [30/03/2013 16:01:52] AdwCleaner[S5].txt - [11567 octets] - [31/03/2013 10:35:26] AdwCleaner[S7].txt - [16000 octets] - [20/05/2013 14:39:33] AdwCleaner[S8].txt - [18406 octets] - [30/06/2013 15:03:07] AdwCleaner[S9].txt - [2320 octets] - [30/06/2013 15:19:46] ########## EOF - C:\AdwCleaner[R14].txt - [2398 octets] ########## Code:
ATTFilter # AdwCleaner v2.306 - Datei am 31/07/2013 um 12:45:29 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Fritz-Otto - RECHNER01 # Bootmodus : Normal # Ausgeführt unter : C:\Users\Fritz-Otto\Downloads\AdwCleaner (6).exe # Option [Suche] **** [Dienste] **** ***** [Dateien / Ordner] ***** Ordner Gefunden : C:\ProgramData\ParetoLogic Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\DriverCure Ordner Gefunden : C:\Users\Fritz-Otto\AppData\Roaming\ParetoLogic ***** [Registrierungsdatenbank] ***** ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 [OK] Die Registrierungsdatenbank ist sauber. -\\ Google Chrome v27.0.1453.110 Datei : C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[R10].txt - [18570 octets] - [30/06/2013 15:02:07] AdwCleaner[R11].txt - [2420 octets] - [30/06/2013 15:18:32] AdwCleaner[R12].txt - [2466 octets] - [30/07/2013 08:56:53] AdwCleaner[R13].txt - [2267 octets] - [30/07/2013 18:02:11] AdwCleaner[R14].txt - [1249 octets] - [31/07/2013 12:45:29] AdwCleaner[R1].txt - [0 octets] - [14/03/2013 18:43:44] AdwCleaner[R2].txt - [41420 octets] - [14/03/2013 19:04:28] AdwCleaner[R3].txt - [1169 octets] - [14/03/2013 19:10:58] AdwCleaner[R4].txt - [1434 octets] - [14/03/2013 19:39:58] AdwCleaner[R5].txt - [7236 octets] - [15/03/2013 14:59:08] AdwCleaner[R6].txt - [12458 octets] - [30/03/2013 16:01:24] AdwCleaner[R7].txt - [11530 octets] - [31/03/2013 10:33:56] AdwCleaner[R9].txt - [16360 octets] - [20/05/2013 14:38:51] AdwCleaner[S10].txt - [2529 octets] - [30/07/2013 08:57:43] AdwCleaner[S11].txt - [2330 octets] - [30/07/2013 18:04:00] AdwCleaner[S1].txt - [41094 octets] - [14/03/2013 19:07:08] AdwCleaner[S2].txt - [1496 octets] - [14/03/2013 19:40:43] AdwCleaner[S3].txt - [7182 octets] - [15/03/2013 15:00:29] AdwCleaner[S4].txt - [12345 octets] - [30/03/2013 16:01:52] AdwCleaner[S5].txt - [11567 octets] - [31/03/2013 10:35:26] AdwCleaner[S7].txt - [16000 octets] - [20/05/2013 14:39:33] AdwCleaner[S8].txt - [18406 octets] - [30/06/2013 15:03:07] AdwCleaner[S9].txt - [2320 octets] - [30/06/2013 15:19:46] ########## EOF - C:\AdwCleaner[R14].txt - [2398 octets] ########## Code:
ATTFilter . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume3 Install Date: 24.08.2011 15:20:44 System Uptime: 31.07.2013 12:47:51 (1 hours ago) . Motherboard: ASUSTeK Computer INC. | | M2R-FVM Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 3800+ | Socket AM2 | 2000/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 293 GiB total, 74,129 GiB free. D: is FIXED (NTFS) - 342 GiB total, 293,515 GiB free. E: is CDROM () J: is Removable K: is FIXED (NTFS) - 297 GiB total, 296,467 GiB free. L: is Removable M: is Removable N: is Removable . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP432: 11.07.2013 19:37:37 - Installiert Realtek USB 2.0 Card Reader RP433: 11.07.2013 19:40:52 - Gerätetreiber-Paketinstallation: Realtek USB-Controller RP434: 11.07.2013 19:42:36 - Installiert Realtek USB 2.0 Card Reader RP435: 12.07.2013 08:10:14 - Windows Update RP436: 15.07.2013 08:41:04 - Windows Update RP437: 16.07.2013 09:34:00 - Installed calibre RP438: 22.07.2013 09:42:02 - Windows Update RP439: 26.07.2013 19:20:17 - Windows Update RP440: 30.07.2013 17:33:11 - Windows Update RP441: 30.07.2013 19:38:18 - Installed SpyHunter RP442: 31.07.2013 09:20:26 - Installed Malwarebytes Secure Backup RP443: 31.07.2013 09:46:44 - Removed SpyHunter RP444: 31.07.2013 11:01:57 - Removed Java(TM) 6 Update 22 RP445: 31.07.2013 11:03:37 - Removed Java(TM) 6 Update 30 RP446: 31.07.2013 11:15:43 - Removed Epubor DRM Removal RP447: 31.07.2013 11:17:51 - Removed Malwarebytes Secure Backup RP448: 31.07.2013 11:46:23 - Preispilot wird entfernt RP449: 31.07.2013 11:50:03 - Removed Skype™ 5.10 RP450: 31.07.2013 11:51:02 - Removed Soda PDF 5 RP451: 31.07.2013 11:52:23 - Uninstall Steinberg Cubase SX RP452: 31.07.2013 11:56:04 - Steuer-Spar-Erklärung 2011 wurde entfernt. RP453: 31.07.2013 11:59:37 - Entfernt WISO Steuer-Sparbuch 2012 . ==== Installed Programs ====================== . Update for Microsoft Office 2007 (KB2508958) "Nero SoundTrax Help 64 Bit HP CIO Components Installer ABBYY FineReader 6.0 Sprint ACCU-CHEK 360° Adobe AIR Adobe Digital Editions 2.0 Adobe Download Assistant Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin Adobe Photoshop 7.0 Adobe Reader X (10.1.7) - Deutsch Advertising Center AIO_CDB_Software AIO_Scan AmazingMIDI Amazon Kindle Ashampoo ClipFinder HD v.2.2.9 Ashampoo WinOptimizer 2012 v.8.1.4 Audacity 2.0.3 Belkin Desktop PCI Card Driver Borland Data Engine BufferChm C-Media PCI Audio Device Cakewalk Pro Audio 8.0 Demo calibre Canon Easy-PhotoPrint EX Canon Easy-WebPrint EX Canon Inkjet Printer Driver Add-On Module V2.00 Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon iP4800 series Benutzerregistrierung Canon iP4800 series Printer Driver Canon My Printer Canon Solution Menu EX CCFinder CD-LabelPrint CDBurnerXP CDBurnerXP Packages CheckDrive Copy D3DX10 DDBAC Debut Video Capture Software Destinations DeviceDiscovery Digitale Bibliothek 4 DocProc DolbyFiles Driver Detective DVD-Cover v. DVD Shrink 3.2 deutsch (DeCSS-frei) ELECTRA 2.8 EPSON Scan Falk Navi-Manager classic Fax Fotogalerie Free Screen Video Recorder version Free Video Converter V 3.1 GIMP 2.6.8 Google Chrome Google Drive Google Update Helper GPBaseService2 GPL Ghostscript Greenshot HP Customer Participation Program 13.0 HP Imaging Device Functions 13.0 HP Photosmart Essential 3.5 HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B HP Smart Web Printing 4.51 HP Solution Center 13.0 HP Update HPDiagnosticAlert HPPhotoGadget HPPhotoSmartDiscLabelContent1 HPPhotosmartEssential HPProductAssistant HPSSupply ImagXpress intelliScore Ensemble MP3 to MIDI Converter Demo Junk Mail filter update Lernout & Hauspie TruVoice for Microsoft Agent Lexware Info Service Lexware online banking Ludwig 3.0 M-DVD.Org 2011 - "Ver. 3.2 Update" MAGIX Foto & Grafik Designer 6 SE MarketResearch Media converter mediAvatar PDF to EPUB Converter MEDUSA4 PERSONAL V5.0.1 Menu Templates - Starter Kit Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft .NET Framework 4 Extended Microsoft .NET Framework 4 Extended DEU Language Pack Microsoft Antimalware Microsoft Antimalware Service DE-DE Language Pack Microsoft Application Error Reporting Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Excel MUI (German) 2007 Microsoft Office File Validation Add-In Microsoft Office Home and Student 2007 Microsoft Office Live Add-in 1.5 Microsoft Office Office 64-bit Components 2007 Microsoft Office OneNote MUI (German) 2007 Microsoft Office PowerPoint MUI (German) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proof (Italian) 2007 Microsoft Office Proofing (German) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Shared 64-bit MUI (German) 2007 Microsoft Office Shared MUI (German) 2007 Microsoft Office Word MUI (German) 2007 Microsoft Primary Interoperability Assemblies 2005 Microsoft Security Client Microsoft Security Client DE-DE Language Pack Microsoft Security Essentials Microsoft Silverlight Microsoft SkyDrive Microsoft SQL Server 2005 Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft SQL Server 2005 Express Edition (ACCUCHEK360) Microsoft SQL Server 2005 Tools Express Edition Microsoft SQL Server 2008 R2-Setup (Deutsch) Microsoft SQL Server 2008 R2 (64-Bit) Microsoft SQL Server 2008 R2 Native Client Microsoft SQL Server 2008 R2 RsFx Driver Microsoft SQL Server Browser Microsoft SQL Server Management Objects Collection Microsoft SQL Server Native Client Microsoft SQL Server Setup Support Files (English) Microsoft SQL Server VSS Writer Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Windows Media Video 9 VCM Microsoft_VC100_CRT_x86 Midibwin Movie Maker Movie Templates - Starter Kit MSVCRT MSVCRT_amd64 MSVCRT110 MSVCRT110_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MSXML 4.0 SP2 Parser and SDK MyKeyFinder MyTube Bigpack HD Free Nero 10 Menu TemplatePack 2 Nero 9 Nero BackItUp Nero BackItUp and Burn Nero Backup Drivers Nero Burning ROM Help Nero BurnRights Nero BurnRights Help Nero ControlCenter Nero CoverDesigner Nero CoverDesigner Help Nero Disc Copy Gadget Nero Disc Copy Gadget Help Nero DiscSpeed Nero DiscSpeed Help Nero DriveSpeed Nero DriveSpeed Help Nero Express Nero Express Help Nero InfoTool Nero InfoTool Help Nero Installer Nero Live Nero Live Help Nero PhotoSnap Nero PhotoSnap Help Nero Recode Nero Recode Help Nero Rescue Agent Nero RescueAgent Nero RescueAgent Help Nero ShowTime Nero StartSmart Nero StartSmart Help Nero Vision Nero Vision Help Nero WaveEditor NeroBurningROM NeroExpress NeroLiveGadget NeroLiveGadget Help neroxml Network64 NewFreeScreensaver nfsHDWaterfall03 Noteur Noteur (C:\Program Files (x86)\Noteur\) NVIDIA Install Application OCR Software by I.R.I.S. 13.0 OpenAL Organ Roll Scanner V2.1 Trial version Photo Common Photo Gallery PhotoScape Pinnacle Instant DVD Recorder Pinnacle Studio 14 Pinnacle Studio Ultimate Plugins Pinnacle Video Treiber Plus-HD-1.6 Plus-HD-2.3 Prism Video File Converter proDAD Heroglyph 2.5 proDAD Vitascene 1.0 Python 2.3.2 Quicken 2011 Quicken 2011 - ServicePack 4 Quicken Import Export Server 2011 QuickShare Realtek High Definition Audio Driver Realtek USB 2.0 Card Reader Red Giant ToonIt Studio RedMon - Redirection Port Monitor Resource Hacker Version 3.6.0 Scan Sceneo AbsolutTV Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576) Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393) Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2478663) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2518870) Security Update for Microsoft .NET Framework 4 Extended (KB2416472) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Security Update for Microsoft .NET Framework 4 Extended (KB2656351) Security Update for Microsoft .NET Framework 4 Extended (KB2736428) Security Update for Microsoft .NET Framework 4 Extended (KB2742595) Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687309) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition Serif PhotoPlus X3 Service Pack 1 für SQL Server 2008 R2 (KB2528583) Service Pack 1 für SQL Server 2008 R2 (KB2528583) (64-bit) Servicepack Datumsaktualisierung Shop for HP Supplies SmartWebPrinting SolutionCenter SoundTrax Speccy SQL Server 2008 R2 Database Engine Services SQL Server 2008 R2 SP1 Common Files SQL Server 2008 R2 SP1 Database Engine Services SQL Server 2008 R2 SP1 Database Engine Shared Sql Server Customer Experience Improvement Program Status Studio 11 Studio 11 Bonus DVD Studio Ultimate SureThing Express Labeler Target 3001! V15 discover Target 3001! V16 discover Toolbox TrayApp TubeBox UnloadSupport Unterstützungsdateien für Microsoft SQL Server 2008-Setup Update für Microsoft Office Excel 2007 Help (KB963678) Update für Microsoft Office Powerpoint 2007 Help (KB963669) Update für Microsoft Office Word 2007 Help (KB963665) Update for 2007 Microsoft Office System (KB967642) Update for Codec Pack Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) Update for Microsoft .NET Framework 4 Extended (KB2468871) Update for Microsoft .NET Framework 4 Extended (KB2533523) Update for Microsoft .NET Framework 4 Extended (KB2600217) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition VHD Attach 1.00 Video Download Capture V4.3.4 Virtual MIDI Piano Keyboard Vivaldi Scan Via Web (German Version) VLC media player 2.0.2 VS2005 Redist WebReg Windows-Treiberpaket - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 Windows Driver Package - Roche (WinUSB) PHDC (07/08/2010 Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Mobile-Gerätecenter Windows Utils WinRAR WinRAR 4.01 (64-Bit) WISO Steuer-Sparbuch 2013 Yahoo! Desktop Login Yahoo! Toolbar YouTube Song Downloader ZoneAlarm Antivirus ZoneAlarm Firewall ZoneAlarm Security . ==== End Of File =========================== |
![]() | #4 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > DDS Logfile fehlt.
__________________ ![]() ![]() Keine Hilfe per PM! |
![]() | #5 |
![]() | ![]() < http://www_getwindowinfo/ > [CODE][/CODEDDS Logfile: DDS Logfile: Code:
ATTFilter DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.16635 Run by Fritz-Otto at 13:12:00 on 2013-07-31 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8063.6086 [GMT 2:00] . AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfsdkS64.exe C:\Windows\system32\hasplms.exe C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe C:\Windows\system32\NOTEPAD.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe C:\Windows\System32\svchost.exe -k HPZ12 C:\Windows\SysWOW64\IoctlSvc.exe C:\Windows\System32\svchost.exe -k HPZ12 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Sceneo\AbsolutTV\Services\PVR\PVRService.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\svchost.exe -k HPService C:\Windows\System32\alg.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\svchost.exe -k WindowsMobile C:\Program Files (x86)\Google\Update\GoogleUpdate.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.com uSearch Bar = hxxp://www.google.com uSearch Page = hxxp://www.google.com uDefault_Page_URL = hxxp://www.google.com uDefault_Search_URL = hxxp://www.google.com mStart Page = hxxp://www.google.com mSearch Bar = hxxp://www.google.com mSearch Page = hxxp://www.google.com mDefault_Page_URL = hxxp://www.google.com mDefault_Search_URL = hxxp://www.google.com uURLSearchHooks: {7e111a5c-3d11-4f56-9463-5310c3c69025} - <orphaned> mWinlogon: Userinit = userinit.exe, BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll BHO: AddLyrics: {4145006D-47F8-42F2-8186-2225AAFECDD3} - LocalServer32 - <no file> BHO: Happy Lyrics: {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} - LocalServer32 - <no file> BHO: Microsoft-Konto-Anmelde-Hilfsprogramm: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - <orphaned> BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll uRun: [SCheck] "C:\Users\Fritz-Otto\AppData\Roaming\SCheck\SCheck.exe" check uRun: [SSync] "C:\Users\Fritz-Otto\AppData\Roaming\SSync\SSync.exe" uRun: [Driver Detective] C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe /applicationMode:systemTray /showWelcome:false uRun: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart uRunOnce: [Uninstall C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\System32\cmd.exe /q /c rmdir /s /q "C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" mRunServicesOnce: [capscanuninstall] "C:\Windows\command.com" /c del "C:\Users\FRITZ-~1\AppData\Local\Temp\uninstal.exe" StartupFolder: C:\Users\FRITZ-~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\net.lnk - C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:221 mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-Explorer: NoResolveTrack = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: Nach Microsoft E&xel exportieren - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {DB28CF23-0083-40B5-BF63-69925D672385} - hxxp://www.nero.com/doc/NeroVersionChecker.cab TCP: Interfaces\{0143F755-7524-442D-B297-83F0FE89631A} : NameServer =,,,,,,,,, TCP: Interfaces\{184C18AA-7252-4C2C-929F-2B0E8F3A865E} : DHCPNameServer = TCP: Interfaces\{338E05E5-B1BE-4A6E-8A8F-DEE60E0EA2A4} : DHCPNameServer = TCP: Interfaces\{5C6B2BD9-165F-4CF9-8FEC-AC2DE8B29D9C} : DHCPNameServer = TCP: Interfaces\{5CAD8E85-04AF-423A-9D1D-BAEBEDB53BE7} : DHCPNameServer = TCP: Interfaces\{D08A20F1-6930-4898-9D1B-F7C69E0108AB} : DHCPNameServer = Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll SSODL: WebCheck - <orphaned> x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s x64-Run: [Ocs_SM] C:\Users\Fritz-Otto\AppData\Roaming\OCS\SM\SearchAnonymizer.exe x64-DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} - hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x64/MuCatalogWebControl.cab?1331649195172 x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned> x64-SSODL: WebCheck - <orphaned> . ============= SERVICES / DRIVERS =============== . R0 NBVol;Nero Backup Volume Filter Driver;C:\Windows\System32\drivers\NBVol.sys [2012-2-17 72240] R0 NBVolUp;Nero Backup Volume Upper Filter Driver;C:\Windows\System32\drivers\NBVolUp.sys [2012-2-17 15920] R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2011-4-18 189440] R2 aksdf;aksdf;C:\Windows\System32\drivers\aksdf.sys [2013-1-6 78208] R2 DfSdkS;Defragmentation-Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfSdkS64.exe [2012-11-17 544768] R2 hasplms;Sentinel Local License Manager;C:\Windows\System32\hasplms.exe -run --> C:\Windows\System32\hasplms.exe -run [?] R2 MSSQL$ACCUCHEK360;SQL Server (ACCUCHEK360);C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408] R3 Apowersoft_AudioDevice;Apowersoft_AudioDevice;C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [2013-3-8 31968] R3 athrusb;Atheros Wireless LAN USB device driver;C:\Windows\System32\drivers\athrxusb.sys [2008-7-29 1075712] R3 debutfilter;Debut Filter Driver v6.10.01;C:\Windows\System32\drivers\debutfilterx64.sys [2013-3-7 32024] R3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\System32\drivers\MpNWMon.sys [2011-4-18 40832] R3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2011-4-27 84864] R3 NisSrv;Microsoft-Netzwerkinspektion;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-4-27 288272] R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver;C:\Windows\System32\drivers\Rtnic64.sys [2013-2-17 52736] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2013-6-30 57840] S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2013-2-5 1512448] S3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\System32\drivers\lvrs64.sys [2012-1-18 351136] S3 LVUVC64;QuickCam Orbit/Sphere AF(UVC);C:\Windows\System32\drivers\lvuvc64.sys [2012-1-18 4865568] S3 OlyCamComm;OLYMPUS USB Communication Device;C:\Windows\System32\drivers\OlyCamComm.sys [2009-9-9 24208] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-1 19456] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-11-1 57856] S4 MSSQLServerADHelper100;SQL Server Hilfsdienst für Active Directory;C:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe [2010-4-3 59744] S4 RsFx0150;RsFx0150 Driver;C:\Windows\System32\drivers\RsFx0150.sys [2010-4-3 313696] S4 RsFx0151;RsFx0151 Driver;C:\Windows\System32\drivers\RsFx0151.sys [2011-6-17 313696] . =============== Created Last 30 ================ . 2013-07-31 10:49:00 76232 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3D90BF16-13E7-44B4-A66C-C82D602BB791}\offreg.dll 2013-07-31 08:26:17 -------- d-----w- C:\FRST 2013-07-30 19:11:01 -------- d-----w- C:\ProgramData\Simply Super Software 2013-07-30 17:39:05 -------- d-----w- C:\Program Files\Enigma Software Group 2013-07-30 17:37:46 -------- d-----w- C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-30 17:37:37 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard 2013-07-30 17:21:25 -------- d-----w- C:\Users\Fritz-Otto\Neuer Ordner (3) 2013-07-30 15:34:06 9460976 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3D90BF16-13E7-44B4-A66C-C82D602BB791}\mpengine.dll 2013-07-29 16:08:40 -------- d-----w- C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data 2013-07-29 16:08:30 -------- d-----w- C:\Users\Fritz-Otto\AppData\Local\Tempcce6fbff27c20e217fc92dbf78a29fdf 2013-07-29 16:08:19 -------- d-----w- C:\Users\Fritz-Otto\ChromeExtensions 2013-07-29 16:08:18 -------- d-----w- C:\Users\Fritz-Otto\AppData\Local\Temp11eac2ff5bfac4e5688eac59725150c4 2013-07-29 15:53:20 14506543 ----a-w- C:\Windows\SysWow64\nfsHDWaterfall03.scr 2013-07-29 15:53:19 -------- d-----w- C:\Program Files (x86)\NewFreeScreensavers 2013-07-17 16:24:35 -------- d-----w- C:\Wagner cov 2013-07-17 11:09:59 -------- d-s---w- C:\Users\Fritz-Otto\Google Drive 2013-07-16 09:55:52 -------- d-----w- C:\Users\Fritz-Otto\AppData\Local\calibre-cache 2013-07-15 07:08:09 -------- d-----w- C:\richard wagner 2013-07-12 05:06:16 571904 ----a-w- C:\Program Files\Windows Defender\MpClient.dll 2013-07-12 05:06:16 54784 ----a-w- C:\Program Files (x86)\Windows Defender\MpOAV.dll 2013-07-12 05:06:16 392704 ----a-w- C:\Program Files (x86)\Windows Defender\MpClient.dll 2013-07-12 05:06:16 314880 ----a-w- C:\Program Files\Windows Defender\MpCommu.dll 2013-07-12 05:06:16 1011712 ----a-w- C:\Program Files\Windows Defender\MpSvc.dll 2013-07-12 05:06:15 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll 2013-07-12 05:06:15 624128 ----a-w- C:\Windows\System32\qedit.dll 2013-07-12 05:06:15 509440 ----a-w- C:\Windows\SysWow64\qedit.dll 2013-07-12 05:06:15 4608 ----a-w- C:\Program Files (x86)\Windows Defender\MsMpLics.dll 2013-07-12 05:06:14 1887744 ----a-w- C:\Windows\System32\WMVDECOD.DLL 2013-07-12 05:06:14 1620480 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL 2013-07-12 05:05:17 3153920 ----a-w- C:\Windows\System32\win32k.sys 2013-07-12 05:05:16 1367040 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll 2013-07-12 05:05:15 936448 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll 2013-07-12 05:05:00 1643520 ----a-w- C:\Windows\System32\DWrite.dll 2013-07-12 05:05:00 1247744 ----a-w- C:\Windows\SysWow64\DWrite.dll 2013-07-11 17:41:33 -------- d-----w- C:\Windows\SysWow64\sda 2013-07-11 17:37:31 422504 ----a-w- C:\Windows\System32\RtsUStor.dll 2013-07-03 09:29:45 -------- d-----w- C:\Hasenbein-Daten . ==================== Find3M ==================== . 2013-06-30 13:03:47 448 ----a-w- C:\Windows\DeleteOnReboot.bat 2013-06-14 08:55:23 0 ----a-w- C:\~GLHTTP1.TMP 2013-06-11 23:43:37 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll 2013-06-11 23:43:00 2877440 ----a-w- C:\Windows\SysWow64\jscript9.dll 2013-06-11 23:42:58 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll 2013-06-11 23:42:58 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll 2013-06-11 23:26:20 2241024 ----a-w- C:\Windows\System32\wininet.dll 2013-06-11 23:25:16 3958784 ----a-w- C:\Windows\System32\jscript9.dll 2013-06-11 23:25:13 67072 ----a-w- C:\Windows\System32\iesetup.dll 2013-06-11 23:25:13 136704 ----a-w- C:\Windows\System32\iesysprep.dll 2013-06-11 22:51:45 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe 2013-06-11 22:50:58 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-07 03:22:18 2706432 ----a-w- C:\Windows\System32\mshtml.tlb 2013-06-07 02:37:52 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2013-05-13 05:51:01 184320 ----a-w- C:\Windows\System32\cryptsvc.dll 2013-05-13 05:51:00 1464320 ----a-w- C:\Windows\System32\crypt32.dll 2013-05-13 05:51:00 139776 ----a-w- C:\Windows\System32\cryptnet.dll 2013-05-13 05:50:40 52224 ----a-w- C:\Windows\System32\certenc.dll 2013-05-13 04:45:55 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll 2013-05-13 04:45:55 1160192 ----a-w- C:\Windows\SysWow64\crypt32.dll 2013-05-13 04:45:55 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll 2013-05-13 03:43:55 1192448 ----a-w- C:\Windows\System32\certutil.exe 2013-05-13 03:08:10 903168 ----a-w- C:\Windows\SysWow64\certutil.exe 2013-05-13 03:08:06 43008 ----a-w- C:\Windows\SysWow64\certenc.dll 2013-05-10 05:49:27 30720 ----a-w- C:\Windows\System32\cryptdlg.dll 2013-05-10 03:20:54 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll 2013-05-08 06:39:01 1910632 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2013-05-02 15:29:56 278800 ------w- C:\Windows\System32\MpSigStub.exe 2012-05-15 08:33:18 1456640 ----a-w- C:\Program Files (x86)\Common Files\Falk Navi-Manager classic.msi . ============= FINISH: 13:12:50,13 =============== --- --- --- ] Code:
ATTFilter . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume3 Install Date: 24.08.2011 15:20:44 System Uptime: 31.07.2013 12:47:51 (1 hours ago) . Motherboard: ASUSTeK Computer INC. | | M2R-FVM Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 3800+ | Socket AM2 | 2000/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 293 GiB total, 74,129 GiB free. D: is FIXED (NTFS) - 342 GiB total, 293,515 GiB free. E: is CDROM () J: is Removable K: is FIXED (NTFS) - 297 GiB total, 296,467 GiB free. L: is Removable M: is Removable N: is Removable . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP432: 11.07.2013 19:37:37 - Installiert Realtek USB 2.0 Card Reader RP433: 11.07.2013 19:40:52 - Gerätetreiber-Paketinstallation: Realtek USB-Controller RP434: 11.07.2013 19:42:36 - Installiert Realtek USB 2.0 Card Reader RP435: 12.07.2013 08:10:14 - Windows Update RP436: 15.07.2013 08:41:04 - Windows Update RP437: 16.07.2013 09:34:00 - Installed calibre RP438: 22.07.2013 09:42:02 - Windows Update RP439: 26.07.2013 19:20:17 - Windows Update RP440: 30.07.2013 17:33:11 - Windows Update RP441: 30.07.2013 19:38:18 - Installed SpyHunter RP442: 31.07.2013 09:20:26 - Installed Malwarebytes Secure Backup RP443: 31.07.2013 09:46:44 - Removed SpyHunter RP444: 31.07.2013 11:01:57 - Removed Java(TM) 6 Update 22 RP445: 31.07.2013 11:03:37 - Removed Java(TM) 6 Update 30 RP446: 31.07.2013 11:15:43 - Removed Epubor DRM Removal RP447: 31.07.2013 11:17:51 - Removed Malwarebytes Secure Backup RP448: 31.07.2013 11:46:23 - Preispilot wird entfernt RP449: 31.07.2013 11:50:03 - Removed Skype™ 5.10 RP450: 31.07.2013 11:51:02 - Removed Soda PDF 5 RP451: 31.07.2013 11:52:23 - Uninstall Steinberg Cubase SX RP452: 31.07.2013 11:56:04 - Steuer-Spar-Erklärung 2011 wurde entfernt. RP453: 31.07.2013 11:59:37 - Entfernt WISO Steuer-Sparbuch 2012 . ==== Installed Programs ====================== . Update for Microsoft Office 2007 (KB2508958) "Nero SoundTrax Help 64 Bit HP CIO Components Installer ABBYY FineReader 6.0 Sprint ACCU-CHEK 360° Adobe AIR Adobe Digital Editions 2.0 Adobe Download Assistant Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin Adobe Photoshop 7.0 Adobe Reader X (10.1.7) - Deutsch Advertising Center AIO_CDB_Software AIO_Scan AmazingMIDI Amazon Kindle Ashampoo ClipFinder HD v.2.2.9 Ashampoo WinOptimizer 2012 v.8.1.4 Audacity 2.0.3 Belkin Desktop PCI Card Driver Borland Data Engine BufferChm C-Media PCI Audio Device Cakewalk Pro Audio 8.0 Demo calibre Canon Easy-PhotoPrint EX Canon Easy-WebPrint EX Canon Inkjet Printer Driver Add-On Module V2.00 Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon iP4800 series Benutzerregistrierung Canon iP4800 series Printer Driver Canon My Printer Canon Solution Menu EX CCFinder CD-LabelPrint CDBurnerXP CDBurnerXP Packages CheckDrive Copy D3DX10 DDBAC Debut Video Capture Software Destinations DeviceDiscovery Digitale Bibliothek 4 DocProc DolbyFiles Driver Detective DVD-Cover v. DVD Shrink 3.2 deutsch (DeCSS-frei) ELECTRA 2.8 EPSON Scan Falk Navi-Manager classic Fax Fotogalerie Free Screen Video Recorder version Free Video Converter V 3.1 GIMP 2.6.8 Google Chrome Google Drive Google Update Helper GPBaseService2 GPL Ghostscript Greenshot HP Customer Participation Program 13.0 HP Imaging Device Functions 13.0 HP Photosmart Essential 3.5 HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B HP Smart Web Printing 4.51 HP Solution Center 13.0 HP Update HPDiagnosticAlert HPPhotoGadget HPPhotoSmartDiscLabelContent1 HPPhotosmartEssential HPProductAssistant HPSSupply ImagXpress intelliScore Ensemble MP3 to MIDI Converter Demo Junk Mail filter update Lernout & Hauspie TruVoice for Microsoft Agent Lexware Info Service Lexware online banking Ludwig 3.0 M-DVD.Org 2011 - "Ver. 3.2 Update" MAGIX Foto & Grafik Designer 6 SE MarketResearch Media converter mediAvatar PDF to EPUB Converter MEDUSA4 PERSONAL V5.0.1 Menu Templates - Starter Kit Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft .NET Framework 4 Extended Microsoft .NET Framework 4 Extended DEU Language Pack Microsoft Antimalware Microsoft Antimalware Service DE-DE Language Pack Microsoft Application Error Reporting Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Excel MUI (German) 2007 Microsoft Office File Validation Add-In Microsoft Office Home and Student 2007 Microsoft Office Live Add-in 1.5 Microsoft Office Office 64-bit Components 2007 Microsoft Office OneNote MUI (German) 2007 Microsoft Office PowerPoint MUI (German) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proof (Italian) 2007 Microsoft Office Proofing (German) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Shared 64-bit MUI (German) 2007 Microsoft Office Shared MUI (German) 2007 Microsoft Office Word MUI (German) 2007 Microsoft Primary Interoperability Assemblies 2005 Microsoft Security Client Microsoft Security Client DE-DE Language Pack Microsoft Security Essentials Microsoft Silverlight Microsoft SkyDrive Microsoft SQL Server 2005 Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft SQL Server 2005 Express Edition (ACCUCHEK360) Microsoft SQL Server 2005 Tools Express Edition Microsoft SQL Server 2008 R2-Setup (Deutsch) Microsoft SQL Server 2008 R2 (64-Bit) Microsoft SQL Server 2008 R2 Native Client Microsoft SQL Server 2008 R2 RsFx Driver Microsoft SQL Server Browser Microsoft SQL Server Management Objects Collection Microsoft SQL Server Native Client Microsoft SQL Server Setup Support Files (English) Microsoft SQL Server VSS Writer Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Windows Media Video 9 VCM Microsoft_VC100_CRT_x86 Midibwin Movie Maker Movie Templates - Starter Kit MSVCRT MSVCRT_amd64 MSVCRT110 MSVCRT110_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MSXML 4.0 SP2 Parser and SDK MyKeyFinder MyTube Bigpack HD Free Nero 10 Menu TemplatePack 2 Nero 9 Nero BackItUp Nero BackItUp and Burn Nero Backup Drivers Nero Burning ROM Help Nero BurnRights Nero BurnRights Help Nero ControlCenter Nero CoverDesigner Nero CoverDesigner Help Nero Disc Copy Gadget Nero Disc Copy Gadget Help Nero DiscSpeed Nero DiscSpeed Help Nero DriveSpeed Nero DriveSpeed Help Nero Express Nero Express Help Nero InfoTool Nero InfoTool Help Nero Installer Nero Live Nero Live Help Nero PhotoSnap Nero PhotoSnap Help Nero Recode Nero Recode Help Nero Rescue Agent Nero RescueAgent Nero RescueAgent Help Nero ShowTime Nero StartSmart Nero StartSmart Help Nero Vision Nero Vision Help Nero WaveEditor NeroBurningROM NeroExpress NeroLiveGadget NeroLiveGadget Help neroxml Network64 NewFreeScreensaver nfsHDWaterfall03 Noteur Noteur (C:\Program Files (x86)\Noteur\) NVIDIA Install Application OCR Software by I.R.I.S. 13.0 OpenAL Organ Roll Scanner V2.1 Trial version Photo Common Photo Gallery PhotoScape Pinnacle Instant DVD Recorder Pinnacle Studio 14 Pinnacle Studio Ultimate Plugins Pinnacle Video Treiber Plus-HD-1.6 Plus-HD-2.3 Prism Video File Converter proDAD Heroglyph 2.5 proDAD Vitascene 1.0 Python 2.3.2 Quicken 2011 Quicken 2011 - ServicePack 4 Quicken Import Export Server 2011 QuickShare Realtek High Definition Audio Driver Realtek USB 2.0 Card Reader Red Giant ToonIt Studio RedMon - Redirection Port Monitor Resource Hacker Version 3.6.0 Scan Sceneo AbsolutTV Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576) Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393) Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2478663) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2518870) Security Update for Microsoft .NET Framework 4 Extended (KB2416472) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Security Update for Microsoft .NET Framework 4 Extended (KB2656351) Security Update for Microsoft .NET Framework 4 Extended (KB2736428) Security Update for Microsoft .NET Framework 4 Extended (KB2742595) Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687309) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition Serif PhotoPlus X3 Service Pack 1 für SQL Server 2008 R2 (KB2528583) Service Pack 1 für SQL Server 2008 R2 (KB2528583) (64-bit) Servicepack Datumsaktualisierung Shop for HP Supplies SmartWebPrinting SolutionCenter SoundTrax Speccy SQL Server 2008 R2 Database Engine Services SQL Server 2008 R2 SP1 Common Files SQL Server 2008 R2 SP1 Database Engine Services SQL Server 2008 R2 SP1 Database Engine Shared Sql Server Customer Experience Improvement Program Status Studio 11 Studio 11 Bonus DVD Studio Ultimate SureThing Express Labeler Target 3001! V15 discover Target 3001! V16 discover Toolbox TrayApp TubeBox UnloadSupport Unterstützungsdateien für Microsoft SQL Server 2008-Setup Update für Microsoft Office Excel 2007 Help (KB963678) Update für Microsoft Office Powerpoint 2007 Help (KB963669) Update für Microsoft Office Word 2007 Help (KB963665) Update for 2007 Microsoft Office System (KB967642) Update for Codec Pack Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) Update for Microsoft .NET Framework 4 Extended (KB2468871) Update for Microsoft .NET Framework 4 Extended (KB2533523) Update for Microsoft .NET Framework 4 Extended (KB2600217) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition VHD Attach 1.00 Video Download Capture V4.3.4 Virtual MIDI Piano Keyboard Vivaldi Scan Via Web (German Version) VLC media player 2.0.2 VS2005 Redist WebReg Windows-Treiberpaket - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 Windows Driver Package - Roche (WinUSB) PHDC (07/08/2010 Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Photo Common Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Mobile-Gerätecenter Windows Utils WinRAR WinRAR 4.01 (64-Bit) WISO Steuer-Sparbuch 2013 Yahoo! Desktop Login Yahoo! Toolbar YouTube Song Downloader ZoneAlarm Antivirus ZoneAlarm Firewall ZoneAlarm Security . ==== End Of File =========================== |
![]() | #6 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > Gut! ![]() Soweit ich das sehe haben wir damit alles Schädliche entfernt. Um sicher sein zu können müssen jetzt noch ein paar Kontrollen machen und werden dann deinen Computer noch auf einen sicheren Stand bringen. Da diese Scans jetzt sehr lange dauern können bitte ich dich mir erst wieder zu schreiben, wenn du auch wirklich alles erledigt hast oder Probleme auftreten sollten. Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Quick-Scan mit Malwarebytes Downloade Dir bitte Schritt 2: Hinweis: Der Scan kann sehr lange (einige Stunden) dauern! ![]() Schritt 3: Scan mit SecurityCheck Downloade Dir bitte ![]()
__________________ --> < http://www_getwindowinfo/ > |
![]() | #7 |
![]() | ![]() < http://www_getwindowinfo/ > [CODEESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe= # OnlineScanner.ocx= # api_version=3.0.2 # EOSSerial=fee73e079780794d9e4b351685c70268 # engine=14599 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-07-31 07:34:33 # local_time=2013-07-31 09:34:33 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5892 16777213 100 100 23800149 72173743 0 0 # scanned=339295 # found=6 # cleaned=0 # scan_time=23750 sh=BFCBF39930049EC020AE2EE19B0507F07C0E61CE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\ProgramData\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx" sh=BFCBF39930049EC020AE2EE19B0507F07C0E61CE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\Users\All Users\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx" sh=6AD7DE9525E694DA9102972CE4BD96A1346E5473 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl\4_0\50ac8a7f396fa1353484927.js" sh=FDD099C165291E62CA6887609B29CEEB09F209A4 ft=1 fh=56847ca392342307 vn="a variant of Win32/Adware.iBryte.H application" ac=I fn="C:\Users\Fritz-Otto\Downloads\Setup (10).exe" sh=6F3A8C8102C5EABA4EA4F20835D3D0308419FC21 ft=1 fh=5cbbd73b37296a0b vn="multiple threats" ac=I fn="C:\Users\Fritz-Otto\Downloads\setup (5).exe" sh=4BEFC23023DF65BC24C1529AE3715744B711BB23 ft=1 fh=1e931b61d4fb5478 vn="a variant of Win32/Adware.iBryte.G application" ac=I fn="C:\Users\Fritz-Otto\Downloads\Setup (9).exe" ][/CODE] [CODEESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe= # OnlineScanner.ocx= # api_version=3.0.2 # EOSSerial=fee73e079780794d9e4b351685c70268 # engine=14599 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-07-31 07:34:33 # local_time=2013-07-31 09:34:33 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5892 16777213 100 100 23800149 72173743 0 0 # scanned=339295 # found=6 # cleaned=0 # scan_time=23750 sh=BFCBF39930049EC020AE2EE19B0507F07C0E61CE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\ProgramData\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx" sh=BFCBF39930049EC020AE2EE19B0507F07C0E61CE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\Users\All Users\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx" sh=6AD7DE9525E694DA9102972CE4BD96A1346E5473 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl\4_0\50ac8a7f396fa1353484927.js" sh=FDD099C165291E62CA6887609B29CEEB09F209A4 ft=1 fh=56847ca392342307 vn="a variant of Win32/Adware.iBryte.H application" ac=I fn="C:\Users\Fritz-Otto\Downloads\Setup (10).exe" sh=6F3A8C8102C5EABA4EA4F20835D3D0308419FC21 ft=1 fh=5cbbd73b37296a0b vn="multiple threats" ac=I fn="C:\Users\Fritz-Otto\Downloads\setup (5).exe" sh=4BEFC23023DF65BC24C1529AE3715744B711BB23 ft=1 fh=1e931b61d4fb5478 vn="a variant of Win32/Adware.iBryte.G application" ac=I fn="C:\Users\Fritz-Otto\Downloads\Setup (9).exe" ][/CODE] [CODE Results of screen317's Security Check version 0.99.71 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version Adobe Reader 10.1.7 Adobe Reader out of Date! Google Chrome 27.0.1453.110 Google Chrome 27.0.1453.94 ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe Microsoft Security Client Antimalware MsMpEng.exe Microsoft Security Client Antimalware NisSrv.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` ][/CODE] |
![]() | #8 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > Du kannst Eset nochmal laufen lassen und die Funde entfernen. Prima! ![]() Damit wären wir fertig. Wir räumen jetzt noch ein wenig auf und dann habe ich am Ende etwas Lesestoff für dich. Schritt 1: Tools deinstallieren Die Reihenfolge ist hier entscheidend.
Schritt 2: Falls du mich jetzt fragen willst, was mit den noch gefundenen Bedrohungen von Eset ist ... lies bitte jetzt nochmal meinen Hinweis zu delfix einige wenige Zeilen weiter oben.Schritt 3: ESET deinstallieren (Optional)
Abschließend noch Tipps zu folgenden Themen:
![]() Systemupdates Man kann es gar nicht oft genug erwähnen, wie wichtig es ist, sein System aktuell zu halten. Dein Auto bringst du ja auch regelmässig zur Inspektion in die Werkstatt. Stelle also bitte sicher, dass die Systemupdates aktiviert sind:
![]() Softwareupdates Ebenso wichtig wie die Systemprogramme ist auch die Software, die du täglich nutzt. Die folgende Liste gibt dir einen kleinen Überblick mit Links zu den Updates, welche Programme dringend aktuell gehalten werden müssen (falls du sie überhaupt installiert hast und nutzt), weil durch deren Sicherheitslücken oft Malware auf die Computer gelangen kann:
![]() Sicherheitssoftware Würde dich jemand nackt auf dem Motorrad auf der Autobahn überholen würdest du auch den Kopf schütteln. Dein Computer braucht auch einen Schutz vor den täglichen kleinen Angriffen durch Schädlinge. Neben hervorragenden kommerziellen Anti-Viren-Lösungen gibt es auch durchaus gute Schutzprogramme, die kostenfrei mit reduziertem Funktionsumfang erhältlich sind. Aber vorsicht, hier gilt nicht "je mehr desto besser". Was du brauchst ist genau einen Virenscanner mit Hintergrundwächter. Nicht mehr und nicht weniger. Es gibt hier viele Produkte auf dem Markt, die einem gute Dienste leisten. Ich persönlich empfehle dir Avast Free Antivirus. Es bietet relativ guten Schutz, bei wenig nerviger Werbung und installiert dir ein Browserplugin, das dich vor gefährlichen Webseiten warnt.
![]() ![]() Sicheres Surfen Zunächst muss man sagen, dass es üblicherweise immer der menschliche Faktor ist, der es Malware ermöglicht auf einen Computer zu gelangen. Kaufst du Leuten, die an deiner Haustür klingeln, auch sofort ohne nachzudenken irgendwelches Zeug ab? Gewöhne dir daher zunächst einige Verhaltensregeln beim Surfen im Internet an:
Aber selbst bei der peinlichen Einhaltung dieser Regeln kann es dennoch zu einer sogenannten Drive-By-Infektion kommen, bei der ein Schädling aus dem Schutzmechanismus des Webbrowsers ausbricht. Um die Sicherheit noch weiter zu erhöhen gibt es spezielle Schutzsoftware, die deinen Browser noch weiter absichert.
Zuletzt denke bitte über die Benutzung eines alternativen Browsers nach. Programme, die nicht so oft verwendet werden, sind auch nicht so sehr im Focus der "bösen Jungs". D.h. du bist mit einem exotischen Browser eher auf der sicheren Seite. Grundsätzlich bist du erst einmal deutlich sicherer, wenn du nicht den Internet Explorer benutzt.
Damit wünsche ich dir noch viel Spaß beim Surfen im Internet ![]() ... und vielleicht möchtest du ja das Trojaner-Board unterstützen? Eine Bitte: Gib mir eine kurze Rückmeldung, wenn alles erledigt ist und keine Fragen mehr vorhanden sind, damit ich diesen Thread aus meinen Abos löschen kann.
__________________ ![]() ![]() Keine Hilfe per PM! |
![]() | #9 |
![]() | ![]() < http://www_getwindowinfo/ > Leider ist das Problem nicht gelöst. Nach wie vor erscheint der IE mit < hxxp://www_getwindowinfo/ > und "Die Seite kann nicht angezeigt werden" |
![]() | #10 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > Gut, dass du das erst jetzt sagst, ein wenig Rückmeldung zwischendurch hätte durchaus geholfen. Systemscan mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32bit oder FRST 64bit (Wenn du nicht sicher bist: Start > Computer (Rechtsklick) > Eigenschaften)
Scan mit SystemLook
__________________ ![]() ![]() Keine Hilfe per PM! |
![]() | #11 |
![]() | ![]() < http://www_getwindowinfo/ > [COD FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Fritz-Otto (administrator) on 01-08-2013 09:41:29 Running from C:\Users\Fritz-Otto\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (mst software GmbH, Germany) C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfsdkS64.exe (SafeNet Inc.) C:\Windows\system32\hasplms.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (PC Drivers Headquarters) C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Windows Net) C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Prolific Technology Inc.) C:\Windows\SysWOW64\IoctlSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE (Buhl Data Service GmbH) C:\Program Files (x86)\Sceneo\AbsolutTV\Services\PVR\PVRService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2013-02-17] (Realtek Semiconductor) HKLM\...\Run: [Ocs_SM] - C:\Users\Fritz-Otto\AppData\Roaming\OCS\SM\SearchAnonymizer.exe [x] HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [SCheck] - C:\Users\Fritz-Otto\AppData\Roaming\SCheck\SCheck.exe [36864 2013-04-10] () HKCU\...\Run: [SSync] - C:\Users\Fritz-Otto\AppData\Roaming\SSync\SSync.exe [36864 2013-04-10] () HKCU\...\Run: [Driver Detective] - C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe [3980696 2013-07-25] (PC Drivers Headquarters) HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [19676256 2013-06-06] (Google) HKCU\...\RunOnce: [Uninstall C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" [345088 2010-11-20] (Microsoft Corporation) AppInit_DLLs: C:\PROGRA~2\Windows iLivid C:\PROGRA~2\Windows iLivid C:\PROGRA~2\SearchCore for for C:\PROGRA~2\SearchCore for for [97280 2009-07-14] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Users\Fritz-Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk ShortcutTarget: net.lnk -> C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe (Windows Net) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Google HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = GIGA ANDROID | Android News, Tests und Anleitungen | androidnews.de URLSearchHook: (No Name) - {7e111a5c-3d11-4f56-9463-5310c3c69025} - No File StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E62696E672E636F6D2F7365617263683F713D7B7365617263685465726D737D267372633D49452D536561726368426F7826464F524D3D494531305352&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {30953AF2-3ACF-4C4A-95A4-4EE4FBA2E472} URL = hxxp://searchya.com.anonymize-me.de/?anonymto=687474703A2F2F73656172636879612E636F6D2F3F63686E6C3D66742D31303026733D312663723D313832343336323131352663643D32587A757441744E3259314C31517A7574447444744330417A7974427945304330427A7A7A7A794579437442304430433041744E304430547A757442744474437442744474427443794426713D7B7365617263685465726D737D&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {3FFFD058-3827-4FE3-80BD-50C1A08F5626} URL = hxxp://search.conduit.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E636F6E647569742E636F6D2F526573756C74734578742E617370783F713D7B7365617263685465726D737D26536561726368536F757263653D3426637469643D435433323831333438264355493D554E3237323437333739393837333632323033&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {48D70149-4F37-4B73-BA94-FDBFA13D2A8F} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {5C66694B-FCF2-4C38-B6A4-45D122D3CF5C} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E676F6F676C652E636F6D2F7365617263683F713D7B7365617263685465726D737D26726C733D636F6D2E6D6963726F736F66743A7B6C616E67756167657D3A7B72656665727265723A736F757263653F7D2669653D7B696E707574456E636F64696E677D266F653D7B6F7574707574456E636F64696E677D26736F7572636569643D69653726726C7A3D314937505246425F6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {7958E9E4-D76A-42B5-9396-6F48D8CEA6ED} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {C245A1C0-5FA5-45DC-B036-2452CA8691ED} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F1A310F4-0E68-4A88-8E0F-4BD13617EFE5} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F6675C1B-8082-41E1-B133-5E14A6254326} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F781FEE5-A41A-40B9-8A0F-4CA1A6CEF611} URL = hxxp://search.zonealarm.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E7A6F6E65616C61726D2E636F6D2F7365617263683F7372633D737026746269643D6261736532303133264C616E3D646526713D7B7365617263685465726D737D2667753D34386332643133653238663734663139623633663862396563373634626162392674753D31304758303030384731423030303826736B753D267473747349643D267665723D2626723D323635&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: AddLyrics - {4145006D-47F8-42F2-8186-2225AAFECDD3} - No File BHO-x32: Happy Lyrics - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} - No File BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File BHO-x32: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File DPF: HKLM {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x64/MuCatalogWebControl.cab?1331649195172 DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: HKLM-x32 {DB28CF23-0083-40B5-BF63-69925D672385} hxxp://www.nero.com/doc/NeroVersionChecker.cab Tcpip\..\Interfaces\{0143F755-7524-442D-B297-83F0FE89631A}: [NameServer],,,,,,,,, Chrome: ======= CHR HomePage: chrome://newtab CHR RestoreOnStartup: "hxxp://www.giga.de/my_homepage/0022/" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\PepperFlash\11.7.700.225\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\27.0.1453.110\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Users\Fritz-Otto\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () CHR Extension: (Google Drive) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (wxDownload) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl\4_0 CHR Extension: () - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR Extension: (OfferMosquito) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk\0.5_0 CHR Extension: (Amazon-Icon) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg\1.0_0 CHR HKLM-x32\...\Chrome\Extension: [ealchnonpofjocgofjpopjdoegbbkofj] - C:\Program Files (x86)\HappyLyrics\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [ffonkgocfjhkkdcaaamakaiannpoodgl] - C:\ProgramData\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Fritz-Otto\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx ==================== Services (Whitelisted) ================= R2 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) R2 hasplms; C:\Windows\system32\hasplms.exe [4941768 2012-06-28] (SafeNet Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2011-04-27] (Microsoft Corporation) R2 MSSQL$ACCUCHEK360; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62111072 2011-06-17] (Microsoft Corporation) R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [61913952 2010-04-03] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [288272 2011-04-27] (Microsoft Corporation) S2 PCLEPCI; C:\Windows\SysWOW64\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) R2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [87344 2009-09-01] (Prolific Technology Inc.) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431456 2011-06-17] (Microsoft Corporation) S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [428384 2010-04-03] (Microsoft Corporation) R2 srvcPVR; C:\Program Files (x86)\Sceneo\AbsolutTV\Services\PVR\PVRService.exe [1681408 2007-08-17] (Buhl Data Service GmbH) ==================== Drivers (Whitelisted) ==================== R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare) R3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [1075712 2008-07-29] (Atheros Communications, Inc.) R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [1155072 2012-02-18] (C-Media Inc) R3 debutfilter; C:\Windows\System32\DRIVERS\debutfilterx64.sys [32024 2013-03-07] () R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [321536 2011-09-28] (SafeNet Inc.) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [611160 2012-11-15] (Kaspersky Lab) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [189440 2011-04-18] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [84864 2011-04-27] (Microsoft Corporation) R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [52736 2009-09-28] (Realtek Semiconductor Corporation ) S1 Aspi32; No ImagePath S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] U0 KL1; S4 NVHDA; system32\drivers\nvhda64v.sys [x] S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [x] S3 RSUSBSTOR; System32\Drivers\RtsUStor.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-01 09:40 - 2013-08-01 09:40 - 00000000 ____D C:\FRST 2013-08-01 09:39 - 2013-08-01 09:40 - 01781589 _____ (Farbar) C:\Users\Fritz-Otto\Downloads\FRST64.exe 2013-08-01 08:21 - 2013-08-01 08:22 - 00001752 _____ C:\Users\Fritz-Otto\Desktop\OnlineScannerApp.exe.lnk 2013-08-01 07:52 - 2013-08-01 07:55 - 00004050 _____ C:\DelFix.txt 2013-08-01 07:52 - 2013-08-01 07:52 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:55 - 2013-07-31 14:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 14:29 - 2013-07-31 14:29 - 00001127 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 14:28 - 2013-07-31 14:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 14:28 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-31 14:26 - 2013-07-31 14:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (2).exe 2013-07-31 13:13 - 2013-07-31 13:13 - 00014547 _____ C:\Users\Fritz-Otto\Desktop\attach.txt 2013-07-31 12:48 - 2013-08-01 08:19 - 00000224 _____ C:\Windows\setupact.log 2013-07-31 12:48 - 2013-07-31 12:48 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 11:55 - 2013-07-31 11:55 - 00001577 _____ C:\Windows\ScriptMakerUninstall.MIF 2013-07-31 09:19 - 2013-07-31 09:19 - 14713592 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbsb-setup- 2013-07-31 08:06 - 2013-07-31 08:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (1).exe 2013-07-30 21:11 - 2013-07-30 21:11 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-30 21:09 - 2013-07-30 21:10 - 23334896 _____ (Simply Super Software ) C:\Users\Fritz-Otto\Downloads\trjsetup_688.exe 2013-07-30 19:39 - 2013-07-30 19:39 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-30 19:37 - 2013-07-31 09:47 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-30 19:34 - 2013-07-30 19:34 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Fritz-Otto\Downloads\SpyHunter-Installer.exe 2013-07-30 19:21 - 2013-07-30 19:22 - 00000000 ____D C:\Users\Fritz-Otto\Neuer Ordner (3) 2013-07-30 19:19 - 2013-07-30 19:20 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW (1).exe 2013-07-30 19:12 - 2013-07-30 19:13 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW.exe 2013-07-30 18:44 - 2013-07-30 18:44 - 00001205 _____ C:\Users\Fritz-Otto\Downloads\FixNCR.reg 2013-07-30 18:25 - 2013-07-30 18:25 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\backups 2013-07-30 09:12 - 2013-07-30 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- 2013-07-30 08:56 - 2013-07-30 08:56 - 00717160 _____ C:\Users\Fritz-Otto\Downloads\ZipOpenerSetup.exe 2013-07-29 18:08 - 2013-07-30 08:47 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data 2013-07-29 18:08 - 2013-07-29 18:08 - 00000190 _____ C:\Users\Fritz-Otto\Desktop\Amazon.de.url 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\ChromeExtensions 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Tempcce6fbff27c20e217fc92dbf78a29fdf 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Temp11eac2ff5bfac4e5688eac59725150c4 2013-07-29 18:07 - 2013-07-29 18:07 - 00577280 _____ C:\Users\Fritz-Otto\Downloads\Fantastic-3D-Fish-Aquarium-Bildschirmschoner-Setup.exe 2013-07-29 17:53 - 2013-07-29 17:53 - 00000000 ____D C:\Program Files (x86)\NewFreeScreensavers 2013-07-29 17:53 - 2009-12-13 17:55 - 14506543 _____ (nufsoft.com) C:\Windows\SysWOW64\nfsHDWaterfall03.scr 2013-07-29 17:52 - 2013-07-29 17:52 - 10224784 _____ ( ) C:\Users\Fritz-Otto\Downloads\nfsHDWaterfall03.exe 2013-07-25 17:15 - 2013-07-25 17:15 - 00004890 _____ C:\Users\Fritz-Otto\.recently-used.xbel 2013-07-17 18:24 - 2013-07-17 18:26 - 00000000 ____D C:\Wagner cov 2013-07-17 18:17 - 2013-07-17 12:59 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus meinem Leben by Paul von Hindenburg.epub.cov 2013-07-17 18:17 - 2013-07-17 12:58 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Arme Leute by Fyodor Dostoyevsky.epub.cov 2013-07-17 18:17 - 2013-07-17 12:55 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Rembrandt by Hermann Knackfuss.epub.cov 2013-07-17 18:17 - 2013-07-17 12:53 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebensbeschreibung des k. k. Kapellmeisters Wolfgang Amadeus Mozart by Niemetschek.epub.cov 2013-07-17 18:17 - 2013-07-17 12:50 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Cosima Wagner_ Die Tagebucher - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-17 11:02 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Das Braune Buch. Tagebuc - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-17 10:10 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Mein Leben - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-13 08:12 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Claus Stortebecker - Engel, Georg.epub.cov 2013-07-17 18:17 - 2013-07-04 09:44 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die_Familie_Stiller_1.epub.cov 2013-07-17 18:17 - 2013-07-04 09:43 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus_alter_Zeit.epub.cov 2013-07-17 18:17 - 2013-07-04 09:42 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Wie_erstelle_ich_ein_perfektes_eBook_.epub.cov 2013-07-17 18:17 - 2013-07-04 09:37 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Dieser_Stress_bringt_mich_noch_um.epub.cov 2013-07-17 18:17 - 2013-07-04 09:36 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Walter_Ulbricht.epub.cov 2013-07-17 18:17 - 2013-06-18 06:44 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Bruder Karamasow (German Edition) - Dostojewski, Fjodor.epub.cov 2013-07-17 18:17 - 2013-06-08 10:38 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Glauser, Friedrich - Der Tee der drei alten Damen.epub.cov 2013-07-17 18:17 - 2013-06-07 20:30 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Ahnen - Freytag, Gustav.epub.cov 2013-07-17 18:17 - 2013-05-31 13:22 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Mai_Benedikt-XVI..epub.cov 2013-07-17 18:17 - 2013-05-31 13:21 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Mein Leben.epub.cov 2013-07-17 18:17 - 2013-05-31 10:52 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Es wird Dich rufen.epub.cov 2013-07-17 18:17 - 2013-05-28 13:40 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Münze im Becher.epub.cov 2013-07-17 18:17 - 2013-05-28 13:40 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Hebamme von Sylt.epub.cov 2013-07-17 18:17 - 2013-05-21 12:21 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.DDR - Buch der Erinnerung (German Editio - Tschukinskiwicz, F.F_.epub.cov 2013-07-17 18:17 - 2013-05-20 17:02 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebenslanglich - Freiheit verloren. Rech - Helmut Pfeiffer.epub.cov 2013-07-17 18:17 - 2013-05-20 13:51 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Zu dramatischen Ereignissen - Erich Honecker.epub.cov 2013-07-17 18:17 - 2013-05-20 13:01 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Der Mann am Strand.pdf - Administrator.epub.cov 2013-07-17 18:17 - 2013-05-14 16:43 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu – Wikipedia.pdf.cov 2013-07-17 18:17 - 2013-05-14 15:55 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu.pdf.cov 2013-07-17 18:17 - 2013-05-14 15:54 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu.epub.cov 2013-07-17 18:17 - 2013-05-14 15:51 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Inka.pdf.cov 2013-07-17 18:17 - 2013-05-14 14:22 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Inka.epub.cov 2013-07-17 18:17 - 2013-04-27 15:03 - 00056992 ____H C:\Users\Fritz-Otto\Documents\.Wolfgang Benz - Geschichte des dritten Reiches(1).pdf.cov 2013-07-17 18:17 - 2013-04-26 21:50 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Der schweizerische Robinson - Wyss, Johann.epub.cov 2013-07-17 18:17 - 2013-02-25 21:53 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die neuen Leiden des jungen W.PDF - Berta Butz.epub.cov 2013-07-17 18:17 - 2013-02-25 17:36 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Balduin, Mollhausen - Reisen in die Felsengebirge Nordamerikas.epub.cov 2013-07-17 18:17 - 2012-12-26 11:15 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Zwei an einem Tag _ eBook (German Editio - Nicholls, David.epub.cov 2013-07-17 18:17 - 2012-12-22 13:56 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.ZEIT FUR DIE STERNE - Alan Lightman.epub.cov 2013-07-17 18:17 - 2012-12-06 18:57 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Ostpreu en - Kossert Andreas.epub.cov 2013-07-17 18:17 - 2012-11-07 18:38 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Madame Bovary_ Vollstandige Ausgabe (Ger - Flaubert, Gustave.epub.cov 2013-07-17 18:17 - 2012-11-07 18:24 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Freytag, Gustav - Die Ahnen.epub.cov 2013-07-17 13:41 - 2013-07-17 13:42 - 06724744 _____ C:\Users\Fritz-Otto\Downloads\pg35030-images.epub 2013-07-17 13:10 - 2013-07-17 13:10 - 00001723 _____ C:\Users\Fritz-Otto\Desktop\Google Drive.lnk 2013-07-17 13:09 - 2013-08-01 08:20 - 00000000 ___SD C:\Users\Fritz-Otto\Google Drive 2013-07-17 12:52 - 2013-07-17 12:52 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job 2013-07-17 12:51 - 2013-07-17 12:51 - 00000000 ____D C:\Users\Fritz-Otto\AppData\LocalGoogle 2013-07-17 12:49 - 2013-07-17 12:49 - 00781760 _____ (Google Inc.) C:\Users\Fritz-Otto\Downloads\googledrivesync.exe 2013-07-17 11:59 - 2013-07-17 11:59 - 00295992 _____ C:\Users\Fritz-Otto\Downloads\pg13272i.epub 2013-07-17 11:44 - 2013-07-17 11:44 - 00672608 _____ () C:\Users\Fritz-Otto\Downloads\BestCodecsPackSetup.exe 2013-07-17 11:37 - 2013-07-17 11:37 - 00445297 _____ C:\Users\Fritz-Otto\Downloads\LisztGesammelteSchriftenB4.epub 2013-07-17 10:08 - 2013-07-17 10:08 - 01102964 _____ C:\Users\Fritz-Otto\Documents\Wagner Werke.tif 2013-07-16 11:55 - 2013-07-16 11:56 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\calibre-cache 2013-07-16 09:35 - 2013-07-16 09:35 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2013-07-16 09:31 - 2013-07-16 09:33 - 52108800 _____ C:\Users\Fritz-Otto\Downloads\calibre-0.9.39.msi 2013-07-16 09:24 - 2013-07-16 09:25 - 15422099 _____ C:\Users\Fritz-Otto\Downloads\Werke und Schriften.zip 2013-07-16 09:20 - 2013-07-16 09:20 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner 2013-07-16 09:16 - 2013-07-16 09:17 - 12778281 _____ C:\Users\Fritz-Otto\Downloads\Tagebücher Richard und Cosima Wagner.zip 2013-07-16 09:14 - 2013-07-16 09:19 - 105207752 _____ C:\Users\Fritz-Otto\Downloads\Briefe.zip 2013-07-16 09:04 - 2013-07-16 09:17 - 358729272 _____ C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner.zip 2013-07-16 08:48 - 2013-07-16 08:48 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Noten 2013-07-16 08:06 - 2013-07-16 08:39 - 646843375 _____ C:\Users\Fritz-Otto\Downloads\Noten.zip 2013-07-16 08:06 - 2013-07-16 08:38 - 455449777 _____ C:\Users\Fritz-Otto\Downloads\Bücher.zip 2013-07-15 10:41 - 2013-07-15 10:46 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10 (1).rar 2013-07-15 10:14 - 2013-07-15 10:14 - 01113024 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 09681672 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 07774800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 06620856 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 05024976 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18 (1).rar 2013-07-15 10:04 - 2013-07-15 10:05 - 09682967 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13 (1).rar 2013-07-15 10:04 - 2013-07-15 10:05 - 02700720 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14 (1).rar 2013-07-15 10:03 - 2013-07-15 10:08 - 22366872 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (2).rar 2013-07-15 10:03 - 2013-07-15 10:07 - 18004800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12 (1).rar 2013-07-15 10:03 - 2013-07-15 10:05 - 19042447 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09 (1).rar 2013-07-15 09:28 - 2013-07-15 09:35 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06 (1).rar 2013-07-15 09:28 - 2013-07-15 09:32 - 41943000 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08 (1).rar 2013-07-15 09:28 - 2013-07-15 09:32 - 35764080 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07 (1).rar 2013-07-15 09:28 - 2013-07-15 09:29 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05 (1).rar 2013-07-15 09:27 - 2013-07-15 09:29 - 06825456 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03 (1).rar 2013-07-15 09:27 - 2013-07-15 09:29 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04 (1).rar 2013-07-15 09:27 - 2013-07-15 09:28 - 09362496 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02 (1).rar 2013-07-15 09:18 - 2013-07-15 09:20 - 20844648 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01 (1).rar 2013-07-15 09:08 - 2013-07-17 09:59 - 00000000 ____D C:\richard wagner 2013-07-15 08:58 - 2013-07-15 08:58 - 00903080 _____ (Oracle Corporation) C:\Users\Fritz-Otto\Downloads\chromeinstall-7u25.exe 2013-07-15 08:56 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-15 08:56 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-15 08:56 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-15 08:56 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-15 08:56 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-15 08:56 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-15 08:55 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-15 08:54 - 2013-07-15 09:00 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (1).rar 2013-07-15 08:47 - 2013-07-15 08:50 - 06604488 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646 (1).zip 2013-07-12 07:59 - 2013-07-12 08:03 - 42196581 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19.rar 2013-07-12 07:59 - 2013-07-12 08:03 - 36950760 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18.rar 2013-07-12 07:59 - 2013-07-12 08:01 - 12055727 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17.rar 2013-07-12 07:53 - 2013-07-12 08:04 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14.rar 2013-07-12 07:53 - 2013-07-12 08:00 - 76160304 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15.rar 2013-07-12 07:53 - 2013-07-12 07:57 - 26237904 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13.rar 2013-07-12 07:53 - 2013-07-12 07:55 - 08724144 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16.rar 2013-07-12 07:53 - 2013-07-12 07:53 - 02062368 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12.rar 2013-07-12 07:52 - 2013-07-12 07:55 - 25542264 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10.rar 2013-07-12 07:52 - 2013-07-12 07:55 - 12666311 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11.rar 2013-07-12 07:40 - 2013-07-12 07:40 - 02381544 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09.rar 2013-07-12 07:38 - 2013-07-12 07:42 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 18307608 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 10074504 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 06506280 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05.rar 2013-07-12 07:38 - 2013-07-12 07:39 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07.rar 2013-07-12 07:23 - 2013-07-12 07:26 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02.rar 2013-07-12 07:16 - 2013-07-12 07:20 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01.rar 2013-07-12 07:06 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 07:06 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 07:06 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 07:06 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 07:05 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 07:05 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 07:05 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-12 06:59 - 2013-07-12 07:01 - 03609144 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646.zip 2013-07-11 19:41 - 2013-07-11 19:42 - 00000000 ____D C:\Windows\SysWOW64\sda 2013-07-11 19:37 - 2013-07-11 19:36 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll 2013-07-04 10:33 - 2013-07-04 10:33 - 03000371 _____ C:\Users\Fritz-Otto\Downloads\Walter_Ulbricht.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00269083 _____ C:\Users\Fritz-Otto\Downloads\Robert_Blum.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00259500 _____ C:\Users\Fritz-Otto\Downloads\Dieser_Stress_bringt_mich_noch_um.epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit.epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit (1).epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01588455 _____ C:\Users\Fritz-Otto\Downloads\Wie_erstelle_ich_ein_perfektes_eBook_.epub 2013-07-04 09:38 - 2013-07-04 09:38 - 00228507 _____ C:\Users\Fritz-Otto\Downloads\Die_Familie_Stiller_1.epub 2013-07-03 11:29 - 2013-07-03 11:29 - 00000000 ____D C:\Hasenbein-Daten 2013-07-03 11:14 - 2013-07-03 11:18 - 71668452 _____ C:\Users\Fritz-Otto\Downloads\Hasenbein-DE.exe ==================== One Month Modified Files and Folders ======= 2013-08-01 09:40 - 2013-08-01 09:40 - 00000000 ____D C:\FRST 2013-08-01 09:40 - 2013-08-01 09:39 - 01781589 _____ (Farbar) C:\Users\Fritz-Otto\Downloads\FRST64.exe 2013-08-01 08:28 - 2009-07-14 06:45 - 00018928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-01 08:28 - 2009-07-14 06:45 - 00018928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-01 08:22 - 2013-08-01 08:21 - 00001752 _____ C:\Users\Fritz-Otto\Desktop\OnlineScannerApp.exe.lnk 2013-08-01 08:22 - 2012-11-04 10:56 - 00000438 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-08-01 08:20 - 2013-07-17 13:09 - 00000000 ___SD C:\Users\Fritz-Otto\Google Drive 2013-08-01 08:19 - 2013-07-31 12:48 - 00000224 _____ C:\Windows\setupact.log 2013-08-01 08:14 - 2012-02-20 14:51 - 01884817 _____ C:\Windows\WindowsUpdate.log 2013-08-01 08:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-01 07:55 - 2013-08-01 07:52 - 00004050 _____ C:\DelFix.txt 2013-08-01 07:52 - 2013-08-01 07:52 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:55 - 2013-07-31 14:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 14:29 - 2013-07-31 14:29 - 00001127 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 14:29 - 2013-07-31 14:28 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 14:26 - 2013-07-31 14:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (2).exe 2013-07-31 13:13 - 2013-07-31 13:13 - 00014547 _____ C:\Users\Fritz-Otto\Desktop\attach.txt 2013-07-31 12:52 - 2012-02-20 14:49 - 03052016 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-31 12:52 - 2012-02-20 14:10 - 00119120 _____ C:\Users\FRITZ-~1\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-31 12:48 - 2013-07-31 12:48 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 12:46 - 2013-05-26 13:02 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\CheckPoint 2013-07-31 11:55 - 2013-07-31 11:55 - 00001577 _____ C:\Windows\ScriptMakerUninstall.MIF 2013-07-31 11:55 - 2011-09-21 16:00 - 00000000 ____D C:\Program Files (x86)\Steinberg 2013-07-31 11:50 - 2011-11-07 09:44 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Skype 2013-07-31 11:50 - 2011-11-07 09:44 - 00000000 ____D C:\ProgramData\Skype 2013-07-31 11:48 - 2013-05-16 13:56 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2013-07-31 11:37 - 2012-11-23 13:52 - 00000000 ____D C:\Program Files (x86)\AnvSoft 2013-07-31 11:37 - 2012-11-16 11:03 - 00000000 ____D C:\Program Files\PDFCreator 2013-07-31 11:35 - 2013-04-13 16:40 - 00000000 ____D C:\ProgramData\MZ-WinTranslator V21 2013-07-31 11:35 - 2013-04-13 16:40 - 00000000 ____D C:\Program Files (x86)\MZ-WinTranslator V21 2013-07-31 11:34 - 2012-11-10 16:18 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\7-PDFSplitMerge 2013-07-31 11:16 - 2012-09-06 11:13 - 00000000 ____D C:\FreeOCR 2013-07-31 11:14 - 2012-11-21 18:15 - 00000000 ____D C:\Program Files (x86)\eBookConverter 2013-07-31 11:06 - 2011-09-12 15:06 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-07-31 11:05 - 2012-11-07 16:25 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\.Epubor 2013-07-31 10:58 - 2011-10-04 09:06 - 00000000 ____D C:\Program Files\bb 2013-07-31 09:47 - 2013-07-30 19:37 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-31 09:21 - 2012-06-18 19:42 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 09:20 - 2012-11-12 16:02 - 00000000 ____D C:\Windows\Downloaded Installations 2013-07-31 09:19 - 2013-07-31 09:19 - 14713592 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbsb-setup- 2013-07-31 08:50 - 2013-06-30 11:44 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Common 2013-07-31 08:16 - 2012-12-04 09:45 - 00000000 ____D C:\Windows\Minidump 2013-07-31 08:16 - 2011-08-25 00:53 - 00000000 ____D C:\Windows\Panther 2013-07-31 08:08 - 2013-07-31 08:06 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (1).exe 2013-07-30 21:11 - 2013-07-30 21:11 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-30 21:10 - 2013-07-30 21:09 - 23334896 _____ (Simply Super Software ) C:\Users\Fritz-Otto\Downloads\trjsetup_688.exe 2013-07-30 19:39 - 2013-07-30 19:39 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-30 19:34 - 2013-07-30 19:34 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Fritz-Otto\Downloads\SpyHunter-Installer.exe 2013-07-30 19:22 - 2013-07-30 19:21 - 00000000 ____D C:\Users\Fritz-Otto\Neuer Ordner (3) 2013-07-30 19:21 - 2011-08-24 15:20 - 00000000 ____D C:\Users\Fritz-Otto 2013-07-30 19:20 - 2013-07-30 19:19 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW (1).exe 2013-07-30 19:13 - 2013-07-30 19:12 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW.exe 2013-07-30 18:44 - 2013-07-30 18:44 - 00001205 _____ C:\Users\Fritz-Otto\Downloads\FixNCR.reg 2013-07-30 18:25 - 2013-07-30 18:25 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\backups 2013-07-30 09:12 - 2013-07-30 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- 2013-07-30 08:56 - 2013-07-30 08:56 - 00717160 _____ C:\Users\Fritz-Otto\Downloads\ZipOpenerSetup.exe 2013-07-30 08:47 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data 2013-07-29 18:08 - 2013-07-29 18:08 - 00000190 _____ C:\Users\Fritz-Otto\Desktop\Amazon.de.url 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\ChromeExtensions 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Tempcce6fbff27c20e217fc92dbf78a29fdf 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Temp11eac2ff5bfac4e5688eac59725150c4 2013-07-29 18:08 - 2012-02-16 11:39 - 00000000 ___RD C:\Users\Fritz-Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-29 18:07 - 2013-07-29 18:07 - 00577280 _____ C:\Users\Fritz-Otto\Downloads\Fantastic-3D-Fish-Aquarium-Bildschirmschoner-Setup.exe 2013-07-29 17:53 - 2013-07-29 17:53 - 00000000 ____D C:\Program Files (x86)\NewFreeScreensavers 2013-07-29 17:52 - 2013-07-29 17:52 - 10224784 _____ ( ) C:\Users\Fritz-Otto\Downloads\nfsHDWaterfall03.exe 2013-07-25 17:37 - 2011-08-27 19:11 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\gtk-2.0 2013-07-25 17:37 - 2011-08-27 19:09 - 00000000 ____D C:\Users\Fritz-Otto\.gimp-2.6 2013-07-25 17:15 - 2013-07-25 17:15 - 00004890 _____ C:\Users\Fritz-Otto\.recently-used.xbel 2013-07-25 17:14 - 2012-11-10 16:19 - 00000000 ____D C:\Users\Fritz-Otto\Documents\7-PDF Split & Merge 2013-07-25 10:50 - 2013-04-01 10:39 - 00000000 ____D C:\Users\Fritz-Otto\Documents\Ausflüge 2013 2013-07-25 08:24 - 2012-10-29 11:27 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-07-25 07:44 - 2012-02-18 16:33 - 00000000 ____D C:\ProgramData\UAB 2013-07-25 07:43 - 2011-08-25 00:52 - 00877168 _____ C:\Windows\system32\perfh007.dat 2013-07-25 07:43 - 2011-08-25 00:52 - 00215946 _____ C:\Windows\system32\perfc007.dat 2013-07-25 07:43 - 2009-07-14 07:13 - 02120456 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-17 18:26 - 2013-07-17 18:24 - 00000000 ____D C:\Wagner cov 2013-07-17 18:03 - 2012-08-09 10:52 - 00000000 ____D C:\Users\Fritz-Otto\Calibre Library 2013-07-17 13:42 - 2013-07-17 13:41 - 06724744 _____ C:\Users\Fritz-Otto\Downloads\pg35030-images.epub 2013-07-17 13:10 - 2013-07-17 13:10 - 00001723 _____ C:\Users\Fritz-Otto\Desktop\Google Drive.lnk 2013-07-17 12:59 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus meinem Leben by Paul von Hindenburg.epub.cov 2013-07-17 12:58 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Arme Leute by Fyodor Dostoyevsky.epub.cov 2013-07-17 12:55 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Rembrandt by Hermann Knackfuss.epub.cov 2013-07-17 12:53 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebensbeschreibung des k. k. Kapellmeisters Wolfgang Amadeus Mozart by Niemetschek.epub.cov 2013-07-17 12:52 - 2013-07-17 12:52 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job 2013-07-17 12:51 - 2013-07-17 12:51 - 00000000 ____D C:\Users\Fritz-Otto\AppData\LocalGoogle 2013-07-17 12:51 - 2011-08-25 14:49 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Google 2013-07-17 12:51 - 2011-08-25 14:48 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-17 12:50 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Cosima Wagner_ Die Tagebucher - Autobiographien.epub.cov 2013-07-17 12:49 - 2013-07-17 12:49 - 00781760 _____ (Google Inc.) C:\Users\Fritz-Otto\Downloads\googledrivesync.exe 2013-07-17 11:59 - 2013-07-17 11:59 - 00295992 _____ C:\Users\Fritz-Otto\Downloads\pg13272i.epub 2013-07-17 11:44 - 2013-07-17 11:44 - 00672608 _____ () C:\Users\Fritz-Otto\Downloads\BestCodecsPackSetup.exe 2013-07-17 11:37 - 2013-07-17 11:37 - 00445297 _____ C:\Users\Fritz-Otto\Downloads\LisztGesammelteSchriftenB4.epub 2013-07-17 11:02 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Das Braune Buch. Tagebuc - Autobiographien.epub.cov 2013-07-17 10:29 - 2012-11-08 18:58 - 00194048 ___SH C:\Users\Fritz-Otto\Documents\Thumbs.db 2013-07-17 10:10 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Mein Leben - Autobiographien.epub.cov 2013-07-17 10:08 - 2013-07-17 10:08 - 01102964 _____ C:\Users\Fritz-Otto\Documents\Wagner Werke.tif 2013-07-17 09:59 - 2013-07-15 09:08 - 00000000 ____D C:\richard wagner 2013-07-16 11:56 - 2013-07-16 11:55 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\calibre-cache 2013-07-16 09:35 - 2013-07-16 09:35 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2013-07-16 09:35 - 2012-07-14 09:02 - 00000000 ____D C:\Program Files (x86)\Calibre2 2013-07-16 09:33 - 2013-07-16 09:31 - 52108800 _____ C:\Users\Fritz-Otto\Downloads\calibre-0.9.39.msi 2013-07-16 09:25 - 2013-07-16 09:24 - 15422099 _____ C:\Users\Fritz-Otto\Downloads\Werke und Schriften.zip 2013-07-16 09:20 - 2013-07-16 09:20 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner 2013-07-16 09:19 - 2013-07-16 09:14 - 105207752 _____ C:\Users\Fritz-Otto\Downloads\Briefe.zip 2013-07-16 09:17 - 2013-07-16 09:16 - 12778281 _____ C:\Users\Fritz-Otto\Downloads\Tagebücher Richard und Cosima Wagner.zip 2013-07-16 09:17 - 2013-07-16 09:04 - 358729272 _____ C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner.zip 2013-07-16 08:48 - 2013-07-16 08:48 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Noten 2013-07-16 08:39 - 2013-07-16 08:06 - 646843375 _____ C:\Users\Fritz-Otto\Downloads\Noten.zip 2013-07-16 08:38 - 2013-07-16 08:06 - 455449777 _____ C:\Users\Fritz-Otto\Downloads\Bücher.zip 2013-07-15 11:18 - 2013-03-09 10:12 - 00000000 ____D C:\Users\Fritz-Otto\Documents\Karstens Hochzeit 2013-07-15 10:59 - 2012-05-23 11:41 - 00000000 ____D C:\Users\Fritz-Otto\Documents\FalkData 2013-07-15 10:46 - 2013-07-15 10:41 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 09681672 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 07774800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 06620856 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 05024976 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18 (1).rar 2013-07-15 10:14 - 2013-07-15 10:14 - 01113024 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19 (1).rar 2013-07-15 10:08 - 2013-07-15 10:03 - 22366872 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (2).rar 2013-07-15 10:07 - 2013-07-15 10:03 - 18004800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12 (1).rar 2013-07-15 10:05 - 2013-07-15 10:04 - 09682967 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13 (1).rar 2013-07-15 10:05 - 2013-07-15 10:04 - 02700720 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14 (1).rar 2013-07-15 10:05 - 2013-07-15 10:03 - 19042447 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09 (1).rar 2013-07-15 09:35 - 2013-07-15 09:28 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06 (1).rar 2013-07-15 09:32 - 2013-07-15 09:28 - 41943000 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08 (1).rar 2013-07-15 09:32 - 2013-07-15 09:28 - 35764080 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07 (1).rar 2013-07-15 09:29 - 2013-07-15 09:28 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05 (1).rar 2013-07-15 09:29 - 2013-07-15 09:27 - 06825456 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03 (1).rar 2013-07-15 09:29 - 2013-07-15 09:27 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04 (1).rar 2013-07-15 09:28 - 2013-07-15 09:27 - 09362496 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02 (1).rar 2013-07-15 09:20 - 2013-07-15 09:18 - 20844648 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01 (1).rar 2013-07-15 09:09 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-15 09:09 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-15 09:00 - 2013-07-15 08:54 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (1).rar 2013-07-15 08:58 - 2013-07-15 08:58 - 00903080 _____ (Oracle Corporation) C:\Users\Fritz-Otto\Downloads\chromeinstall-7u25.exe 2013-07-15 08:57 - 2011-08-28 08:56 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-15 08:50 - 2013-07-15 08:47 - 06604488 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646 (1).zip 2013-07-15 08:47 - 2011-08-25 10:42 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-15 08:42 - 2012-05-12 22:06 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-15 08:42 - 2012-02-18 15:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 08:12 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Claus Stortebecker - Engel, Georg.epub.cov 2013-07-12 08:04 - 2013-07-12 07:53 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14.rar 2013-07-12 08:03 - 2013-07-12 07:59 - 42196581 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19.rar 2013-07-12 08:03 - 2013-07-12 07:59 - 36950760 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18.rar 2013-07-12 08:01 - 2013-07-12 07:59 - 12055727 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17.rar 2013-07-12 08:00 - 2013-07-12 07:53 - 76160304 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15.rar 2013-07-12 07:57 - 2013-07-12 07:53 - 26237904 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13.rar 2013-07-12 07:55 - 2013-07-12 07:53 - 08724144 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16.rar 2013-07-12 07:55 - 2013-07-12 07:52 - 25542264 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10.rar 2013-07-12 07:55 - 2013-07-12 07:52 - 12666311 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11.rar 2013-07-12 07:53 - 2013-07-12 07:53 - 02062368 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12.rar 2013-07-12 07:42 - 2013-07-12 07:38 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06.rar 2013-07-12 07:40 - 2013-07-12 07:40 - 02381544 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 18307608 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 10074504 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 06506280 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05.rar 2013-07-12 07:39 - 2013-07-12 07:38 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07.rar 2013-07-12 07:26 - 2013-07-12 07:23 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02.rar 2013-07-12 07:20 - 2013-07-12 07:16 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01.rar 2013-07-12 07:01 - 2013-07-12 06:59 - 03609144 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646.zip 2013-07-11 19:42 - 2013-07-11 19:41 - 00000000 ____D C:\Windows\SysWOW64\sda 2013-07-11 19:37 - 2013-02-17 11:16 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-07-11 19:37 - 2011-08-25 12:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-11 19:36 - 2013-07-11 19:37 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll 2013-07-11 11:36 - 2012-11-20 10:19 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Bilder und Videos machen 2013-07-11 11:36 - 2012-11-20 10:18 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Musik machen 2013-07-11 11:35 - 2012-10-15 08:54 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\SchreibenDruckenSkannen 2013-07-11 11:34 - 2012-11-20 10:34 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Computer warten 2013-07-04 10:33 - 2013-07-04 10:33 - 03000371 _____ C:\Users\Fritz-Otto\Downloads\Walter_Ulbricht.epub 2013-07-04 09:44 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die_Familie_Stiller_1.epub.cov 2013-07-04 09:43 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus_alter_Zeit.epub.cov 2013-07-04 09:42 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Wie_erstelle_ich_ein_perfektes_eBook_.epub.cov 2013-07-04 09:40 - 2013-07-04 09:40 - 00269083 _____ C:\Users\Fritz-Otto\Downloads\Robert_Blum.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00259500 _____ C:\Users\Fritz-Otto\Downloads\Dieser_Stress_bringt_mich_noch_um.epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit.epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit (1).epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01588455 _____ C:\Users\Fritz-Otto\Downloads\Wie_erstelle_ich_ein_perfektes_eBook_.epub 2013-07-04 09:38 - 2013-07-04 09:38 - 00228507 _____ C:\Users\Fritz-Otto\Downloads\Die_Familie_Stiller_1.epub 2013-07-04 09:37 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Dieser_Stress_bringt_mich_noch_um.epub.cov 2013-07-04 09:36 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Walter_Ulbricht.epub.cov 2013-07-03 13:12 - 2011-09-06 17:05 - 00000000 ____D C:\Program Files (x86)\AVS4YOU 2013-07-03 11:29 - 2013-07-03 11:29 - 00000000 ____D C:\Hasenbein-Daten 2013-07-03 11:18 - 2013-07-03 11:14 - 71668452 _____ C:\Users\Fritz-Otto\Downloads\Hasenbein-DE.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2012-02-19 10:02 ==================== End Of Log ============================ --- --- --- E][/CODE] Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2013 03 Ran by Fritz-Otto at 2013-08-01 09:44:37 Running from C:\Users\Fritz-Otto\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Update for Microsoft Office 2007 (KB2508958) (x32) "Nero SoundTrax Help (x32 Version: 64 Bit HP CIO Components Installer (Version: 7.2.8) ABBYY FineReader 6.0 Sprint (x32 Version: 6.00.2263.40821) ACCU-CHEK 360° (x32 Version: 1.0.35) Adobe AIR (x32 Version: Adobe Digital Editions 2.0 (x32 Version: 2.0) Adobe Download Assistant (x32 Version: 1.2.3) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.169) Adobe Flash Player 11 Plugin (x32 Version: Adobe Photoshop 7.0 (x32 Version: 7.0) Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7) Advertising Center (x32 Version: AIO_CDB_Software (x32 Version: 130.0.365.000) AIO_Scan (x32 Version: 130.0.421.000) AmazingMIDI (x32) Amazon Kindle (HKCU) Ashampoo ClipFinder HD v.2.2.9 (x32 Version: 2.2.9) Ashampoo WinOptimizer 2012 v.8.1.4 (x32 Version: 8.1.4) Audacity 2.0.3 (x32 Version: 2.0.3) Belkin Desktop PCI Card Driver (x32 Version: 1.12.0005) Borland Data Engine (x32 Version: 5.2.0) BufferChm (x32 Version: 130.0.331.000) Cakewalk Pro Audio 8.0 Demo (x32) calibre (x32 Version: 0.9.39) Canon Easy-PhotoPrint EX (x32) Canon Easy-WebPrint EX (x32) Canon Inkjet Printer Driver Add-On Module V2.00 Canon Inkjet Printer/Scanner/Fax Extended Survey Program (x32) Canon iP4800 series Benutzerregistrierung (x32) Canon iP4800 series Printer Driver Canon My Printer (x32) Canon Solution Menu EX (x32) CCFinder (x32 Version: 1.0) CDBurnerXP (x32 Version: CDBurnerXP Packages (HKCU) CD-LabelPrint (x32) CheckDrive (x32 Version: 3.0) C-Media PCI Audio Device Copy (x32 Version: 130.0.428.000) D3DX10 (x32 Version: 15.4.2368.0902) DDBAC (x32 Version: 4.3.67) Debut Video Capture Software (x32) Destinations (x32 Version: DeviceDiscovery (x32 Version: 130.0.465.000) Digitale Bibliothek 4 (x32 Version: ) DocProc (x32 Version: DolbyFiles (x32 Version: 2.0) dows-Treiberpaket - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 (Version: 09/09/2009 Driver Detective (x32 Version: 7) DVD Shrink 3.2 deutsch (DeCSS-frei) (x32) DVD-Cover v. (x32) ELECTRA 2.8 (x32) EPSON Scan (x32) ESET Online Scanner v3 (x32) Falk Navi-Manager classic (x32 Version: 2.11.0) Fax (x32 Version: 130.0.418.000) Fotogalerie (x32 Version: 16.4.3508.0205) Free Screen Video Recorder version (x32 Version: Free Video Converter V 3.1 (x32 Version: GIMP 2.6.8 Google Chrome (HKCU Version: 27.0.1453.110) Google Drive (x32 Version: 1.10.4769.632) Google Update Helper (x32 Version: GPBaseService2 (x32 Version: 130.0.371.000) GPL Ghostscript (Version: 9.04) Greenshot (x32) HP Customer Participation Program 13.0 (Version: 13.0) HP Imaging Device Functions 13.0 (Version: 13.0) HP Photosmart Essential 3.5 (Version: 3.5) HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (Version: 13.0) HP Smart Web Printing 4.51 (Version: 4.51) HP Solution Center 13.0 (Version: 13.0) HP Update (x32 Version: HPDiagnosticAlert (x32 Version: 1.00.0000) HPPhotoGadget (x32 Version: HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000) HPPhotosmartEssential (x32 Version: 2.04.0000) HPProductAssistant (x32 Version: 130.0.371.000) HPSSupply (x32 Version: 130.0.371.000) ImagXpress (x32 Version: intelliScore Ensemble MP3 to MIDI Converter Demo (x32 Version: 8.1) Junk Mail filter update (x32 Version: 16.4.3508.0205) Lernout & Hauspie TruVoice for Microsoft Agent (x32) Lexware Info Service (x32 Version: Lexware online banking (x32 Version: Ludwig 3.0 (x32 Version: MAGIX Foto & Grafik Designer 6 SE (Version: MAGIX Foto & Grafik Designer 6 SE (x32 Version: Malwarebytes Anti-Malware Version (x32 Version: MarketResearch (x32 Version: 130.0.374.000) M-DVD.Org 2011 - "Ver. 3.2 Update" (x32 Version: 3.2) Media converter (x32) mediAvatar PDF to EPUB Converter (x32 Version: MEDUSA4 PERSONAL V5.0.1 (x32 Version: V5.0.1) Menu Templates - Starter Kit (x32 Version: Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Antimalware (Version: 3.0.8402.2) Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42) Microsoft Security Client (Version: 2.1.1116.0) Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0) Microsoft Security Essentials (Version: 2.1.1116.0) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SkyDrive (HKCU Version: 17.0.2011.0627) Microsoft SQL Server 2005 (x32) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft SQL Server 2005 Express Edition (ACCUCHEK360) (x32 Version: 9.4.5000.00) Microsoft SQL Server 2005 Tools Express Edition (x32 Version: 9.4.5000.00) Microsoft SQL Server 2008 R2 (64-Bit) Microsoft SQL Server 2008 R2 Native Client (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2 RsFx Driver (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2-Setup (Deutsch) (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2-Setup (Deutsch) (x32 Version: 10.51.2500.0) Microsoft SQL Server Browser (x32 Version: 10.51.2500.0) Microsoft SQL Server Management Objects Collection (Version: 9.00.1399.06) Microsoft SQL Server Native Client (Version: 9.00.5000.00) Microsoft SQL Server Setup Support Files (English) (x32 Version: 9.00.5000.00) Microsoft SQL Server VSS Writer (Version: 10.51.2500.0) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Windows Media Video 9 VCM (x32) Microsoft_VC100_CRT_x86 (x32 Version: 1.0.0) Midibwin (x32) Movie Maker (x32 Version: 16.4.3508.0205) Movie Templates - Starter Kit (x32 Version: MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0) MyKeyFinder (x32 Version: 2013) MyTube Bigpack HD Free (x32 Version: Nero 10 Menu TemplatePack 2 (x32 Version: 10.6.10100.0.0) Nero 9 (x32) Nero BackItUp (x32 Version: 5.2.6000) Nero BackItUp and Burn (x32 Version: 1.2.0009) Nero Backup Drivers (Version: 1.0.11100.8.0) Nero Burning ROM Help (x32 Version: Nero BurnRights (x32 Version: Nero BurnRights (x32 Version: 3.6.17000) Nero BurnRights Help (x32 Version: Nero ControlCenter (x32 Version: Nero CoverDesigner (x32 Version: Nero CoverDesigner Help (x32 Version: Nero Disc Copy Gadget (x32 Version: Nero Disc Copy Gadget Help (x32 Version: Nero DiscSpeed (x32 Version: Nero DiscSpeed Help (x32 Version: Nero DriveSpeed (x32 Version: Nero DriveSpeed Help (x32 Version: Nero Express (x32 Version: 9.6.11000) Nero Express Help (x32 Version: Nero InfoTool (x32 Version: Nero InfoTool Help (x32 Version: Nero Installer (x32 Version: Nero Live (x32 Version: Nero Live Help (x32 Version: Nero PhotoSnap (x32 Version: Nero PhotoSnap Help (x32 Version: Nero Recode (x32 Version: Nero Recode Help (x32 Version: Nero Rescue Agent (x32 Version: Nero RescueAgent (x32 Version: 2.6.13000) Nero RescueAgent Help (x32 Version: Nero ShowTime (x32 Version: Nero ShowTime (x32 Version: Nero StartSmart (x32 Version: Nero StartSmart Help (x32 Version: Nero Vision (x32 Version: Nero Vision Help (x32 Version: Nero WaveEditor (x32 Version: NeroBurningROM (x32 Version: NeroExpress (x32 Version: NeroLiveGadget (x32 Version: NeroLiveGadget Help (x32 Version: neroxml (x32 Version: 1.0.0) Network64 (Version: 130.0.572.000) Network64 (Version: NewFreeScreensaver nfsHDWaterfall03 (x32) Noteur (C:\Program Files (x86)\Noteur\) (x32) Noteur (x32) NVIDIA Install Application (Version: 2.1002.62.312) OCR Software by I.R.I.S. 13.0 (Version: 13.0) OpenAL (x32) Organ Roll Scanner V2.1 Trial version (x32) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) PhotoScape (x32) Pinnacle Instant DVD Recorder (x32 Version: 2.00.088) Pinnacle Studio 14 (x32 Version: Pinnacle Studio Ultimate Plugins (x32 Version: Pinnacle Video Treiber (Version: Plus-HD-1.6 (x32 Version: Plus-HD-2.3 (x32 Version: Prism Video File Converter (x32) proDAD Heroglyph 2.5 (x32) proDAD Vitascene 1.0 (x32) Python 2.3.2 (x32 Version: 2.3.2) Quicken 2011 - ServicePack 4 (x32 Version: Quicken 2011 (x32 Version: Quicken Import Export Server 2011 (x32 Version: QuickShare (x32 Version: Realtek High Definition Audio Driver (x32 Version: Realtek USB 2.0 Card Reader (x32 Version: 6.1.7601.30133) Red Giant ToonIt Studio (x32) RedMon - Redirection Port Monitor Resource Hacker Version 3.6.0 (x32) Scan (x32 Version: Sceneo AbsolutTV (x32) Serif PhotoPlus X3 (x32 Version: Service Pack 1 für SQL Server 2008 R2 (KB2528583) (64-bit) (Version: 10.51.2500.0) Service Pack 1 für SQL Server 2008 R2 (KB2528583) (x32 Version: 10.51.2500.0) Servicepack Datumsaktualisierung (x32 Version: Shop for HP Supplies (Version: 13.0) SmartWebPrinting (x32 Version: 130.0.457.000) SolutionCenter (x32 Version: 130.0.373.000) SoundTrax (x32 Version: Speccy (Version: 1.19) SQL Server 2008 R2 Database Engine Services (Version: 10.50.1600.1) SQL Server 2008 R2 SP1 Common Files (Version: 10.51.2500.0) SQL Server 2008 R2 SP1 Database Engine Services (Version: 10.51.2500.0) SQL Server 2008 R2 SP1 Database Engine Shared (Version: 10.51.2500.0) Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1) Status (x32 Version: 130.0.469.000) Studio 11 (x32 Version: 11.0) Studio 11 (x32 Version: Studio 11 Bonus DVD (x32 Version: Studio Ultimate (x32 Version: 11.00.0013) SureThing Express Labeler (x32) Target 3001! V15 discover (x32 Version: ) Target 3001! V16 discover (x32 Version: ) Toolbox (x32 Version: 130.0.648.000) TrayApp (x32 Version: 130.0.422.000) TubeBox (x32 Version: UnloadSupport (x32 Version: 11.0.0) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (Version: 10.1.2731.0) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (x32 Version: 10.1.2731.0) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Codec Pack (HKCU) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) VHD Attach 1.00 Video Download Capture V4.3.4 (x32 Version: 4.3.4) Virtual MIDI Piano Keyboard (x32 Version: 0.4.0) Vivaldi Scan Via Web (German Version) (x32 Version: 2003 a) VLC media player 2.0.2 (x32 Version: 2.0.2) VS2005 Redist (x32 Version: 1.0.0) WebReg (x32 Version: Windows Driver Package - Roche (WinUSB) PHDC (07/08/2010 (Version: 07/08/2010 Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live Family Safety (Version: 16.4.3508.0205) Windows Live Family Safety (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Mail (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live MIME IFilter (Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows Live Writer (x32 Version: 16.4.3508.0205) Windows Live Writer Resources (x32 Version: 16.4.3508.0205) Windows Mobile-Gerätecenter (Version: 6.1.6965.0) Windows Utils (x32) WinRAR (x32) WinRAR 4.01 (64-Bit) (Version: 4.01.0) WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137) Yahoo! Desktop Login (x32 Version: 1.00.0001) Yahoo! Toolbar (x32) YouTube Song Downloader (x32 Version: 8.2) ZoneAlarm Antivirus (x32 Version: ZoneAlarm Firewall (x32 Version: ZoneAlarm Security (x32 Version: ==================== Restore Points ========================= 01-08-2013 05:53:35 Ende der Bereinigung ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0D8EEFE3-A650-469E-AF3B-D213798A5EFD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-17] (Google Inc.) Task: {30462760-0EC0-42E7-927A-EF562367F964} - System32\Tasks\{3EB3471C-0BD1-4097-A9F2-0C2F4CA0CB66} => C:\Program Files (x86)\Steinberg\Cubase SX\Cubasesx.exe No File Task: {3DEA78EF-FA85-459E-B3AB-E812975F92BC} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: {3EB60CCA-CCCA-4B2A-AE00-058F8D550FA0} - System32\Tasks\{556DAB0F-1864-4C2F-99B3-914F28BE6E36} => C:\Program Files (x86)\Steinberg\Cubase SX\Cubasesx.exe No File Task: {46929858-0954-4495-8F75-5471183D42B4} - System32\Tasks\{47EF1AF1-F78F-4C1E-A2C5-CE88F2264353} => C:\Program Files (x86)\Synthesia\Synthesia.exe No File Task: {4A967B84-2B86-43BF-A3F0-E5037938E6EB} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe No File Task: {8B627E2D-018D-4F95-B2B9-F37857CB2392} - System32\Tasks\{249FAA65-4C56-48EE-91F1-03693C450B5E} => C:\Program Files (x86)\Internet Explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {A388E5AD-3C04-47C1-A05A-33996E1DEED8} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {A3937BDC-319D-4DC9-93C8-1FE554B01888} - System32\Tasks\{47F25A9B-4AAC-4F15-832C-867B3A04AC04} => C:\Program Files (x86)\Synthesia\Synthesia.exe No File Task: {AFA3C515-ABFF-4C9A-9B3E-BC58B2C5278E} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => C:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27] (Microsoft Corporation) Task: {BC02272A-B2AF-46E3-B99C-C20D29019F4D} - System32\Tasks\AbelssoftPreloader => C:\Program Files (x86)\WashAndGo\AbelssoftPreloader.exe No File Task: {D5F5D1DD-63D1-44C9-99DE-7DE09572F040} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-17] (Google Inc.) Task: {FB111ADF-6AD5-4AD8-A42F-1EFD069740EC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: C:\Windows\Tasks\0.job => c:\program files\internet explorer\iexplore.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\CheckDriveBackgroundGuard.job => C:\Program Files (x86)\CheckDrive\CheckDriveBackgroundGuard.exe Task: C:\Windows\Tasks\Driver Detective-RTMRules.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\Driver Detective-RTMScan.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\Driver Detective-RTMUpdater.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2944386974-3030254299-258376957-1000Core1ce520a76066d2.job => C:\Users\Fritz-Otto\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Happy Lyrics Update.job => C:\Program Files (x86)\HappyLyrics\HLUpdater.exe Task: C:\Windows\Tasks\Plus-HD-1.6-chromeinstaller.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-chromeinstaller.exe Task: C:\Windows\Tasks\Plus-HD-1.6-codedownloader.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-codedownloader.exe Task: C:\Windows\Tasks\Plus-HD-1.6-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-firefoxinstaller.exe Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/31/2013 09:36:28 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 02:55:24 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 02:54:51 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 11:47:42 AM) (Source: Microsoft-Windows-RestartManager) (User: RECHNER01) Description: Die Anwendung oder der Dienst "Internet Explorer" konnte nicht heruntergefahren werden. Error: (07/31/2013 08:56:11 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 10.0.9200.16635, Zeitstempel: 0x51b7a921 Name des fehlerhaften Moduls: IEFRAME.dll, Version: 10.0.9200.16635, Zeitstempel: 0x51b7abdb Ausnahmecode: 0xc0000005 Fehleroffset: 0x004ac072 ID des fehlerhaften Prozesses: 0x824 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Error: (07/31/2013 08:54:15 AM) (Source: ESENT) (User: ) Description: DllHost (4304) WebCacheLocal: Fehler -1811 beim Öffnen von Protokolldatei C:\Users\Fritz-Otto\AppData\Local\Microsoft\Windows\WebCache\V01011CC.log. System errors: ============= Error: (08/01/2013 08:21:46 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Aspi32 Error: (08/01/2013 08:19:50 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:19:47 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:19:45 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:18:42 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\Aspi32.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/01/2013 07:38:19 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Aspi32 Error: (08/01/2013 07:36:20 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:36:17 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:36:15 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:35:07 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\Aspi32.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Microsoft Office Sessions: ========================= Error: (09/25/2012 10:54:31 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5637 seconds with 4620 seconds of active time. This session ended with a crash. Error: (06/05/2012 10:50:09 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 373 seconds with 360 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-07-31 11:28:14.982 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 11:15:58.759 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:56:52.144 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:25:55.192 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:11:28.618 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:01:20.548 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 09:41:59.461 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 09:12:01.500 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 08:49:21.821 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 08:08:33.226 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 8062.55 MB Available physical RAM: 5677.32 MB Total Pagefile: 16123.29 MB Available Pagefile: 13488.13 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:292.97 GB) (Free:82.87 GB) NTFS (Disk=0 Partition=1) Drive d: () (Fixed) (Total:341.8 GB) (Free:293.51 GB) NTFS (Disk=0 Partition=2) Drive k: () (Fixed) (Total:296.75 GB) (Free:296.47 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 6650020E) Partition 1: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=342 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=297 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter SystemLook 30.07.11 by jpshortstuff Log created at 09:49 on 01/08/2013 by Fritz-Otto Administrator - Elevation successful ========== regfind ========== Searching for "getwindowinfo" No data found. -= EOF =- |
![]() | #12 |
![]() | ![]() < http://www_getwindowinfo/ > [CODE][ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Fritz-Otto (administrator) on 01-08-2013 09:41:29 Running from C:\Users\Fritz-Otto\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (mst software GmbH, Germany) C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfsdkS64.exe (SafeNet Inc.) C:\Windows\system32\hasplms.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (PC Drivers Headquarters) C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Windows Net) C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Prolific Technology Inc.) C:\Windows\SysWOW64\IoctlSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE (Buhl Data Service GmbH) C:\Program Files (x86)\Sceneo\AbsolutTV\Services\PVR\PVRService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2013-02-17] (Realtek Semiconductor) HKLM\...\Run: [Ocs_SM] - C:\Users\Fritz-Otto\AppData\Roaming\OCS\SM\SearchAnonymizer.exe [x] HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [SCheck] - C:\Users\Fritz-Otto\AppData\Roaming\SCheck\SCheck.exe [36864 2013-04-10] () HKCU\...\Run: [SSync] - C:\Users\Fritz-Otto\AppData\Roaming\SSync\SSync.exe [36864 2013-04-10] () HKCU\...\Run: [Driver Detective] - C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe [3980696 2013-07-25] (PC Drivers Headquarters) HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [19676256 2013-06-06] (Google) HKCU\...\RunOnce: [Uninstall C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Fritz-Otto\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" [345088 2010-11-20] (Microsoft Corporation) AppInit_DLLs: C:\PROGRA~2\Windows iLivid C:\PROGRA~2\Windows iLivid C:\PROGRA~2\SearchCore for for C:\PROGRA~2\SearchCore for for [97280 2009-07-14] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Users\Fritz-Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk ShortcutTarget: net.lnk -> C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data\net.exe (Windows Net) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/my_homepage/0022/ URLSearchHook: (No Name) - {7e111a5c-3d11-4f56-9463-5310c3c69025} - No File StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E62696E672E636F6D2F7365617263683F713D7B7365617263685465726D737D267372633D49452D536561726368426F7826464F524D3D494531305352&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {30953AF2-3ACF-4C4A-95A4-4EE4FBA2E472} URL = hxxp://searchya.com.anonymize-me.de/?anonymto=687474703A2F2F73656172636879612E636F6D2F3F63686E6C3D66742D31303026733D312663723D313832343336323131352663643D32587A757441744E3259314C31517A7574447444744330417A7974427945304330427A7A7A7A794579437442304430433041744E304430547A757442744474437442744474427443794426713D7B7365617263685465726D737D&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {3FFFD058-3827-4FE3-80BD-50C1A08F5626} URL = hxxp://search.conduit.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E636F6E647569742E636F6D2F526573756C74734578742E617370783F713D7B7365617263685465726D737D26536561726368536F757263653D3426637469643D435433323831333438264355493D554E3237323437333739393837333632323033&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {48D70149-4F37-4B73-BA94-FDBFA13D2A8F} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {5C66694B-FCF2-4C38-B6A4-45D122D3CF5C} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E676F6F676C652E636F6D2F7365617263683F713D7B7365617263685465726D737D26726C733D636F6D2E6D6963726F736F66743A7B6C616E67756167657D3A7B72656665727265723A736F757263653F7D2669653D7B696E707574456E636F64696E677D266F653D7B6F7574707574456E636F64696E677D26736F7572636569643D69653726726C7A3D314937505246425F6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {7958E9E4-D76A-42B5-9396-6F48D8CEA6ED} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {C245A1C0-5FA5-45DC-B036-2452CA8691ED} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F1A310F4-0E68-4A88-8E0F-4BD13617EFE5} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F6675C1B-8082-41E1-B133-5E14A6254326} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F781FEE5-A41A-40B9-8A0F-4CA1A6CEF611} URL = hxxp://search.zonealarm.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E7A6F6E65616C61726D2E636F6D2F7365617263683F7372633D737026746269643D6261736532303133264C616E3D646526713D7B7365617263685465726D737D2667753D34386332643133653238663734663139623633663862396563373634626162392674753D31304758303030384731423030303826736B753D267473747349643D267665723D2626723D323635&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: AddLyrics - {4145006D-47F8-42F2-8186-2225AAFECDD3} - No File BHO-x32: Happy Lyrics - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} - No File BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File BHO-x32: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File DPF: HKLM {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x64/MuCatalogWebControl.cab?1331649195172 DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: HKLM-x32 {DB28CF23-0083-40B5-BF63-69925D672385} hxxp://www.nero.com/doc/NeroVersionChecker.cab Tcpip\..\Interfaces\{0143F755-7524-442D-B297-83F0FE89631A}: [NameServer],,,,,,,,, Chrome: ======= CHR HomePage: chrome://newtab CHR RestoreOnStartup: "hxxp://www.giga.de/my_homepage/0022/" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\User Data\PepperFlash\11.7.700.225\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Fritz-Otto\AppData\Local\Google\Chrome\Application\27.0.1453.110\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Users\Fritz-Otto\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () CHR Extension: (Google Drive) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (wxDownload) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl\4_0 CHR Extension: () - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR Extension: (OfferMosquito) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk\0.5_0 CHR Extension: (Amazon-Icon) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg\1.0_0 CHR HKLM-x32\...\Chrome\Extension: [ealchnonpofjocgofjpopjdoegbbkofj] - C:\Program Files (x86)\HappyLyrics\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [ffonkgocfjhkkdcaaamakaiannpoodgl] - C:\ProgramData\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Fritz-Otto\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx ==================== Services (Whitelisted) ================= R2 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2012\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) R2 hasplms; C:\Windows\system32\hasplms.exe [4941768 2012-06-28] (SafeNet Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2011-04-27] (Microsoft Corporation) R2 MSSQL$ACCUCHEK360; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62111072 2011-06-17] (Microsoft Corporation) R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [61913952 2010-04-03] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [288272 2011-04-27] (Microsoft Corporation) S2 PCLEPCI; C:\Windows\SysWOW64\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) R2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [87344 2009-09-01] (Prolific Technology Inc.) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431456 2011-06-17] (Microsoft Corporation) S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [428384 2010-04-03] (Microsoft Corporation) R2 srvcPVR; C:\Program Files (x86)\Sceneo\AbsolutTV\Services\PVR\PVRService.exe [1681408 2007-08-17] (Buhl Data Service GmbH) ==================== Drivers (Whitelisted) ==================== R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare) R3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [1075712 2008-07-29] (Atheros Communications, Inc.) R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [1155072 2012-02-18] (C-Media Inc) R3 debutfilter; C:\Windows\System32\DRIVERS\debutfilterx64.sys [32024 2013-03-07] () R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [321536 2011-09-28] (SafeNet Inc.) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [611160 2012-11-15] (Kaspersky Lab) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [189440 2011-04-18] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [84864 2011-04-27] (Microsoft Corporation) R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [52736 2009-09-28] (Realtek Semiconductor Corporation ) S1 Aspi32; No ImagePath S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] U0 KL1; S4 NVHDA; system32\drivers\nvhda64v.sys [x] S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [x] S3 RSUSBSTOR; System32\Drivers\RtsUStor.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-01 09:40 - 2013-08-01 09:40 - 00000000 ____D C:\FRST 2013-08-01 09:39 - 2013-08-01 09:40 - 01781589 _____ (Farbar) C:\Users\Fritz-Otto\Downloads\FRST64.exe 2013-08-01 08:21 - 2013-08-01 08:22 - 00001752 _____ C:\Users\Fritz-Otto\Desktop\OnlineScannerApp.exe.lnk 2013-08-01 07:52 - 2013-08-01 07:55 - 00004050 _____ C:\DelFix.txt 2013-08-01 07:52 - 2013-08-01 07:52 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:55 - 2013-07-31 14:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 14:29 - 2013-07-31 14:29 - 00001127 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 14:28 - 2013-07-31 14:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 14:28 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-31 14:26 - 2013-07-31 14:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (2).exe 2013-07-31 13:13 - 2013-07-31 13:13 - 00014547 _____ C:\Users\Fritz-Otto\Desktop\attach.txt 2013-07-31 12:48 - 2013-08-01 08:19 - 00000224 _____ C:\Windows\setupact.log 2013-07-31 12:48 - 2013-07-31 12:48 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 11:55 - 2013-07-31 11:55 - 00001577 _____ C:\Windows\ScriptMakerUninstall.MIF 2013-07-31 09:19 - 2013-07-31 09:19 - 14713592 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbsb-setup- 2013-07-31 08:06 - 2013-07-31 08:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (1).exe 2013-07-30 21:11 - 2013-07-30 21:11 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-30 21:09 - 2013-07-30 21:10 - 23334896 _____ (Simply Super Software ) C:\Users\Fritz-Otto\Downloads\trjsetup_688.exe 2013-07-30 19:39 - 2013-07-30 19:39 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-30 19:37 - 2013-07-31 09:47 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-30 19:34 - 2013-07-30 19:34 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Fritz-Otto\Downloads\SpyHunter-Installer.exe 2013-07-30 19:21 - 2013-07-30 19:22 - 00000000 ____D C:\Users\Fritz-Otto\Neuer Ordner (3) 2013-07-30 19:19 - 2013-07-30 19:20 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW (1).exe 2013-07-30 19:12 - 2013-07-30 19:13 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW.exe 2013-07-30 18:44 - 2013-07-30 18:44 - 00001205 _____ C:\Users\Fritz-Otto\Downloads\FixNCR.reg 2013-07-30 18:25 - 2013-07-30 18:25 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\backups 2013-07-30 09:12 - 2013-07-30 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- 2013-07-30 08:56 - 2013-07-30 08:56 - 00717160 _____ C:\Users\Fritz-Otto\Downloads\ZipOpenerSetup.exe 2013-07-29 18:08 - 2013-07-30 08:47 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data 2013-07-29 18:08 - 2013-07-29 18:08 - 00000190 _____ C:\Users\Fritz-Otto\Desktop\Amazon.de.url 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\ChromeExtensions 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Tempcce6fbff27c20e217fc92dbf78a29fdf 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Temp11eac2ff5bfac4e5688eac59725150c4 2013-07-29 18:07 - 2013-07-29 18:07 - 00577280 _____ C:\Users\Fritz-Otto\Downloads\Fantastic-3D-Fish-Aquarium-Bildschirmschoner-Setup.exe 2013-07-29 17:53 - 2013-07-29 17:53 - 00000000 ____D C:\Program Files (x86)\NewFreeScreensavers 2013-07-29 17:53 - 2009-12-13 17:55 - 14506543 _____ (nufsoft.com) C:\Windows\SysWOW64\nfsHDWaterfall03.scr 2013-07-29 17:52 - 2013-07-29 17:52 - 10224784 _____ ( ) C:\Users\Fritz-Otto\Downloads\nfsHDWaterfall03.exe 2013-07-25 17:15 - 2013-07-25 17:15 - 00004890 _____ C:\Users\Fritz-Otto\.recently-used.xbel 2013-07-17 18:24 - 2013-07-17 18:26 - 00000000 ____D C:\Wagner cov 2013-07-17 18:17 - 2013-07-17 12:59 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus meinem Leben by Paul von Hindenburg.epub.cov 2013-07-17 18:17 - 2013-07-17 12:58 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Arme Leute by Fyodor Dostoyevsky.epub.cov 2013-07-17 18:17 - 2013-07-17 12:55 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Rembrandt by Hermann Knackfuss.epub.cov 2013-07-17 18:17 - 2013-07-17 12:53 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebensbeschreibung des k. k. Kapellmeisters Wolfgang Amadeus Mozart by Niemetschek.epub.cov 2013-07-17 18:17 - 2013-07-17 12:50 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Cosima Wagner_ Die Tagebucher - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-17 11:02 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Das Braune Buch. Tagebuc - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-17 10:10 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Mein Leben - Autobiographien.epub.cov 2013-07-17 18:17 - 2013-07-13 08:12 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Claus Stortebecker - Engel, Georg.epub.cov 2013-07-17 18:17 - 2013-07-04 09:44 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die_Familie_Stiller_1.epub.cov 2013-07-17 18:17 - 2013-07-04 09:43 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus_alter_Zeit.epub.cov 2013-07-17 18:17 - 2013-07-04 09:42 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Wie_erstelle_ich_ein_perfektes_eBook_.epub.cov 2013-07-17 18:17 - 2013-07-04 09:37 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Dieser_Stress_bringt_mich_noch_um.epub.cov 2013-07-17 18:17 - 2013-07-04 09:36 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Walter_Ulbricht.epub.cov 2013-07-17 18:17 - 2013-06-18 06:44 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Bruder Karamasow (German Edition) - Dostojewski, Fjodor.epub.cov 2013-07-17 18:17 - 2013-06-08 10:38 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Glauser, Friedrich - Der Tee der drei alten Damen.epub.cov 2013-07-17 18:17 - 2013-06-07 20:30 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Ahnen - Freytag, Gustav.epub.cov 2013-07-17 18:17 - 2013-05-31 13:22 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Mai_Benedikt-XVI..epub.cov 2013-07-17 18:17 - 2013-05-31 13:21 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Mein Leben.epub.cov 2013-07-17 18:17 - 2013-05-31 10:52 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Es wird Dich rufen.epub.cov 2013-07-17 18:17 - 2013-05-28 13:40 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Münze im Becher.epub.cov 2013-07-17 18:17 - 2013-05-28 13:40 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die Hebamme von Sylt.epub.cov 2013-07-17 18:17 - 2013-05-21 12:21 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.DDR - Buch der Erinnerung (German Editio - Tschukinskiwicz, F.F_.epub.cov 2013-07-17 18:17 - 2013-05-20 17:02 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebenslanglich - Freiheit verloren. Rech - Helmut Pfeiffer.epub.cov 2013-07-17 18:17 - 2013-05-20 13:51 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Zu dramatischen Ereignissen - Erich Honecker.epub.cov 2013-07-17 18:17 - 2013-05-20 13:01 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Der Mann am Strand.pdf - Administrator.epub.cov 2013-07-17 18:17 - 2013-05-14 16:43 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu – Wikipedia.pdf.cov 2013-07-17 18:17 - 2013-05-14 15:55 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu.pdf.cov 2013-07-17 18:17 - 2013-05-14 15:54 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Machu Picchu.epub.cov 2013-07-17 18:17 - 2013-05-14 15:51 - 00052608 ____H C:\Users\Fritz-Otto\Documents\.Inka.pdf.cov 2013-07-17 18:17 - 2013-05-14 14:22 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Inka.epub.cov 2013-07-17 18:17 - 2013-04-27 15:03 - 00056992 ____H C:\Users\Fritz-Otto\Documents\.Wolfgang Benz - Geschichte des dritten Reiches(1).pdf.cov 2013-07-17 18:17 - 2013-04-26 21:50 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Der schweizerische Robinson - Wyss, Johann.epub.cov 2013-07-17 18:17 - 2013-02-25 21:53 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die neuen Leiden des jungen W.PDF - Berta Butz.epub.cov 2013-07-17 18:17 - 2013-02-25 17:36 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Balduin, Mollhausen - Reisen in die Felsengebirge Nordamerikas.epub.cov 2013-07-17 18:17 - 2012-12-26 11:15 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Zwei an einem Tag _ eBook (German Editio - Nicholls, David.epub.cov 2013-07-17 18:17 - 2012-12-22 13:56 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.ZEIT FUR DIE STERNE - Alan Lightman.epub.cov 2013-07-17 18:17 - 2012-12-06 18:57 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Ostpreu en - Kossert Andreas.epub.cov 2013-07-17 18:17 - 2012-11-07 18:38 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Madame Bovary_ Vollstandige Ausgabe (Ger - Flaubert, Gustave.epub.cov 2013-07-17 18:17 - 2012-11-07 18:24 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Freytag, Gustav - Die Ahnen.epub.cov 2013-07-17 13:41 - 2013-07-17 13:42 - 06724744 _____ C:\Users\Fritz-Otto\Downloads\pg35030-images.epub 2013-07-17 13:10 - 2013-07-17 13:10 - 00001723 _____ C:\Users\Fritz-Otto\Desktop\Google Drive.lnk 2013-07-17 13:09 - 2013-08-01 08:20 - 00000000 ___SD C:\Users\Fritz-Otto\Google Drive 2013-07-17 12:52 - 2013-07-17 12:52 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job 2013-07-17 12:51 - 2013-07-17 12:51 - 00000000 ____D C:\Users\Fritz-Otto\AppData\LocalGoogle 2013-07-17 12:49 - 2013-07-17 12:49 - 00781760 _____ (Google Inc.) C:\Users\Fritz-Otto\Downloads\googledrivesync.exe 2013-07-17 11:59 - 2013-07-17 11:59 - 00295992 _____ C:\Users\Fritz-Otto\Downloads\pg13272i.epub 2013-07-17 11:44 - 2013-07-17 11:44 - 00672608 _____ () C:\Users\Fritz-Otto\Downloads\BestCodecsPackSetup.exe 2013-07-17 11:37 - 2013-07-17 11:37 - 00445297 _____ C:\Users\Fritz-Otto\Downloads\LisztGesammelteSchriftenB4.epub 2013-07-17 10:08 - 2013-07-17 10:08 - 01102964 _____ C:\Users\Fritz-Otto\Documents\Wagner Werke.tif 2013-07-16 11:55 - 2013-07-16 11:56 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\calibre-cache 2013-07-16 09:35 - 2013-07-16 09:35 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2013-07-16 09:31 - 2013-07-16 09:33 - 52108800 _____ C:\Users\Fritz-Otto\Downloads\calibre-0.9.39.msi 2013-07-16 09:24 - 2013-07-16 09:25 - 15422099 _____ C:\Users\Fritz-Otto\Downloads\Werke und Schriften.zip 2013-07-16 09:20 - 2013-07-16 09:20 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner 2013-07-16 09:16 - 2013-07-16 09:17 - 12778281 _____ C:\Users\Fritz-Otto\Downloads\Tagebücher Richard und Cosima Wagner.zip 2013-07-16 09:14 - 2013-07-16 09:19 - 105207752 _____ C:\Users\Fritz-Otto\Downloads\Briefe.zip 2013-07-16 09:04 - 2013-07-16 09:17 - 358729272 _____ C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner.zip 2013-07-16 08:48 - 2013-07-16 08:48 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Noten 2013-07-16 08:06 - 2013-07-16 08:39 - 646843375 _____ C:\Users\Fritz-Otto\Downloads\Noten.zip 2013-07-16 08:06 - 2013-07-16 08:38 - 455449777 _____ C:\Users\Fritz-Otto\Downloads\Bücher.zip 2013-07-15 10:41 - 2013-07-15 10:46 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10 (1).rar 2013-07-15 10:14 - 2013-07-15 10:14 - 01113024 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 09681672 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 07774800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 06620856 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15 (1).rar 2013-07-15 10:13 - 2013-07-15 10:15 - 05024976 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18 (1).rar 2013-07-15 10:04 - 2013-07-15 10:05 - 09682967 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13 (1).rar 2013-07-15 10:04 - 2013-07-15 10:05 - 02700720 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14 (1).rar 2013-07-15 10:03 - 2013-07-15 10:08 - 22366872 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (2).rar 2013-07-15 10:03 - 2013-07-15 10:07 - 18004800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12 (1).rar 2013-07-15 10:03 - 2013-07-15 10:05 - 19042447 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09 (1).rar 2013-07-15 09:28 - 2013-07-15 09:35 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06 (1).rar 2013-07-15 09:28 - 2013-07-15 09:32 - 41943000 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08 (1).rar 2013-07-15 09:28 - 2013-07-15 09:32 - 35764080 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07 (1).rar 2013-07-15 09:28 - 2013-07-15 09:29 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05 (1).rar 2013-07-15 09:27 - 2013-07-15 09:29 - 06825456 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03 (1).rar 2013-07-15 09:27 - 2013-07-15 09:29 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04 (1).rar 2013-07-15 09:27 - 2013-07-15 09:28 - 09362496 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02 (1).rar 2013-07-15 09:18 - 2013-07-15 09:20 - 20844648 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01 (1).rar 2013-07-15 09:08 - 2013-07-17 09:59 - 00000000 ____D C:\richard wagner 2013-07-15 08:58 - 2013-07-15 08:58 - 00903080 _____ (Oracle Corporation) C:\Users\Fritz-Otto\Downloads\chromeinstall-7u25.exe 2013-07-15 08:56 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-15 08:56 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-15 08:56 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-15 08:56 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-15 08:56 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-15 08:56 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-15 08:56 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-15 08:56 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-15 08:56 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-15 08:56 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-15 08:55 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-15 08:54 - 2013-07-15 09:00 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (1).rar 2013-07-15 08:47 - 2013-07-15 08:50 - 06604488 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646 (1).zip 2013-07-12 07:59 - 2013-07-12 08:03 - 42196581 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19.rar 2013-07-12 07:59 - 2013-07-12 08:03 - 36950760 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18.rar 2013-07-12 07:59 - 2013-07-12 08:01 - 12055727 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17.rar 2013-07-12 07:53 - 2013-07-12 08:04 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14.rar 2013-07-12 07:53 - 2013-07-12 08:00 - 76160304 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15.rar 2013-07-12 07:53 - 2013-07-12 07:57 - 26237904 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13.rar 2013-07-12 07:53 - 2013-07-12 07:55 - 08724144 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16.rar 2013-07-12 07:53 - 2013-07-12 07:53 - 02062368 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12.rar 2013-07-12 07:52 - 2013-07-12 07:55 - 25542264 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10.rar 2013-07-12 07:52 - 2013-07-12 07:55 - 12666311 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11.rar 2013-07-12 07:40 - 2013-07-12 07:40 - 02381544 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09.rar 2013-07-12 07:38 - 2013-07-12 07:42 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 18307608 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 10074504 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 06506280 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04.rar 2013-07-12 07:38 - 2013-07-12 07:40 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05.rar 2013-07-12 07:38 - 2013-07-12 07:39 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07.rar 2013-07-12 07:23 - 2013-07-12 07:26 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02.rar 2013-07-12 07:16 - 2013-07-12 07:20 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01.rar 2013-07-12 07:06 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 07:06 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 07:06 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 07:06 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 07:05 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 07:05 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 07:05 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-12 06:59 - 2013-07-12 07:01 - 03609144 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646.zip 2013-07-11 19:41 - 2013-07-11 19:42 - 00000000 ____D C:\Windows\SysWOW64\sda 2013-07-11 19:37 - 2013-07-11 19:36 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll 2013-07-04 10:33 - 2013-07-04 10:33 - 03000371 _____ C:\Users\Fritz-Otto\Downloads\Walter_Ulbricht.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00269083 _____ C:\Users\Fritz-Otto\Downloads\Robert_Blum.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00259500 _____ C:\Users\Fritz-Otto\Downloads\Dieser_Stress_bringt_mich_noch_um.epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit.epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit (1).epub 2013-07-04 09:39 - 2013-07-04 09:40 - 01588455 _____ C:\Users\Fritz-Otto\Downloads\Wie_erstelle_ich_ein_perfektes_eBook_.epub 2013-07-04 09:38 - 2013-07-04 09:38 - 00228507 _____ C:\Users\Fritz-Otto\Downloads\Die_Familie_Stiller_1.epub 2013-07-03 11:29 - 2013-07-03 11:29 - 00000000 ____D C:\Hasenbein-Daten 2013-07-03 11:14 - 2013-07-03 11:18 - 71668452 _____ C:\Users\Fritz-Otto\Downloads\Hasenbein-DE.exe ==================== One Month Modified Files and Folders ======= 2013-08-01 09:40 - 2013-08-01 09:40 - 00000000 ____D C:\FRST 2013-08-01 09:40 - 2013-08-01 09:39 - 01781589 _____ (Farbar) C:\Users\Fritz-Otto\Downloads\FRST64.exe 2013-08-01 08:28 - 2009-07-14 06:45 - 00018928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-01 08:28 - 2009-07-14 06:45 - 00018928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-01 08:22 - 2013-08-01 08:21 - 00001752 _____ C:\Users\Fritz-Otto\Desktop\OnlineScannerApp.exe.lnk 2013-08-01 08:22 - 2012-11-04 10:56 - 00000438 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-08-01 08:20 - 2013-07-17 13:09 - 00000000 ___SD C:\Users\Fritz-Otto\Google Drive 2013-08-01 08:19 - 2013-07-31 12:48 - 00000224 _____ C:\Windows\setupact.log 2013-08-01 08:14 - 2012-02-20 14:51 - 01884817 _____ C:\Windows\WindowsUpdate.log 2013-08-01 08:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-01 07:55 - 2013-08-01 07:52 - 00004050 _____ C:\DelFix.txt 2013-08-01 07:52 - 2013-08-01 07:52 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:55 - 2013-07-31 14:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 14:29 - 2013-07-31 14:29 - 00001127 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 14:29 - 2013-07-31 14:28 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 14:26 - 2013-07-31 14:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (2).exe 2013-07-31 13:13 - 2013-07-31 13:13 - 00014547 _____ C:\Users\Fritz-Otto\Desktop\attach.txt 2013-07-31 12:52 - 2012-02-20 14:49 - 03052016 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-31 12:52 - 2012-02-20 14:10 - 00119120 _____ C:\Users\FRITZ-~1\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-31 12:48 - 2013-07-31 12:48 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 12:46 - 2013-05-26 13:02 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\CheckPoint 2013-07-31 11:55 - 2013-07-31 11:55 - 00001577 _____ C:\Windows\ScriptMakerUninstall.MIF 2013-07-31 11:55 - 2011-09-21 16:00 - 00000000 ____D C:\Program Files (x86)\Steinberg 2013-07-31 11:50 - 2011-11-07 09:44 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Skype 2013-07-31 11:50 - 2011-11-07 09:44 - 00000000 ____D C:\ProgramData\Skype 2013-07-31 11:48 - 2013-05-16 13:56 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2013-07-31 11:37 - 2012-11-23 13:52 - 00000000 ____D C:\Program Files (x86)\AnvSoft 2013-07-31 11:37 - 2012-11-16 11:03 - 00000000 ____D C:\Program Files\PDFCreator 2013-07-31 11:35 - 2013-04-13 16:40 - 00000000 ____D C:\ProgramData\MZ-WinTranslator V21 2013-07-31 11:35 - 2013-04-13 16:40 - 00000000 ____D C:\Program Files (x86)\MZ-WinTranslator V21 2013-07-31 11:34 - 2012-11-10 16:18 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\7-PDFSplitMerge 2013-07-31 11:16 - 2012-09-06 11:13 - 00000000 ____D C:\FreeOCR 2013-07-31 11:14 - 2012-11-21 18:15 - 00000000 ____D C:\Program Files (x86)\eBookConverter 2013-07-31 11:06 - 2011-09-12 15:06 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-07-31 11:05 - 2012-11-07 16:25 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\.Epubor 2013-07-31 10:58 - 2011-10-04 09:06 - 00000000 ____D C:\Program Files\bb 2013-07-31 09:47 - 2013-07-30 19:37 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-31 09:21 - 2012-06-18 19:42 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 09:20 - 2012-11-12 16:02 - 00000000 ____D C:\Windows\Downloaded Installations 2013-07-31 09:19 - 2013-07-31 09:19 - 14713592 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbsb-setup- 2013-07-31 08:50 - 2013-06-30 11:44 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Common 2013-07-31 08:16 - 2012-12-04 09:45 - 00000000 ____D C:\Windows\Minidump 2013-07-31 08:16 - 2011-08-25 00:53 - 00000000 ____D C:\Windows\Panther 2013-07-31 08:08 - 2013-07-31 08:06 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- (1).exe 2013-07-30 21:11 - 2013-07-30 21:11 - 00000000 ____D C:\ProgramData\Simply Super Software 2013-07-30 21:10 - 2013-07-30 21:09 - 23334896 _____ (Simply Super Software ) C:\Users\Fritz-Otto\Downloads\trjsetup_688.exe 2013-07-30 19:39 - 2013-07-30 19:39 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-30 19:34 - 2013-07-30 19:34 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Fritz-Otto\Downloads\SpyHunter-Installer.exe 2013-07-30 19:22 - 2013-07-30 19:21 - 00000000 ____D C:\Users\Fritz-Otto\Neuer Ordner (3) 2013-07-30 19:21 - 2011-08-24 15:20 - 00000000 ____D C:\Users\Fritz-Otto 2013-07-30 19:20 - 2013-07-30 19:19 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW (1).exe 2013-07-30 19:13 - 2013-07-30 19:12 - 05799944 _____ (ParetoLogic, Inc.) C:\Users\Fritz-Otto\Downloads\RegCureProSetup_RW.exe 2013-07-30 18:44 - 2013-07-30 18:44 - 00001205 _____ C:\Users\Fritz-Otto\Downloads\FixNCR.reg 2013-07-30 18:25 - 2013-07-30 18:25 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\backups 2013-07-30 09:12 - 2013-07-30 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fritz-Otto\Downloads\mbam-setup- 2013-07-30 08:56 - 2013-07-30 08:56 - 00717160 _____ C:\Users\Fritz-Otto\Downloads\ZipOpenerSetup.exe 2013-07-30 08:47 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\Windows Net Data 2013-07-29 18:08 - 2013-07-29 18:08 - 00000190 _____ C:\Users\Fritz-Otto\Desktop\Amazon.de.url 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\Fritz-Otto\ChromeExtensions 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Tempcce6fbff27c20e217fc92dbf78a29fdf 2013-07-29 18:08 - 2013-07-29 18:08 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Temp11eac2ff5bfac4e5688eac59725150c4 2013-07-29 18:08 - 2012-02-16 11:39 - 00000000 ___RD C:\Users\Fritz-Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-29 18:07 - 2013-07-29 18:07 - 00577280 _____ C:\Users\Fritz-Otto\Downloads\Fantastic-3D-Fish-Aquarium-Bildschirmschoner-Setup.exe 2013-07-29 17:53 - 2013-07-29 17:53 - 00000000 ____D C:\Program Files (x86)\NewFreeScreensavers 2013-07-29 17:52 - 2013-07-29 17:52 - 10224784 _____ ( ) C:\Users\Fritz-Otto\Downloads\nfsHDWaterfall03.exe 2013-07-25 17:37 - 2011-08-27 19:11 - 00000000 ____D C:\Users\Fritz-Otto\AppData\Roaming\gtk-2.0 2013-07-25 17:37 - 2011-08-27 19:09 - 00000000 ____D C:\Users\Fritz-Otto\.gimp-2.6 2013-07-25 17:15 - 2013-07-25 17:15 - 00004890 _____ C:\Users\Fritz-Otto\.recently-used.xbel 2013-07-25 17:14 - 2012-11-10 16:19 - 00000000 ____D C:\Users\Fritz-Otto\Documents\7-PDF Split & Merge 2013-07-25 10:50 - 2013-04-01 10:39 - 00000000 ____D C:\Users\Fritz-Otto\Documents\Ausflüge 2013 2013-07-25 08:24 - 2012-10-29 11:27 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-07-25 07:44 - 2012-02-18 16:33 - 00000000 ____D C:\ProgramData\UAB 2013-07-25 07:43 - 2011-08-25 00:52 - 00877168 _____ C:\Windows\system32\perfh007.dat 2013-07-25 07:43 - 2011-08-25 00:52 - 00215946 _____ C:\Windows\system32\perfc007.dat 2013-07-25 07:43 - 2009-07-14 07:13 - 02120456 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-17 18:26 - 2013-07-17 18:24 - 00000000 ____D C:\Wagner cov 2013-07-17 18:03 - 2012-08-09 10:52 - 00000000 ____D C:\Users\Fritz-Otto\Calibre Library 2013-07-17 13:42 - 2013-07-17 13:41 - 06724744 _____ C:\Users\Fritz-Otto\Downloads\pg35030-images.epub 2013-07-17 13:10 - 2013-07-17 13:10 - 00001723 _____ C:\Users\Fritz-Otto\Desktop\Google Drive.lnk 2013-07-17 12:59 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus meinem Leben by Paul von Hindenburg.epub.cov 2013-07-17 12:58 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Arme Leute by Fyodor Dostoyevsky.epub.cov 2013-07-17 12:55 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Rembrandt by Hermann Knackfuss.epub.cov 2013-07-17 12:53 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Lebensbeschreibung des k. k. Kapellmeisters Wolfgang Amadeus Mozart by Niemetschek.epub.cov 2013-07-17 12:52 - 2013-07-17 12:52 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job 2013-07-17 12:51 - 2013-07-17 12:51 - 00000000 ____D C:\Users\Fritz-Otto\AppData\LocalGoogle 2013-07-17 12:51 - 2011-08-25 14:49 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\Google 2013-07-17 12:51 - 2011-08-25 14:48 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-17 12:50 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Cosima Wagner_ Die Tagebucher - Autobiographien.epub.cov 2013-07-17 12:49 - 2013-07-17 12:49 - 00781760 _____ (Google Inc.) C:\Users\Fritz-Otto\Downloads\googledrivesync.exe 2013-07-17 11:59 - 2013-07-17 11:59 - 00295992 _____ C:\Users\Fritz-Otto\Downloads\pg13272i.epub 2013-07-17 11:44 - 2013-07-17 11:44 - 00672608 _____ () C:\Users\Fritz-Otto\Downloads\BestCodecsPackSetup.exe 2013-07-17 11:37 - 2013-07-17 11:37 - 00445297 _____ C:\Users\Fritz-Otto\Downloads\LisztGesammelteSchriftenB4.epub 2013-07-17 11:02 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Das Braune Buch. Tagebuc - Autobiographien.epub.cov 2013-07-17 10:29 - 2012-11-08 18:58 - 00194048 ___SH C:\Users\Fritz-Otto\Documents\Thumbs.db 2013-07-17 10:10 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Richard Wagner_ Mein Leben - Autobiographien.epub.cov 2013-07-17 10:08 - 2013-07-17 10:08 - 01102964 _____ C:\Users\Fritz-Otto\Documents\Wagner Werke.tif 2013-07-17 09:59 - 2013-07-15 09:08 - 00000000 ____D C:\richard wagner 2013-07-16 11:56 - 2013-07-16 11:55 - 00000000 ____D C:\Users\FRITZ-~1\AppData\Local\calibre-cache 2013-07-16 09:35 - 2013-07-16 09:35 - 00000960 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2013-07-16 09:35 - 2012-07-14 09:02 - 00000000 ____D C:\Program Files (x86)\Calibre2 2013-07-16 09:33 - 2013-07-16 09:31 - 52108800 _____ C:\Users\Fritz-Otto\Downloads\calibre-0.9.39.msi 2013-07-16 09:25 - 2013-07-16 09:24 - 15422099 _____ C:\Users\Fritz-Otto\Downloads\Werke und Schriften.zip 2013-07-16 09:20 - 2013-07-16 09:20 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner 2013-07-16 09:19 - 2013-07-16 09:14 - 105207752 _____ C:\Users\Fritz-Otto\Downloads\Briefe.zip 2013-07-16 09:17 - 2013-07-16 09:16 - 12778281 _____ C:\Users\Fritz-Otto\Downloads\Tagebücher Richard und Cosima Wagner.zip 2013-07-16 09:17 - 2013-07-16 09:04 - 358729272 _____ C:\Users\Fritz-Otto\Downloads\Biografien und Texte über Wagner.zip 2013-07-16 08:48 - 2013-07-16 08:48 - 00000000 ____D C:\Users\Fritz-Otto\Downloads\Noten 2013-07-16 08:39 - 2013-07-16 08:06 - 646843375 _____ C:\Users\Fritz-Otto\Downloads\Noten.zip 2013-07-16 08:38 - 2013-07-16 08:06 - 455449777 _____ C:\Users\Fritz-Otto\Downloads\Bücher.zip 2013-07-15 11:18 - 2013-03-09 10:12 - 00000000 ____D C:\Users\Fritz-Otto\Documents\Karstens Hochzeit 2013-07-15 10:59 - 2012-05-23 11:41 - 00000000 ____D C:\Users\Fritz-Otto\Documents\FalkData 2013-07-15 10:46 - 2013-07-15 10:41 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 09681672 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 07774800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 06620856 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15 (1).rar 2013-07-15 10:15 - 2013-07-15 10:13 - 05024976 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18 (1).rar 2013-07-15 10:14 - 2013-07-15 10:14 - 01113024 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19 (1).rar 2013-07-15 10:08 - 2013-07-15 10:03 - 22366872 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (2).rar 2013-07-15 10:07 - 2013-07-15 10:03 - 18004800 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12 (1).rar 2013-07-15 10:05 - 2013-07-15 10:04 - 09682967 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13 (1).rar 2013-07-15 10:05 - 2013-07-15 10:04 - 02700720 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14 (1).rar 2013-07-15 10:05 - 2013-07-15 10:03 - 19042447 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09 (1).rar 2013-07-15 09:35 - 2013-07-15 09:28 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06 (1).rar 2013-07-15 09:32 - 2013-07-15 09:28 - 41943000 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08 (1).rar 2013-07-15 09:32 - 2013-07-15 09:28 - 35764080 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07 (1).rar 2013-07-15 09:29 - 2013-07-15 09:28 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05 (1).rar 2013-07-15 09:29 - 2013-07-15 09:27 - 06825456 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03 (1).rar 2013-07-15 09:29 - 2013-07-15 09:27 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04 (1).rar 2013-07-15 09:28 - 2013-07-15 09:27 - 09362496 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02 (1).rar 2013-07-15 09:20 - 2013-07-15 09:18 - 20844648 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01 (1).rar 2013-07-15 09:09 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-15 09:09 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-15 09:00 - 2013-07-15 08:54 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11 (1).rar 2013-07-15 08:58 - 2013-07-15 08:58 - 00903080 _____ (Oracle Corporation) C:\Users\Fritz-Otto\Downloads\chromeinstall-7u25.exe 2013-07-15 08:57 - 2011-08-28 08:56 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-15 08:50 - 2013-07-15 08:47 - 06604488 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646 (1).zip 2013-07-15 08:47 - 2011-08-25 10:42 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-15 08:42 - 2012-05-12 22:06 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-15 08:42 - 2012-02-18 15:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 08:12 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Claus Stortebecker - Engel, Georg.epub.cov 2013-07-12 08:04 - 2013-07-12 07:53 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part14.rar 2013-07-12 08:03 - 2013-07-12 07:59 - 42196581 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part19.rar 2013-07-12 08:03 - 2013-07-12 07:59 - 36950760 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part18.rar 2013-07-12 08:01 - 2013-07-12 07:59 - 12055727 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part17.rar 2013-07-12 08:00 - 2013-07-12 07:53 - 76160304 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part15.rar 2013-07-12 07:57 - 2013-07-12 07:53 - 26237904 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part13.rar 2013-07-12 07:55 - 2013-07-12 07:53 - 08724144 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part16.rar 2013-07-12 07:55 - 2013-07-12 07:52 - 25542264 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part10.rar 2013-07-12 07:55 - 2013-07-12 07:52 - 12666311 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part11.rar 2013-07-12 07:53 - 2013-07-12 07:53 - 02062368 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part12.rar 2013-07-12 07:42 - 2013-07-12 07:38 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part06.rar 2013-07-12 07:40 - 2013-07-12 07:40 - 02381544 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part09.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 18307608 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part03.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 10074504 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part08.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 06506280 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part04.rar 2013-07-12 07:40 - 2013-07-12 07:38 - 04288416 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part05.rar 2013-07-12 07:39 - 2013-07-12 07:38 - 04918584 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part07.rar 2013-07-12 07:26 - 2013-07-12 07:23 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part02.rar 2013-07-12 07:20 - 2013-07-12 07:16 - 104857600 _____ C:\Users\Fritz-Otto\Downloads\richard wagner.part01.rar 2013-07-12 07:01 - 2013-07-12 06:59 - 03609144 _____ C:\Users\Fritz-Otto\Downloads\WAGNER von 202407646.zip 2013-07-11 19:42 - 2013-07-11 19:41 - 00000000 ____D C:\Windows\SysWOW64\sda 2013-07-11 19:37 - 2013-02-17 11:16 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-07-11 19:37 - 2011-08-25 12:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-11 19:36 - 2013-07-11 19:37 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll 2013-07-11 11:36 - 2012-11-20 10:19 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Bilder und Videos machen 2013-07-11 11:36 - 2012-11-20 10:18 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Musik machen 2013-07-11 11:35 - 2012-10-15 08:54 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\SchreibenDruckenSkannen 2013-07-11 11:34 - 2012-11-20 10:34 - 00000000 ___RD C:\Users\Fritz-Otto\Desktop\Computer warten 2013-07-04 10:33 - 2013-07-04 10:33 - 03000371 _____ C:\Users\Fritz-Otto\Downloads\Walter_Ulbricht.epub 2013-07-04 09:44 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Die_Familie_Stiller_1.epub.cov 2013-07-04 09:43 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Aus_alter_Zeit.epub.cov 2013-07-04 09:42 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Wie_erstelle_ich_ein_perfektes_eBook_.epub.cov 2013-07-04 09:40 - 2013-07-04 09:40 - 00269083 _____ C:\Users\Fritz-Otto\Downloads\Robert_Blum.epub 2013-07-04 09:40 - 2013-07-04 09:40 - 00259500 _____ C:\Users\Fritz-Otto\Downloads\Dieser_Stress_bringt_mich_noch_um.epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit.epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01897252 _____ C:\Users\Fritz-Otto\Downloads\Aus_alter_Zeit (1).epub 2013-07-04 09:40 - 2013-07-04 09:39 - 01588455 _____ C:\Users\Fritz-Otto\Downloads\Wie_erstelle_ich_ein_perfektes_eBook_.epub 2013-07-04 09:38 - 2013-07-04 09:38 - 00228507 _____ C:\Users\Fritz-Otto\Downloads\Die_Familie_Stiller_1.epub 2013-07-04 09:37 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Dieser_Stress_bringt_mich_noch_um.epub.cov 2013-07-04 09:36 - 2013-07-17 18:17 - 00066856 ____H C:\Users\Fritz-Otto\Documents\.Walter_Ulbricht.epub.cov 2013-07-03 13:12 - 2011-09-06 17:05 - 00000000 ____D C:\Program Files (x86)\AVS4YOU 2013-07-03 11:29 - 2013-07-03 11:29 - 00000000 ____D C:\Hasenbein-Daten 2013-07-03 11:18 - 2013-07-03 11:14 - 71668452 _____ C:\Users\Fritz-Otto\Downloads\Hasenbein-DE.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2012-02-19 10:02 ==================== End Of Log ============================ /CODE] Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2013 03 Ran by Fritz-Otto at 2013-08-01 09:44:37 Running from C:\Users\Fritz-Otto\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Update for Microsoft Office 2007 (KB2508958) (x32) "Nero SoundTrax Help (x32 Version: 64 Bit HP CIO Components Installer (Version: 7.2.8) ABBYY FineReader 6.0 Sprint (x32 Version: 6.00.2263.40821) ACCU-CHEK 360° (x32 Version: 1.0.35) Adobe AIR (x32 Version: Adobe Digital Editions 2.0 (x32 Version: 2.0) Adobe Download Assistant (x32 Version: 1.2.3) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.169) Adobe Flash Player 11 Plugin (x32 Version: Adobe Photoshop 7.0 (x32 Version: 7.0) Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7) Advertising Center (x32 Version: AIO_CDB_Software (x32 Version: 130.0.365.000) AIO_Scan (x32 Version: 130.0.421.000) AmazingMIDI (x32) Amazon Kindle (HKCU) Ashampoo ClipFinder HD v.2.2.9 (x32 Version: 2.2.9) Ashampoo WinOptimizer 2012 v.8.1.4 (x32 Version: 8.1.4) Audacity 2.0.3 (x32 Version: 2.0.3) Belkin Desktop PCI Card Driver (x32 Version: 1.12.0005) Borland Data Engine (x32 Version: 5.2.0) BufferChm (x32 Version: 130.0.331.000) Cakewalk Pro Audio 8.0 Demo (x32) calibre (x32 Version: 0.9.39) Canon Easy-PhotoPrint EX (x32) Canon Easy-WebPrint EX (x32) Canon Inkjet Printer Driver Add-On Module V2.00 Canon Inkjet Printer/Scanner/Fax Extended Survey Program (x32) Canon iP4800 series Benutzerregistrierung (x32) Canon iP4800 series Printer Driver Canon My Printer (x32) Canon Solution Menu EX (x32) CCFinder (x32 Version: 1.0) CDBurnerXP (x32 Version: CDBurnerXP Packages (HKCU) CD-LabelPrint (x32) CheckDrive (x32 Version: 3.0) C-Media PCI Audio Device Copy (x32 Version: 130.0.428.000) D3DX10 (x32 Version: 15.4.2368.0902) DDBAC (x32 Version: 4.3.67) Debut Video Capture Software (x32) Destinations (x32 Version: DeviceDiscovery (x32 Version: 130.0.465.000) Digitale Bibliothek 4 (x32 Version: ) DocProc (x32 Version: DolbyFiles (x32 Version: 2.0) dows-Treiberpaket - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 (Version: 09/09/2009 Driver Detective (x32 Version: 7) DVD Shrink 3.2 deutsch (DeCSS-frei) (x32) DVD-Cover v. (x32) ELECTRA 2.8 (x32) EPSON Scan (x32) ESET Online Scanner v3 (x32) Falk Navi-Manager classic (x32 Version: 2.11.0) Fax (x32 Version: 130.0.418.000) Fotogalerie (x32 Version: 16.4.3508.0205) Free Screen Video Recorder version (x32 Version: Free Video Converter V 3.1 (x32 Version: GIMP 2.6.8 Google Chrome (HKCU Version: 27.0.1453.110) Google Drive (x32 Version: 1.10.4769.632) Google Update Helper (x32 Version: GPBaseService2 (x32 Version: 130.0.371.000) GPL Ghostscript (Version: 9.04) Greenshot (x32) HP Customer Participation Program 13.0 (Version: 13.0) HP Imaging Device Functions 13.0 (Version: 13.0) HP Photosmart Essential 3.5 (Version: 3.5) HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (Version: 13.0) HP Smart Web Printing 4.51 (Version: 4.51) HP Solution Center 13.0 (Version: 13.0) HP Update (x32 Version: HPDiagnosticAlert (x32 Version: 1.00.0000) HPPhotoGadget (x32 Version: HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000) HPPhotosmartEssential (x32 Version: 2.04.0000) HPProductAssistant (x32 Version: 130.0.371.000) HPSSupply (x32 Version: 130.0.371.000) ImagXpress (x32 Version: intelliScore Ensemble MP3 to MIDI Converter Demo (x32 Version: 8.1) Junk Mail filter update (x32 Version: 16.4.3508.0205) Lernout & Hauspie TruVoice for Microsoft Agent (x32) Lexware Info Service (x32 Version: Lexware online banking (x32 Version: Ludwig 3.0 (x32 Version: MAGIX Foto & Grafik Designer 6 SE (Version: MAGIX Foto & Grafik Designer 6 SE (x32 Version: Malwarebytes Anti-Malware Version (x32 Version: MarketResearch (x32 Version: 130.0.374.000) M-DVD.Org 2011 - "Ver. 3.2 Update" (x32 Version: 3.2) Media converter (x32) mediAvatar PDF to EPUB Converter (x32 Version: MEDUSA4 PERSONAL V5.0.1 (x32 Version: V5.0.1) Menu Templates - Starter Kit (x32 Version: Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Antimalware (Version: 3.0.8402.2) Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42) Microsoft Security Client (Version: 2.1.1116.0) Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0) Microsoft Security Essentials (Version: 2.1.1116.0) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SkyDrive (HKCU Version: 17.0.2011.0627) Microsoft SQL Server 2005 (x32) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft SQL Server 2005 Express Edition (ACCUCHEK360) (x32 Version: 9.4.5000.00) Microsoft SQL Server 2005 Tools Express Edition (x32 Version: 9.4.5000.00) Microsoft SQL Server 2008 R2 (64-Bit) Microsoft SQL Server 2008 R2 Native Client (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2 RsFx Driver (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2-Setup (Deutsch) (Version: 10.51.2500.0) Microsoft SQL Server 2008 R2-Setup (Deutsch) (x32 Version: 10.51.2500.0) Microsoft SQL Server Browser (x32 Version: 10.51.2500.0) Microsoft SQL Server Management Objects Collection (Version: 9.00.1399.06) Microsoft SQL Server Native Client (Version: 9.00.5000.00) Microsoft SQL Server Setup Support Files (English) (x32 Version: 9.00.5000.00) Microsoft SQL Server VSS Writer (Version: 10.51.2500.0) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Windows Media Video 9 VCM (x32) Microsoft_VC100_CRT_x86 (x32 Version: 1.0.0) Midibwin (x32) Movie Maker (x32 Version: 16.4.3508.0205) Movie Templates - Starter Kit (x32 Version: MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0) MyKeyFinder (x32 Version: 2013) MyTube Bigpack HD Free (x32 Version: Nero 10 Menu TemplatePack 2 (x32 Version: 10.6.10100.0.0) Nero 9 (x32) Nero BackItUp (x32 Version: 5.2.6000) Nero BackItUp and Burn (x32 Version: 1.2.0009) Nero Backup Drivers (Version: 1.0.11100.8.0) Nero Burning ROM Help (x32 Version: Nero BurnRights (x32 Version: Nero BurnRights (x32 Version: 3.6.17000) Nero BurnRights Help (x32 Version: Nero ControlCenter (x32 Version: Nero CoverDesigner (x32 Version: Nero CoverDesigner Help (x32 Version: Nero Disc Copy Gadget (x32 Version: Nero Disc Copy Gadget Help (x32 Version: Nero DiscSpeed (x32 Version: Nero DiscSpeed Help (x32 Version: Nero DriveSpeed (x32 Version: Nero DriveSpeed Help (x32 Version: Nero Express (x32 Version: 9.6.11000) Nero Express Help (x32 Version: Nero InfoTool (x32 Version: Nero InfoTool Help (x32 Version: Nero Installer (x32 Version: Nero Live (x32 Version: Nero Live Help (x32 Version: Nero PhotoSnap (x32 Version: Nero PhotoSnap Help (x32 Version: Nero Recode (x32 Version: Nero Recode Help (x32 Version: Nero Rescue Agent (x32 Version: Nero RescueAgent (x32 Version: 2.6.13000) Nero RescueAgent Help (x32 Version: Nero ShowTime (x32 Version: Nero ShowTime (x32 Version: Nero StartSmart (x32 Version: Nero StartSmart Help (x32 Version: Nero Vision (x32 Version: Nero Vision Help (x32 Version: Nero WaveEditor (x32 Version: NeroBurningROM (x32 Version: NeroExpress (x32 Version: NeroLiveGadget (x32 Version: NeroLiveGadget Help (x32 Version: neroxml (x32 Version: 1.0.0) Network64 (Version: 130.0.572.000) Network64 (Version: NewFreeScreensaver nfsHDWaterfall03 (x32) Noteur (C:\Program Files (x86)\Noteur\) (x32) Noteur (x32) NVIDIA Install Application (Version: 2.1002.62.312) OCR Software by I.R.I.S. 13.0 (Version: 13.0) OpenAL (x32) Organ Roll Scanner V2.1 Trial version (x32) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) PhotoScape (x32) Pinnacle Instant DVD Recorder (x32 Version: 2.00.088) Pinnacle Studio 14 (x32 Version: Pinnacle Studio Ultimate Plugins (x32 Version: Pinnacle Video Treiber (Version: Plus-HD-1.6 (x32 Version: Plus-HD-2.3 (x32 Version: Prism Video File Converter (x32) proDAD Heroglyph 2.5 (x32) proDAD Vitascene 1.0 (x32) Python 2.3.2 (x32 Version: 2.3.2) Quicken 2011 - ServicePack 4 (x32 Version: Quicken 2011 (x32 Version: Quicken Import Export Server 2011 (x32 Version: QuickShare (x32 Version: Realtek High Definition Audio Driver (x32 Version: Realtek USB 2.0 Card Reader (x32 Version: 6.1.7601.30133) Red Giant ToonIt Studio (x32) RedMon - Redirection Port Monitor Resource Hacker Version 3.6.0 (x32) Scan (x32 Version: Sceneo AbsolutTV (x32) Serif PhotoPlus X3 (x32 Version: Service Pack 1 für SQL Server 2008 R2 (KB2528583) (64-bit) (Version: 10.51.2500.0) Service Pack 1 für SQL Server 2008 R2 (KB2528583) (x32 Version: 10.51.2500.0) Servicepack Datumsaktualisierung (x32 Version: Shop for HP Supplies (Version: 13.0) SmartWebPrinting (x32 Version: 130.0.457.000) SolutionCenter (x32 Version: 130.0.373.000) SoundTrax (x32 Version: Speccy (Version: 1.19) SQL Server 2008 R2 Database Engine Services (Version: 10.50.1600.1) SQL Server 2008 R2 SP1 Common Files (Version: 10.51.2500.0) SQL Server 2008 R2 SP1 Database Engine Services (Version: 10.51.2500.0) SQL Server 2008 R2 SP1 Database Engine Shared (Version: 10.51.2500.0) Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1) Status (x32 Version: 130.0.469.000) Studio 11 (x32 Version: 11.0) Studio 11 (x32 Version: Studio 11 Bonus DVD (x32 Version: Studio Ultimate (x32 Version: 11.00.0013) SureThing Express Labeler (x32) Target 3001! V15 discover (x32 Version: ) Target 3001! V16 discover (x32 Version: ) Toolbox (x32 Version: 130.0.648.000) TrayApp (x32 Version: 130.0.422.000) TubeBox (x32 Version: UnloadSupport (x32 Version: 11.0.0) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (Version: 10.1.2731.0) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (x32 Version: 10.1.2731.0) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Codec Pack (HKCU) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) VHD Attach 1.00 Video Download Capture V4.3.4 (x32 Version: 4.3.4) Virtual MIDI Piano Keyboard (x32 Version: 0.4.0) Vivaldi Scan Via Web (German Version) (x32 Version: 2003 a) VLC media player 2.0.2 (x32 Version: 2.0.2) VS2005 Redist (x32 Version: 1.0.0) WebReg (x32 Version: Windows Driver Package - Roche (WinUSB) PHDC (07/08/2010 (Version: 07/08/2010 Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live Family Safety (Version: 16.4.3508.0205) Windows Live Family Safety (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Mail (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live MIME IFilter (Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows Live Writer (x32 Version: 16.4.3508.0205) Windows Live Writer Resources (x32 Version: 16.4.3508.0205) Windows Mobile-Gerätecenter (Version: 6.1.6965.0) Windows Utils (x32) WinRAR (x32) WinRAR 4.01 (64-Bit) (Version: 4.01.0) WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137) Yahoo! Desktop Login (x32 Version: 1.00.0001) Yahoo! Toolbar (x32) YouTube Song Downloader (x32 Version: 8.2) ZoneAlarm Antivirus (x32 Version: ZoneAlarm Firewall (x32 Version: ZoneAlarm Security (x32 Version: ==================== Restore Points ========================= 01-08-2013 05:53:35 Ende der Bereinigung ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0D8EEFE3-A650-469E-AF3B-D213798A5EFD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-17] (Google Inc.) Task: {30462760-0EC0-42E7-927A-EF562367F964} - System32\Tasks\{3EB3471C-0BD1-4097-A9F2-0C2F4CA0CB66} => C:\Program Files (x86)\Steinberg\Cubase SX\Cubasesx.exe No File Task: {3DEA78EF-FA85-459E-B3AB-E812975F92BC} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: {3EB60CCA-CCCA-4B2A-AE00-058F8D550FA0} - System32\Tasks\{556DAB0F-1864-4C2F-99B3-914F28BE6E36} => C:\Program Files (x86)\Steinberg\Cubase SX\Cubasesx.exe No File Task: {46929858-0954-4495-8F75-5471183D42B4} - System32\Tasks\{47EF1AF1-F78F-4C1E-A2C5-CE88F2264353} => C:\Program Files (x86)\Synthesia\Synthesia.exe No File Task: {4A967B84-2B86-43BF-A3F0-E5037938E6EB} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe No File Task: {8B627E2D-018D-4F95-B2B9-F37857CB2392} - System32\Tasks\{249FAA65-4C56-48EE-91F1-03693C450B5E} => C:\Program Files (x86)\Internet Explorer\iexplore.exe [2013-06-12] (Microsoft Corporation) Task: {A388E5AD-3C04-47C1-A05A-33996E1DEED8} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {A3937BDC-319D-4DC9-93C8-1FE554B01888} - System32\Tasks\{47F25A9B-4AAC-4F15-832C-867B3A04AC04} => C:\Program Files (x86)\Synthesia\Synthesia.exe No File Task: {AFA3C515-ABFF-4C9A-9B3E-BC58B2C5278E} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => C:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27] (Microsoft Corporation) Task: {BC02272A-B2AF-46E3-B99C-C20D29019F4D} - System32\Tasks\AbelssoftPreloader => C:\Program Files (x86)\WashAndGo\AbelssoftPreloader.exe No File Task: {D5F5D1DD-63D1-44C9-99DE-7DE09572F040} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-17] (Google Inc.) Task: {FB111ADF-6AD5-4AD8-A42F-1EFD069740EC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: C:\Windows\Tasks\0.job => c:\program files\internet explorer\iexplore.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\CheckDriveBackgroundGuard.job => C:\Program Files (x86)\CheckDrive\CheckDriveBackgroundGuard.exe Task: C:\Windows\Tasks\Driver Detective-RTMRules.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\Driver Detective-RTMScan.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\Driver Detective-RTMUpdater.job => C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce82dbaaa4267a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2944386974-3030254299-258376957-1000Core1ce520a76066d2.job => C:\Users\Fritz-Otto\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Happy Lyrics Update.job => C:\Program Files (x86)\HappyLyrics\HLUpdater.exe Task: C:\Windows\Tasks\Plus-HD-1.6-chromeinstaller.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-chromeinstaller.exe Task: C:\Windows\Tasks\Plus-HD-1.6-codedownloader.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-codedownloader.exe Task: C:\Windows\Tasks\Plus-HD-1.6-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-firefoxinstaller.exe Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/31/2013 09:36:28 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 02:55:24 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 02:54:51 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/31/2013 11:47:42 AM) (Source: Microsoft-Windows-RestartManager) (User: RECHNER01) Description: Die Anwendung oder der Dienst "Internet Explorer" konnte nicht heruntergefahren werden. Error: (07/31/2013 08:56:11 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 10.0.9200.16635, Zeitstempel: 0x51b7a921 Name des fehlerhaften Moduls: IEFRAME.dll, Version: 10.0.9200.16635, Zeitstempel: 0x51b7abdb Ausnahmecode: 0xc0000005 Fehleroffset: 0x004ac072 ID des fehlerhaften Prozesses: 0x824 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/31/2013 08:54:17 AM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Error: (07/31/2013 08:54:15 AM) (Source: ESENT) (User: ) Description: DllHost (4304) WebCacheLocal: Fehler -1811 beim Öffnen von Protokolldatei C:\Users\Fritz-Otto\AppData\Local\Microsoft\Windows\WebCache\V01011CC.log. System errors: ============= Error: (08/01/2013 08:21:46 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Aspi32 Error: (08/01/2013 08:19:50 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:19:47 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:19:45 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 08:18:42 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\Aspi32.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/01/2013 07:38:19 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Aspi32 Error: (08/01/2013 07:36:20 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:36:17 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:36:15 AM) (Source: hasplms) (User: ) Description: ERROR: Sentinel LDK License Manager failed to start in a promptly manner! Error: (08/01/2013 07:35:07 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\Aspi32.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Microsoft Office Sessions: ========================= Error: (09/25/2012 10:54:31 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5637 seconds with 4620 seconds of active time. This session ended with a crash. Error: (06/05/2012 10:50:09 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 373 seconds with 360 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-07-31 11:28:14.982 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 11:15:58.759 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:56:52.144 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:25:55.192 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:11:28.618 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 10:01:20.548 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 09:41:59.461 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 09:12:01.500 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 08:49:21.821 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-31 08:08:33.226 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 8062.55 MB Available physical RAM: 5677.32 MB Total Pagefile: 16123.29 MB Available Pagefile: 13488.13 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:292.97 GB) (Free:82.87 GB) NTFS (Disk=0 Partition=1) Drive d: () (Fixed) (Total:341.8 GB) (Free:293.51 GB) NTFS (Disk=0 Partition=2) Drive k: () (Fixed) (Total:296.75 GB) (Free:296.47 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 6650020E) Partition 1: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=342 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=297 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter SystemLook 30.07.11 by jpshortstuff Log created at 09:49 on 01/08/2013 by Fritz-Otto Administrator - Elevation successful ========== regfind ========== Searching for "getwindowinfo" No data found. -= EOF =- |
![]() | #13 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > Gut, dann weiter: Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Fix mit FRST Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] C:\Program Files\Enigma Software Group CHR Extension: (wxDownload) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl\4_0 C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffonkgocfjhkkdcaaamakaiannpoodgl CHR Extension: (Amazon-Icon) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg\1.0_0 CHR HKLM-x32\...\Chrome\Extension: [ealchnonpofjocgofjpopjdoegbbkofj] - C:\Program Files (x86)\HappyLyrics\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [ffonkgocfjhkkdcaaamakaiannpoodgl] - C:\ProgramData\wxDownload\ffonkgocfjhkkdcaaamakaiannpoodgl.crx CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Fritz-Otto\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx C:\Program Files (x86)\HappyLyrics C:\ProgramData\wxDownload C:\Users\Fritz-Otto\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg CHR Extension: (OfferMosquito) - C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk\0.5_0 C:\Users\FRITZ-~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk BHO-x32: AddLyrics - {4145006D-47F8-42F2-8186-2225AAFECDD3} - No File BHO-x32: Happy Lyrics - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} - No File SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E62696E672E636F6D2F7365617263683F713D7B7365617263685465726D737D267372633D49452D536561726368426F7826464F524D3D494531305352&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {1857EB5B-D00E-4735-B692-A0A2ACE428C2} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {30953AF2-3ACF-4C4A-95A4-4EE4FBA2E472} URL = hxxp://searchya.com.anonymize-me.de/?anonymto=687474703A2F2F73656172636879612E636F6D2F3F63686E6C3D66742D31303026733D312663723D313832343336323131352663643D32587A757441744E3259314C31517A7574447444744330417A7974427945304330427A7A7A7A794579437442304430433041744E304430547A757442744474437442744474427443794426713D7B7365617263685465726D737D&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {3FFFD058-3827-4FE3-80BD-50C1A08F5626} URL = hxxp://search.conduit.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E636F6E647569742E636F6D2F526573756C74734578742E617370783F713D7B7365617263685465726D737D26536561726368536F757263653D3426637469643D435433323831333438264355493D554E3237323437333739393837333632323033&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {48D70149-4F37-4B73-BA94-FDBFA13D2A8F} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {5C66694B-FCF2-4C38-B6A4-45D122D3CF5C} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E676F6F676C652E636F6D2F7365617263683F713D7B7365617263685465726D737D26726C733D636F6D2E6D6963726F736F66743A7B6C616E67756167657D3A7B72656665727265723A736F757263653F7D2669653D7B696E707574456E636F64696E677D266F653D7B6F7574707574456E636F64696E677D26736F7572636569643D69653726726C7A3D314937505246425F6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 SearchScopes: HKCU - {7958E9E4-D76A-42B5-9396-6F48D8CEA6ED} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {C245A1C0-5FA5-45DC-B036-2452CA8691ED} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F1A310F4-0E68-4A88-8E0F-4BD13617EFE5} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F6675C1B-8082-41E1-B133-5E14A6254326} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&mode=bounce&k=0 SearchScopes: HKCU - {F781FEE5-A41A-40B9-8A0F-4CA1A6CEF611} URL = hxxp://search.zonealarm.com.anonymize-me.de/?anonymto=687474703A2F2F7365617263682E7A6F6E65616C61726D2E636F6D2F7365617263683F7372633D737026746269643D6261736532303133264C616E3D646526713D7B7365617263685465726D737D2667753D34386332643133653238663734663139623633663862396563373634626162392674753D31304758303030384731423030303826736B753D267473747349643D267665723D2626723D323635&st={searchTerms}&clid=1456875a-d885-4a5a-8e7d-b54f87cd0658&pid=dcude&k=0 AppInit_DLLs: C:\PROGRA~2\Windows iLivid C:\PROGRA~2\Windows iLivid C:\PROGRA~2\SearchCore for for C:\PROGRA~2\SearchCore for for [97280 2009-07-14] () HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKLM\...\Run: [Ocs_SM] - C:\Users\Fritz-Otto\AppData\Roaming\OCS\SM\SearchAnonymizer.exe [x] C:\Users\Fritz-Otto\AppData\Roaming\OCS
Schritt 2: Adware entfernen mit JRT Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 3: Kontrollscan mit FRST Führe wie zuvor beschrieben einen Scan mit FRST aus. Es wird nur eine FRST.txt erzeugt. Poste mir diese. Schritt 4: Dein Feedback.
__________________ ![]() ![]() Keine Hilfe per PM! |
![]() | #14 |
![]() | ![]() < http://www_getwindowinfo/ > Fixlist.txt im Ordner von FRST gespeichert. FRST gestartet, auf Fix Butto geklickt, Antwort - No fixlist.txt found. - Woran liegt das |
![]() | #15 |
/// TB-Ausbilder ![]() ![]() ![]() | ![]() < http://www_getwindowinfo/ > Mit Sicherheit daran, dass du es Fixlist.txt.txt benannt hast. Bitte nochmal probieren.
__________________ ![]() ![]() Keine Hilfe per PM! |
![]() |
Themen zu < http://www_getwindowinfo/ > |
heute, hoffe, http://www_getwindowinfo/, lästige, nutze, problem, seite, win32/adware.ibryte.g, win32/adware.ibryte.h, win32/adware.multiplug.h |