|
Log-Analyse und Auswertung: Malware http://www_getwindowinfo/ läßt sich nicht entfernen ...Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
22.08.2013, 10:53 | #1 |
| Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... Hallo !!! ich bin hier neu und das erste mal in einem forum ! ich habe vor 2 tagen einen download gemacht und seit dem lässt sich mein IE nicht mehr schliessen, sobald ich ihn zu mache öffnet er sich von selbst wieder nach einer secunde.......bitte kann mir wer helfen....... DANKE mfg Freddy |
22.08.2013, 11:00 | #2 |
/// TB-Ausbilder | Malware http://www_getwindowinfo/ läßt sich nicht entfernen ...Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Ich habe dein Thema in Arbeit und melde mich so schnell wie möglich mit weiteren Anweisungen. |
22.08.2013, 11:01 | #3 |
/// TB-Ausbilder | Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... Servus,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
22.08.2013, 12:34 | #4 |
| Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... hallo !!! Danke erstmal für deine schnelle antwort !!! wie gesagt war noch nie in einem Forum tätig und kenne mich ned wirklich aus......wo kann ich dir das alles posten ? |
22.08.2013, 16:43 | #5 |
/// TB-Ausbilder | Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... Direkt hier in dieses Thema rein. Das hier beim Posten der Logdateien bitte beachten: Posten eines Logfiles in Code-Tags |
23.08.2013, 07:32 | #6 |
| Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 21-08-2013 02 Ran by fredi (administrator) on 23-08-2013 08:20:51 Running from C:\Users\fredi\Downloads Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AMD) C:\windows\system32\atiesrxx.exe (AMD) C:\windows\system32\atieclxx.exe (Hewlett-Packard Company) C:\windows\system32\Hpservice.exe () C:\Program Files\PC Beschleunigen\PCSUService.exe (Microsoft Corporation) C:\windows\system32\WLANExt.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe () C:\windows\system32\srvany.exe () C:\windows\KMService.exe (Microsoft Corporation) c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Windows Net) C:\Users\fredi\AppData\Roaming\Windows Net Data\net.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Simplygen) C:\Program Files\HomeTab\ProtectedSearch.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Speedchecker) C:\program files\pc speed up extension\pc speed up extension-bg.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Microsoft Corporation) C:\windows\system32\wuauclt.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Farbar) C:\Users\fredi\Downloads\FRST(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [] - [x] HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [1821576 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-25] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2012-03-21] (Synaptics Incorporated) HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1425208 2012-09-20] (Logitech, Inc.) MountPoints2: D - D:\AutoRun.exe MountPoints2: {0679f808-fc98-11e0-b50a-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {25d5cb6c-f3f9-11e1-b48e-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {25d5cb6e-f3f9-11e1-b48e-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {34b2bb6d-f9aa-11e0-8828-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f70-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f8b-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f92-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f94-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f98-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9f9e-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9fa0-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9fa2-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {3d9b9fa6-fa33-11e0-84e8-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {6bc12fe1-4fb2-11df-93b1-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {6bc12fe9-4fb2-11df-93b1-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {747d2fe2-5aa1-11df-b849-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {747d2fe4-5aa1-11df-b849-d8d38521d5c8} - D:\AutoRun.exe MountPoints2: {8c6e6291-f980-11e1-8bde-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {8c6e6293-f980-11e1-8bde-c417fe745c1e} - D:\AutoRun.exe MountPoints2: {cfcdb666-4c89-11df-8321-c417fe745c1e} - D:\setup.exe AUTORUN=1 MountPoints2: {de7f5170-f984-11e0-8717-d8d38521d5c8} - D:\AutoRun.exe IMEO\accelerometerst.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\adddriver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\applemobilebackup.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\applemobiledevicehelper.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\applemobilesync.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\applicationfinder.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\ath.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\callnv32.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\caslexec.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\caslver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\checkbattery.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\checkhdd.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\cleanup.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.apple.ie.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.apple.outlook.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.apple.safari.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.apple.windowscontacts.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.apple.windowsmail.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\com.google.contactsync.client.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\contentdownloader.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\cpqsetver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\diskdoctor.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\diskexplorer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\doc.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\drivedefrag.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\extract.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\gaindiskspace.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\getprestile.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_guestenabled.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_hibernateenable.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_hphcimprove.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_launch.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_srenable.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hc_windowsupdatecheck.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hp info center.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpadvisor.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpbatteryservicelauncher.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpbc.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpcaslnotification.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpcf.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpcplapp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpdeletefftemp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpdeleteietemp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpdeletetemp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpdiags.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpdocviewer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpharddiskcheck.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hphasutil.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hphelpupdater.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hphtmlgen.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpod.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpodinst.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpodlog.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hppcqualify.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpqlbver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpqtoaster.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpqwaver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsabatterydetection.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsadeployer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsamessagebox.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsaredirector.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsascript.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsaupdaterobj.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsaupgrade.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsa_buy_battery.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsa_cip.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsa_link_redirector.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsa_nodisplay.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsf_mode.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsudelpacks.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsusettings.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpsysinfo.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hptcs.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hptile2.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hptileapp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\hpwamain.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\idtpima.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\indual.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\insthpmdp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\integrator.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb835221.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb888111srvrtm.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb888111w2ksp4.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb888111xpsp1.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb888111xpsp2.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kb901105.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\kill process.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\launchfanurl.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\launchhelp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\launchhpreg.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\launchhprm.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\launchonlineclasses.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\lightscribecontrolpanel.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\liveoptimizer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\lslauncher.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\lsprintdialog.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\lsprintingdialog.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\lsrunonce.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\mcoeminfo.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\mdcrashreporttool.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\mingler.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\minihwscan.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\mondisp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\nispatchdetection.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfcstd.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfcui.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfc_util.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfiutil.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdflnk.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfpop.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfsty.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pdfvista.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\performanceoptimizer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\pmlauncher.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\preferenceexecutable.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\processmanager.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\psgredirector.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qlbctrl.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qlbov.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qlbpresov.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qlbw7disp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qlhtmlsupport.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\qmenuov.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\regdataencrypter.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\registrycleaner.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\registrydefrag.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\registrydefraghelper.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\registryeditor.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\regwiz.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\remengine.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\repairwizard.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\report.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\rescuecenter.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\setacl.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\shortcutcleaner.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\shredder.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\silentupdater.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\solexternalhdd.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\ssdk04.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\startupmanager.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\startupoptimizer.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\sttray.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\suhlp.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\symhpe.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\syncdiagnostics.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\syncli.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\syncplanobserver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\syncserver.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\syncuihandler.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\systemcontrol.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\systeminformation.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\tcstouchpoints.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\tuinstallhelper.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\tumessages.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\turboconfig.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\turegopt32.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\tuuuninstallhelper.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\tux64thk.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\undelete.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\uninstallhptca.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\uninstallmanager.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\updatewizard.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\upgradedb.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\vcwmerge.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\versionmanager.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\volctrl.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\wamobctr.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\winemptyrecycle.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\winstyler.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\wireless.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\wizinstaller.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe IMEO\wizlink.exe: [Debugger] "C:\Program Files\PC Beschleunigen\PCSUSD.exe" /debugexe Startup: C:\Users\fredi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk ShortcutTarget: net.lnk -> C:\Users\fredi\AppData\Roaming\Windows Net Data\net.exe (Windows Net) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM/4 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&st=chrome&q= SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKLM - {BEE07099-80E7-4123-A2E3-BC128953F884} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1377068905945.000009&tguid=66920-6787-1377068905945-24F8AB7DF0719F0609CD69989F94843C&q={searchTerms} SearchScopes: HKCU - {BEE07099-80E7-4123-A2E3-BC128953F884} URL = BHO: PC Speed Up Extension - {11111111-1111-1111-1111-110111491187} - C:\Program Files\PC Speed Up Extension\PC Speed Up Extension.dll (Speedchecker) BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll () BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~1\WI3C8A~1\Datamngr\BROWSE~1.DLL (Bandoo Media, inc) BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent) BHO: HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Users\fredi\AppData\Roaming\HomeTab\HomeTab.dll (Simply Tech Ltd.) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: Web Check - {E155F23C-9931-47c6-A619-20E6FCA86D75} - C:\Program Files\Web Check\WebCheck.dll (Web Check) BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - No Name - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll () Toolbar: HKLM - HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Users\fredi\AppData\Roaming\HomeTab\HomeTab.dll (Simply Tech Ltd.) Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU -Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\fredi\AppData\Roaming\Mozilla\Firefox\Profiles\80p2six0.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @Citrix.com/npican - C:\Program Files\Citrix\ICA Client\npicaN.dll (Citrix Systems, Inc.) FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\fredi\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\SearchResults.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Web Search.xml FF Extension: No Name - C:\Users\fredi\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com FF Extension: No Name - C:\Users\fredi\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} FF Extension: No Name - C:\Users\fredi\AppData\Roaming\Mozilla\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433} FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF Extension: Controller - C:\Program Files\Mozilla Firefox\extensions\{B0BBFC8E-6697-4D2B-8FC4-B5AD9B3B1F11} FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433} FF Extension: Default - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{52b0f3db-f988-4788-b9dc-861d016f4487}] C:\Program Files\Web Check\WebCheck.xpi FF Extension: No Name - C:\Program Files\Web Check\WebCheck.xpi Chrome: ======= CHR HomePage: about:newtab?source=home CHR Extension: () - C:\Users\fredi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR HKLM\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files\HomeTab\chrome\HomeTab.crx CHR HKLM\...\Chrome\Extension: [blaofbhgbmeikidhlkmjhbkbfohpgekf] - C:\Program Files\Movie2KDownloader.com\Movie2KDownloader10.crx CHR HKLM\...\Chrome\Extension: [dacechnliklhcacondhhkkfobapdopee] - C:\Program Files\Web Check\WebCheck.crx CHR HKLM\...\Chrome\Extension: [mpfkfpmlciebaiepdediekoemmjaoong] - C:\Users\fredi\AppData\Local\PC Speed Up Extension\Chrome\PC Speed Up Extension.crx ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-06-25] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-25] (Avira Operations GmbH & Co. KG) S3 HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [124928 2009-07-10] (Hewlett-Packard) R2 KMService; C:\windows\system32\srvany.exe [8192 2003-04-18] () R2 MSSQL$EK4; c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation) R2 PCSUService; C:\Program Files\PC Beschleunigen\PCSUService.exe [320448 2012-12-14] () S3 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2009-06-18] (PDF Complete Inc) S4 SProtection; C:\Program Files\Common Files\Umbrella\umbrella.exe [2868544 2013-08-07] (Iminent) S3 STacSV; C:\Program Files\IDT\WDM\STacSV.exe [254034 2012-03-21] (IDT, Inc.) S3 SXDS10; C:\Program Files\Common Files\soft Xpansion\sxds10.exe [234096 2013-08-21] (soft Xpansion) S3 TuneUp.Defrag; C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe [435008 2011-12-26] (TuneUp Software) S3 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [1051968 2010-08-26] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== S0 AFS; C:\Windows\System32\Drivers\AFS.sys [77004 2012-12-03] (Oak Technology Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [84744 2013-03-20] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135136 2013-03-20] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-20] (Avira Operations GmbH & Co. KG) R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation) S3 GT72NDISIPXP; C:\Windows\System32\DRIVERS\Gt51Ip.sys [95744 2007-07-09] (Option NV) S3 GT72UBUS; C:\Windows\System32\DRIVERS\gt72ubus.sys [51968 2007-06-26] (Option N.V.) S3 GTPTSER; C:\Windows\System32\DRIVERS\gtptser.sys [8064 2007-03-30] (Option N.V.) S3 MfeAVFK; C:\Windows\System32\drivers\MfeAVFK.sys [79816 2009-05-16] (McAfee, Inc.) S3 MfeBOPK; C:\Windows\System32\drivers\MfeBOPK.sys [35272 2009-05-16] (McAfee, Inc.) R1 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [214024 2009-05-16] (McAfee, Inc.) S3 MfeRKDK; C:\Windows\System32\drivers\MfeRKDK.sys [34248 2009-05-16] (McAfee, Inc.) R1 mfetdik; C:\Windows\System32\drivers\mfetdik.sys [55336 2009-05-16] (McAfee, Inc.) S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation) S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation) S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation) S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation) S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation) S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation) S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) S3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [10064 2010-02-24] (TuneUp Software) S3 vvftav; C:\Windows\System32\drivers\vvftav.sys [474368 2007-02-02] (Vimicro Corporation) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] () S3 ZSMC0305; C:\Windows\System32\Drivers\usbVM305.sys [1466624 2007-03-08] (Vimicro Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-22 13:06 - 2013-08-23 08:08 - 00000168 _____ C:\windows\setupact.log 2013-08-22 13:06 - 2013-08-22 13:06 - 00000000 _____ C:\windows\setuperr.log 2013-08-22 11:06 - 2013-08-22 11:43 - 00035281 _____ C:\Users\fredi\Downloads\Addition.txt 2013-08-22 11:04 - 2013-08-22 11:04 - 00000000 ____D C:\FRST 2013-08-22 11:02 - 2013-08-22 11:03 - 01070315 _____ (Farbar) C:\Users\fredi\Downloads\FRST.exe 2013-08-21 09:13 - 2013-08-21 09:13 - 00000000 ____D C:\Program Files\Common Files\soft Xpansion 2013-08-21 09:12 - 2013-08-21 21:02 - 00000000 ____D C:\ProgramData\Freemium 2013-08-21 09:12 - 2013-08-21 09:20 - 00000000 ____D C:\SoloApp 2013-08-21 09:12 - 2013-08-21 09:13 - 00000000 ____D C:\Program Files\Common Files\Freemium 2013-08-21 09:12 - 2013-08-21 09:12 - 00010464 _____ C:\windows\system32\sx_p2d.tlb 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Users\fredi\Downloads\freepdf 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Users\fredi\AppData\Roaming\Iminent 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\SoftwareUpdater 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Program Files\Web Check 2013-08-21 09:10 - 2013-08-21 09:10 - 00000596 _____ C:\windows\system32\InstallUtil.InstallLog 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\ProgramData\Iminent 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\Program Files\Iminent 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\Program Files\Common Files\Umbrella 2013-08-21 09:09 - 2013-08-22 22:24 - 00000000 ____D C:\Users\fredi\AppData\Roaming\HomeTab 2013-08-21 09:09 - 2013-08-22 22:24 - 00000000 ____D C:\Program Files\HomeTab 2013-08-21 09:09 - 2013-08-21 09:19 - 00000000 ____D C:\Users\fredi\AppData\Roaming\Windows Net Data 2013-08-21 09:09 - 2013-08-21 09:09 - 00000000 ____D C:\Users\fredi\AppData\Roaming\SimplyTech 2013-08-21 09:09 - 2013-08-21 09:09 - 00000000 ____D C:\Program Files\FoxyDeal 2013-08-21 09:09 - 2013-08-13 08:38 - 00032328 _____ C:\windows\Launcher.exe 2013-08-21 09:06 - 2013-08-21 09:06 - 00000208 _____ C:\Users\fredi\Desktop\Amazon.url 2013-08-21 09:05 - 2013-08-21 09:06 - 00000000 ____D C:\Users\fredi\AppData\Local\DownloadGuide 2013-08-21 08:54 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-08-21 08:54 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-08-21 08:54 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-08-21 08:54 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-08-21 08:54 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-08-21 08:54 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-21 08:54 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-21 08:54 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-08-21 08:54 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-08-21 08:54 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-08-21 08:54 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-08-21 08:54 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-21 08:54 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-21 08:54 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-08-21 08:54 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-08-21 08:54 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-21 08:51 - 2013-08-21 08:54 - 00000000 ____D C:\windows\system32\MRT 2013-08-21 08:42 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-08-21 08:42 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe 2013-08-21 08:42 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-08-21 08:42 - 2013-07-09 06:53 - 01289096 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-08-21 08:42 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll 2013-08-21 08:42 - 2013-07-09 06:50 - 00652800 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2013-08-21 08:42 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-08-21 08:42 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll 2013-08-21 08:42 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll 2013-08-21 08:42 - 2013-07-06 07:05 - 01293760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-08-21 08:41 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll 2013-08-21 08:41 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys 2013-08-20 09:30 - 2013-08-20 10:03 - 00000000 ____D C:\ProgramData\EGIS-2 2013-08-20 09:29 - 2013-08-20 10:03 - 00000000 ____D C:\Program Files\EGIS-2 2013-08-20 09:26 - 2013-08-20 09:26 - 00001359 _____ C:\Users\Public\Desktop\Palme Elekat A2 2013.lnk 2013-08-20 09:26 - 2013-08-20 09:26 - 00001038 _____ C:\Users\Public\Desktop\PALME-COCKPIT.lnk 2013-08-20 09:26 - 2013-08-20 09:26 - 00001030 _____ C:\Users\Public\Desktop\PALME-WEBKAT.lnk 2013-08-18 15:20 - 2013-08-18 15:20 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-08-05 18:59 - 2013-08-05 18:59 - 00000000 ____D C:\Users\fredi\Desktop\Musik Mp3 ==================== One Month Modified Files and Folders ======= 2013-08-23 08:20 - 2013-08-23 08:20 - 01070315 _____ (Farbar) C:\Users\fredi\Downloads\FRST(1).exe 2013-08-23 08:16 - 2010-01-08 01:18 - 01654172 _____ C:\windows\system32\PerfStringBackup.INI 2013-08-23 08:16 - 2009-07-14 06:34 - 00019760 _____ C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-23 08:16 - 2009-07-14 06:34 - 00019760 _____ C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-23 08:08 - 2013-08-22 13:06 - 00000168 _____ C:\windows\setupact.log 2013-08-23 08:08 - 2009-07-14 06:53 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-08-22 22:29 - 2013-07-17 23:47 - 01284479 _____ C:\windows\WindowsUpdate.log 2013-08-22 22:24 - 2013-08-21 09:09 - 00000000 ____D C:\Users\fredi\AppData\Roaming\HomeTab 2013-08-22 22:24 - 2013-08-21 09:09 - 00000000 ____D C:\Program Files\HomeTab 2013-08-22 22:19 - 2009-07-14 04:37 - 00000000 ____D C:\windows\tracing 2013-08-22 13:06 - 2013-08-22 13:06 - 00000000 _____ C:\windows\setuperr.log 2013-08-22 12:52 - 2012-05-01 09:21 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-08-22 11:43 - 2013-08-22 11:06 - 00035281 _____ C:\Users\fredi\Downloads\Addition.txt 2013-08-22 11:04 - 2013-08-22 11:04 - 00000000 ____D C:\FRST 2013-08-22 11:03 - 2013-08-22 11:02 - 01070315 _____ (Farbar) C:\Users\fredi\Downloads\FRST.exe 2013-08-22 10:48 - 2012-08-14 22:43 - 00000928 _____ C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001UA.job 2013-08-22 10:45 - 2009-07-14 04:37 - 00000000 ____D C:\windows\system32\NDF 2013-08-21 22:48 - 2012-08-14 22:43 - 00000906 _____ C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001Core.job 2013-08-21 21:19 - 2010-01-08 01:21 - 00000000 ____D C:\ProgramData\PDFC 2013-08-21 21:02 - 2013-08-21 09:12 - 00000000 ____D C:\ProgramData\Freemium 2013-08-21 20:31 - 2010-04-20 14:16 - 00000000 ____D C:\Users\fredi 2013-08-21 20:31 - 2009-07-14 04:37 - 00000000 ____D C:\windows\system32\wfp 2013-08-21 20:30 - 2009-07-14 04:37 - 00000000 ____D C:\windows\registration 2013-08-21 19:52 - 2012-05-01 09:21 - 00692104 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe 2013-08-21 19:52 - 2011-08-17 06:36 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl 2013-08-21 19:02 - 2009-07-14 04:37 - 00000000 ____D C:\windows\Microsoft.NET 2013-08-21 18:34 - 2010-10-12 20:51 - 00000052 _____ C:\windows\system32\DOErrors.log 2013-08-21 18:33 - 2010-04-20 14:39 - 00000000 ____D C:\Users\fredi\AppData\Roaming\HpUpdate 2013-08-21 09:20 - 2013-08-21 09:12 - 00000000 ____D C:\SoloApp 2013-08-21 09:19 - 2013-08-21 09:09 - 00000000 ____D C:\Users\fredi\AppData\Roaming\Windows Net Data 2013-08-21 09:13 - 2013-08-21 09:13 - 00000000 ____D C:\Program Files\Common Files\soft Xpansion 2013-08-21 09:13 - 2013-08-21 09:12 - 00000000 ____D C:\Program Files\Common Files\Freemium 2013-08-21 09:12 - 2013-08-21 09:12 - 00010464 _____ C:\windows\system32\sx_p2d.tlb 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Users\fredi\Downloads\freepdf 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Users\fredi\AppData\Roaming\Iminent 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\SoftwareUpdater 2013-08-21 09:11 - 2013-08-21 09:11 - 00000000 ____D C:\Program Files\Web Check 2013-08-21 09:10 - 2013-08-21 09:10 - 00000596 _____ C:\windows\system32\InstallUtil.InstallLog 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\ProgramData\Iminent 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\Program Files\Iminent 2013-08-21 09:10 - 2013-08-21 09:10 - 00000000 ____D C:\Program Files\Common Files\Umbrella 2013-08-21 09:09 - 2013-08-21 09:09 - 00000000 ____D C:\Users\fredi\AppData\Roaming\SimplyTech 2013-08-21 09:09 - 2013-08-21 09:09 - 00000000 ____D C:\Program Files\FoxyDeal 2013-08-21 09:06 - 2013-08-21 09:06 - 00000208 _____ C:\Users\fredi\Desktop\Amazon.url 2013-08-21 09:06 - 2013-08-21 09:05 - 00000000 ____D C:\Users\fredi\AppData\Local\DownloadGuide 2013-08-21 08:55 - 2009-07-14 04:37 - 00000000 ____D C:\windows\system32\de-DE 2013-08-21 08:54 - 2013-08-21 08:51 - 00000000 ____D C:\windows\system32\MRT 2013-08-21 08:51 - 2010-04-20 17:50 - 75778376 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-20 10:03 - 2013-08-20 09:30 - 00000000 ____D C:\ProgramData\EGIS-2 2013-08-20 10:03 - 2013-08-20 09:29 - 00000000 ____D C:\Program Files\EGIS-2 2013-08-20 09:48 - 2011-12-17 14:27 - 00000000 ____D C:\ek4 2013-08-20 09:26 - 2013-08-20 09:26 - 00001359 _____ C:\Users\Public\Desktop\Palme Elekat A2 2013.lnk 2013-08-20 09:26 - 2013-08-20 09:26 - 00001038 _____ C:\Users\Public\Desktop\PALME-COCKPIT.lnk 2013-08-20 09:26 - 2013-08-20 09:26 - 00001030 _____ C:\Users\Public\Desktop\PALME-WEBKAT.lnk 2013-08-20 09:26 - 2010-01-08 01:11 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-08-20 09:23 - 2012-08-10 17:01 - 00000000 ____D C:\EK_SICH 2013-08-18 19:18 - 2012-10-18 12:58 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-08-18 15:20 - 2013-08-18 15:20 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-08-13 08:38 - 2013-08-21 09:09 - 00032328 _____ C:\windows\Launcher.exe 2013-08-10 15:15 - 2013-01-16 19:28 - 00000000 ____D C:\Program Files\TomTom HOME 2 2013-08-10 15:13 - 2011-03-13 18:50 - 00000000 ____D C:\Users\fredi\AppData\Local\Downloaded Installations 2013-08-05 19:06 - 2012-02-21 20:45 - 00000000 ____D C:\Users\fredi\AppData\Roaming\vlc 2013-08-05 18:59 - 2013-08-05 18:59 - 00000000 ____D C:\Users\fredi\Desktop\Musik Mp3 2013-07-29 08:07 - 2013-01-31 19:45 - 00000000 ____D C:\Program Files\Google 2013-07-25 10:57 - 2013-08-21 08:42 - 01620992 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-07-25 04:40 - 2013-08-21 08:54 - 12334080 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-07-25 04:32 - 2013-08-21 08:54 - 01800704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-07-25 04:30 - 2013-08-21 08:54 - 09738752 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-07-25 04:26 - 2013-08-21 08:54 - 01129472 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-07-25 04:26 - 2013-08-21 08:54 - 01104384 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-07-25 04:25 - 2013-08-21 08:54 - 01427968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-07-25 04:24 - 2013-08-21 08:54 - 00231936 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-07-25 04:24 - 2013-08-21 08:54 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-07-25 04:23 - 2013-08-21 08:54 - 01796096 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-07-25 04:23 - 2013-08-21 08:54 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-07-25 04:23 - 2013-08-21 08:54 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-07-25 04:23 - 2013-08-21 08:54 - 00420864 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-07-25 04:23 - 2013-08-21 08:54 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-07-25 04:22 - 2013-08-21 08:54 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-07-25 04:22 - 2013-08-21 08:54 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-07-25 04:22 - 2013-08-21 08:54 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll Files to move or delete: ==================== C:\ProgramData\1603328.pad ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-19 01:21 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 21-08-2013 02 Ran by fredi at 2013-08-23 08:30:35 Running from C:\Users\fredi\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= A1 Internet Software (Version: 8.1.1.64) A1 Servicecenter (Version: 1.1.0.12) A1 Webassistent (Version: 4.2.0.168) ActiveCheck component for HP Active Support Library (Version: 3.0.0.2) Adobe AIR (Version: 3.2.0.2070) Adobe Flash Player 11 ActiveX (Version: 11.8.800.94) Adobe Flash Player 11 Plugin (Version: 11.8.800.94) Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7) Adobe SVG Viewer 3.0 (Version: 3.0) Apple Application Support (Version: 2.3.2) Apple Mobile Device Support (Version: 6.0.1.3) Apple Software Update (Version: 2.1.3.127) Ask Toolbar (Version: 1.14.0.0) Ask Toolbar Updater (HKCU Version: 1.2.0.19709) ATI Catalyst Install Manager (Version: 3.0.732.0) AutoCAD 2009 - Deutsch (Version: 17.2.56.0) Avira Free Antivirus (Version: 13.0.0.3885) Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.12) CameraHelperMsi (Version: 13.51.815.0) Catalyst Control Center - Branding (Version: 1.00.0000) Catalyst Control Center Core Implementation (Version: 2009.0729.2238.38827) Catalyst Control Center Graphics Full Existing (Version: 2009.0729.2238.38827) Catalyst Control Center Graphics Full New (Version: 2009.0729.2238.38827) Catalyst Control Center Graphics Light (Version: 2009.0729.2238.38827) Catalyst Control Center Graphics Previews Common (Version: 2009.0729.2238.38827) Catalyst Control Center Graphics Previews Vista (Version: 2009.0729.2238.38827) Catalyst Control Center InstallProxy (Version: 2009.0729.2238.38827) Catalyst Control Center Localization All (Version: 2009.0729.2238.38827) CCC Help Chinese Standard (Version: 2009.0729.2237.38827) CCC Help Chinese Traditional (Version: 2009.0729.2237.38827) CCC Help Czech (Version: 2009.0729.2237.38827) CCC Help Danish (Version: 2009.0729.2237.38827) CCC Help Dutch (Version: 2009.0729.2237.38827) CCC Help English (Version: 2009.0729.2237.38827) CCC Help Finnish (Version: 2009.0729.2237.38827) CCC Help French (Version: 2009.0729.2237.38827) CCC Help German (Version: 2009.0729.2237.38827) CCC Help Greek (Version: 2009.0729.2237.38827) CCC Help Hungarian (Version: 2009.0729.2237.38827) CCC Help Italian (Version: 2009.0729.2237.38827) CCC Help Japanese (Version: 2009.0729.2237.38827) CCC Help Korean (Version: 2009.0729.2237.38827) CCC Help Norwegian (Version: 2009.0729.2237.38827) CCC Help Polish (Version: 2009.0729.2237.38827) CCC Help Portuguese (Version: 2009.0729.2237.38827) CCC Help Russian (Version: 2009.0729.2237.38827) CCC Help Spanish (Version: 2009.0729.2237.38827) CCC Help Swedish (Version: 2009.0729.2237.38827) CCC Help Thai (Version: 2009.0729.2237.38827) CCC Help Turkish (Version: 2009.0729.2237.38827) ccc-core-static (Version: 2009.0729.2238.38827) ccc-utility (Version: 2009.0729.2238.38827) Citrix Authentication Manager (Version: 3.0.0.47031) Citrix Receiver (DV) (Version: 13.3.0.55) Citrix Receiver (HDX Flash-Umleitung) (Version: 13.3.0.55) Citrix Receiver (USB) (Version: 13.3.0.55) Citrix Receiver (Version: 13.3.0.55) Citrix Receiver Inside (Version: 3.3.0.17208) Citrix Receiver Updater (Version: 3.3.0.17207) Citrix Receiver(Aero) (Version: 13.3.0.55) ConvertHelper 2.2 D3DX10 (Version: 15.4.2368.0902) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition DirectX 9 Runtime (Version: 1.00.0000) EGIS-2 ELEKAT - CD2 (Version: 5.00.000) erLT (Version: 1.20.138.34) Facebook Video Calling 1.2.0.287 (Version: 1.2.287) FormatFactory 3.0.1 (Version: 3.0.1) FoxTab PDF Reader FoxyDeal (Version: 1.1.0) Free YouTube to MP3 Converter version 3.12.0.128 (Version: 3.12.0.128) Google Earth Plug-in (Version: 7.1.1.1888) Google Update Helper (Version: 1.3.21.153) HDVidCodec (Version: 2.1 Build 26473) HomeTab 4.5 (Version: 4.5) HP 3D DriveGuard (Version: 4.0.5.1) HP Advisor (Version: 3.2.8946.3086) HP Common Access Service Library (Version: 3.0.28.1) HP Customer Experience Enhancements (Version: 5.7.0.3036) HP Deskjet 1000 J110 series - Grundlegende Software für das Gerät (Version: 22.50.231.0) HP Deskjet 1000 J110 series Hilfe (Version: 140.0.65.65) HP ESU for Microsoft Windows 7 (Version: 1.0.3.1) HP Quick Launch Buttons (Version: 6.50.4.2) HP Setup (Version: 1.2.3215.3078) HP Software Setup (Version: 1.0.0.15) HP Speicher-Disc (Version: 1.0.4.805) HP Support Assistant (Version: 4.1.11.3) HP Update (Version: 5.001.000.014) HP User Guides 0136 (Version: 1.04.0000) HP Wallpaper (Version: 1.0.1.11) HP Wireless Assistant (Version: 3.50.9.1) HPAsset component for HP Active Support Library (Version: 3.0.2.2) iCloud (Version: 2.1.1.3) IDT Audio (Version: 1.0.6300.0) Iminent (Version: 6.32.41.0) iTunes (Version: 11.0.1.12) Java Auto Updater (Version: 2.0.7.1) Java(TM) 6 Update 31 (Version: 6.0.310) Junk Mail filter update (Version: 15.4.3502.0922) LightScribe System Software (Version: 1.18.6.1) Logitech Vid HD (Version: 7.2 (7248)) Logitech Webcam-Software (Version: 2.51) LWS Facebook (Version: 13.50.854.0) LWS Gallery (Version: 13.51.827.0) LWS Help_main (Version: 13.51.828.0) LWS Launcher (Version: 13.51.828.0) LWS Motion Detection (Version: 13.51.815.0) LWS Pictures And Video (Version: 13.51.815.0) LWS Twitter (Version: 13.30.1346.0) LWS Webcam Software (Version: 13.51.815.0) LWS WLM Plugin (Version: 1.30.1201.0) LWS YouTube Plugin (Version: 13.31.1038.0) Marvell Miniport Driver (Version: 10.70.5.3) MedienManager 1.4.0 (Version: 1.4.0) Messenger Companion (Version: 15.4.3502.0922) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6012.5000) Microsoft IntelliPoint 8.2 (Version: 8.20.468.0) Microsoft Office 2010 Service Pack 1 (SP1) Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Groove MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Search Enhancement Pack (Version: 3.0.133.0) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Microsoft SQL Server 2005 Express Edition (EK4) (Version: 9.4.5000.00) Microsoft SQL Server Native Client (Version: 9.00.5000.00) Microsoft SQL Server VSS Writer (Version: 9.00.5000.00) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Mobile Connect (Version: 1.00.0000) Mozilla Firefox 17.0.1 (x86 de) (Version: 17.0.1) Mozilla Maintenance Service (Version: 23.0.1) MSVCRT (Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) Online Plug-in (Version: 13.3.0.55) PALME-ELEKAT Basisinstallation (Version: 5.00.000) PC Speed Up - Vollständige Deinstallation (Version: 3.2.4) PC Speed Up Extension (Version: 1.24.151.151) PDF Complete Special Edition (Version: 3.5.108) QLBCASL (Version: 6.40.17.2) QuickTime (Version: 7.73.80.64) Safari (Version: 5.34.57.2) Self-Service Plug-in (Version: 3.3.0.27839) Skype Click to Call (Version: 5.7.8524) Skype™ 6.5 (Version: 6.5.158) Synaptics Pointing Device Driver (Version: 15.0.24.0) TomTom HOME (Version: 2.9.5) TomTom HOME Visual Studio Merge Modules (Version: 1.0.2) Tools für Microsoft SQL Server 2005 Express Edition (Version: 9.4.5000.00) TuneUp Utilities (Version: 9.0.4600.2) TuneUp Utilities Language Pack (de-DE) (Version: 9.0.4600.2) Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (Version: 9.00.5000.00) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Update for Microsoft Office 2010 (KB2494150) Update for Microsoft Office 2010 (KB2553065) Update for Microsoft Office 2010 (KB2553092) Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition Update for Microsoft Office 2010 (KB2566458) Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition VBA (2627.01) (Version: 6.03.00.9402) VBA (2701.01) (Version: 6.03.00.9402) VLC media player 2.0.0 (Version: 2.0.0) Web Check web'n'walk Manager (Version: 2.5.0.50) web'n'walk Manager 1.6 (Version: 1.0) Windows 7 Default Setting (Version: 1.0.1.4) Windows 7 Upgrade Advisor (Version: 2.0.5000.0) Windows iLivid Toolbar (Version: 3.0.0.117286) Windows Live Communications Platform (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3555.0308) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (Version: 15.4.3502.0922) Windows Live Mail (Version: 15.4.3502.0922) Windows Live Messenger (Version: 15.4.3538.0513) Windows Live Messenger Companion Core (Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Photo Common (Version: 15.4.3502.0922) Windows Live PIMT Platform (Version: 15.4.3508.1109) Windows Live SOXE (Version: 15.4.3502.0922) Windows Live SOXE Definitions (Version: 15.4.3502.0922) Windows Live UX Platform (Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (Version: 15.4.3508.1109) Windows Live Writer (Version: 15.4.3502.0922) Windows Live Writer Resources (Version: 15.4.3502.0922) Windows Utils WinZip 11.1 (Version: 11.1.7466g) ==================== Restore Points ========================= 21-08-2013 18:05:10 Windows Modules Installer 21-08-2013 18:25:36 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____N C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {01D8F31E-2BA4-4BCA-BBCE-9A4A50AEC5E1} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {05E635E9-E593-4FE5-86CF-A5D19AAEB2D5} - System32\Tasks\{AD253605-6AA3-42D4-A8D2-89BFED23EF11} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {0FB3090A-CCE1-4C1D-B523-975CCCF23709} - System32\Tasks\{814AE47C-AC69-4DEE-AF94-CB86BA8A35EB} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {1273A33B-A4D3-4F41-9B0B-C1D5BC15F702} - System32\Tasks\{70C64717-E9BD-4540-8717-6597F6DF1C7B} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {1560350A-E9B0-49AF-A9D2-62A7F24E8CAC} - System32\Tasks\{AEC421F2-A4DB-4EF1-94CB-5CFC3DC396DA} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {166F6C21-05CC-4275-AAE8-B9C4401B1559} - System32\Tasks\{DFDEB61F-400E-4222-A1A9-006C034388AC} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {16AD3E17-00E3-463A-B553-8E6E484945F7} - System32\Tasks\{047FAEDD-2EE8-41BB-8541-F02FA41CD947} => C:\Program Files\Logitech\Vid HD\Vid.exe [2011-01-13] (Logitech Inc.) Task: {1999CD71-DBAB-43C5-A6CD-A92BFEAE357D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001Core => C:\Users\fredi\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14] (Facebook Inc.) Task: {1C1D42AE-A629-49B3-BF75-3E8A2EBF1D21} - System32\Tasks\{E3E24800-2C5B-41C8-ADFE-8245CFE4CE1D} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {223E5784-41E1-418D-A9AF-FA2D44EC77DA} - System32\Tasks\{9E3FB228-6F13-4851-96E6-1DB271F98D03} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {228F9516-C2BD-42BB-9781-72D259E3D640} - System32\Tasks\{80BD615E-80D2-4BB7-80FC-B05751AB6C47} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {24000A3D-099C-45E1-9AB9-4237733B9507} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {29FCDA81-4BE3-4641-839F-D1A733EA3EA4} - System32\Tasks\{0A8BAE97-DA8D-415E-92F7-903440BF7764} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {2CF238E0-D8C1-45A7-8F80-EBC4F3471F41} - System32\Tasks\{6D3EC7E6-05DF-42CD-BCA7-F21403DD1FCE} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {3077DA2D-CEEC-4D6F-BBE0-D57564B3C837} - System32\Tasks\{6E39E175-8D62-412B-8A52-C5200A3B9358} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {32016EC1-AA8E-4AD8-B536-E2BFE9AF6EA7} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {386B4520-0FB7-4BF0-8991-C71FE14FC029} - System32\Tasks\{88E1003D-B112-43F8-9F04-102E07AE94A5} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {3DDD30B4-E71D-4BFE-B3C0-67CCE4941E19} - System32\Tasks\{03BEB5BA-A668-4C64-9D05-A7FD908F6CD6} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {3E722519-D7D4-4661-B117-A5CDE8B3B27D} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Tuneup => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-07-10] (Hewlett-Packard) Task: {3FD8B43A-8FB4-43B9-9267-28AB48281B0C} - System32\Tasks\{566382A6-3C16-4756-B3DE-3D28D3CCAD17} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {53C0A8F6-258F-4495-B82E-437791E63C93} - System32\Tasks\{188A426C-3B86-4A80-9CC7-C45EB0120D68} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {53D8FF9A-17DD-4171-B295-916D4DF3F0BD} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files\Ask.com\UpdateTask.exe [2011-12-14] () Task: {54D16C83-B430-4A3D-90B2-8318AB6DE234} - System32\Tasks\{923F1E41-0B18-49AE-9B06-B9338CC60519} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {5833B25A-57BC-4F0E-A904-797CFC1DED5B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {5C0ECE7A-C169-4BEA-959F-192D87289AC1} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files\HomeTab\ProtectedSearch.exe [2013-08-13] (Simplygen) Task: {62B11C7A-D21E-40B5-BA20-10BE5908CEAB} - System32\Tasks\{CEE36049-4B6F-4E24-8BA3-5E7EFAE969D9} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {637F220F-8117-4338-987A-1EBE7C26B678} - System32\Tasks\{C79D47C0-F0A0-48FA-BC2E-556BDEE8BB3E} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {704EE879-8983-4453-A3E2-506780EB2565} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation) Task: {73A1BC24-0A79-4505-8C57-B78E8C887BBB} - System32\Tasks\{2EFEC257-6173-4636-BB4B-58DC18F2E6F4} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {81684657-0FAF-4A62-A6B2-EACCA9632C43} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation) Task: {8ADD81FE-979B-46A3-AFD5-12FF3070AC1B} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-07-10] (Hewlett-Packard) Task: {8AF4B21B-7355-4F16-A98A-36E4CE806A38} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-11] (Microsoft Corporation) Task: {9A490AEA-A564-4239-9F6F-C98A58FE0C5C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18] (Sun Microsystems, Inc.) Task: {9CED70F1-7449-48CA-B8B3-6A3FCDA3C33B} - System32\Tasks\{F02D2125-F247-428D-89F7-F365AB0976F8} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {9D2BDB59-2099-4D13-874B-66457979D2B5} - System32\Tasks\{B63F5B63-48CE-44A6-9F00-2265198F6BAA} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {9E4892E3-C2D9-4ED0-944D-FFDEA68704BA} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {A1B06B1D-E230-4CAD-A6A3-549E55F7832F} - System32\Tasks\{653F1F03-BD80-483B-A97E-A68D4E335797} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {A1E07BD3-BD44-4796-B21F-4A5F606F60A8} - System32\Tasks\{5213BF90-3421-4131-B6F2-AF69AC56A865} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {AC7E69B5-D096-44F5-BE4D-82AA171AEC39} - System32\Tasks\PC SpeedUp Service Deactivator => C:\Program Files\PC Beschleunigen\PCSUSD.exe [2012-12-14] () Task: {AF31929A-8ADF-4E87-937A-744ABC79DAB7} - System32\Tasks\Microsoft\Windows Defender\MpIdleTask => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {AFEE8308-74B4-4F40-BF0F-2C990DF400E8} - System32\Tasks\{E597CE29-C99A-43DD-9E0A-4E5D154BA0D1} => C:\Program Files\Logitech\Vid HD\Vid.exe [2011-01-13] (Logitech Inc.) Task: {B1B72E0B-644A-4091-B02C-7EC95E487F00} - System32\Tasks\{29D2C909-BB8F-4E94-84C8-4240BF9038C2} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {B1CA8F7D-30B9-44F6-AF6A-5DE6202160AA} - System32\Tasks\{C03CA053-587D-4426-8032-B26CFF51EA6D} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {B33F9AE3-5958-47B4-ABB7-B03FD8C8001E} - System32\Tasks\{15C973FC-B91C-4A34-9C79-84934397836D} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {B6EAB817-0B52-4B7A-B489-72303B639E82} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001UA => C:\Users\fredi\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14] (Facebook Inc.) Task: {B733D412-83C7-4D51-87BD-E738786AE349} - System32\Tasks\{E44AEA5A-3C62-4AA2-B687-A54CF9EECB53} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {BDC01520-DB32-4814-8C64-99F7489607AA} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: {C1E9E467-E6DC-45DA-9AF8-93F2D2BCDC6F} - System32\Tasks\{D0B2C59E-21CF-44BA-BD6F-08D9BA996CBF} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {C23E4713-5D1A-4B9C-B899-96B62D7B56AF} - System32\Tasks\{8359090E-6D11-43DD-ADD0-9E891D341A9B} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {C2F82E12-0F42-4263-B8B8-405B41B0F509} - System32\Tasks\{6B96A2D8-BEE4-4ABA-9D44-D9B5C06869B3} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {C4E0DE43-EB3F-4172-AE86-0AE1BC1DF350} - System32\Tasks\{63042E35-D5B8-4566-9598-F452C3B85FA3} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {CA245857-0760-4738-8A8D-5144C2DA651A} - System32\Tasks\Browser Updater\Browser Updater => C:\windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {D3C9FAC2-9756-4363-91F4-8924367B1171} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21] (Adobe Systems Incorporated) Task: {DA4767C4-F7F6-4790-871C-FAE5F56F37F7} - System32\Tasks\{E973BD89-61C3-49DA-8F56-C6F4F20B98E5} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {DDABF7C9-8313-48EA-9154-0E3158FAC50C} - System32\Tasks\{FE334823-0FAD-498D-97D2-728B07401B19} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: {E18CD977-3593-4669-8784-44CF075C64BA} - System32\Tasks\{52D44E53-51E8-43EF-B6FE-97FE22F043CC} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {E1F6D311-F3FA-402F-86CC-42EBA65C695D} - System32\Tasks\{1832F47E-93A4-4495-8BC9-17D626747D92} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {E36C63D3-A863-4D30-9ECA-D7692A48DA52} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-31] (Google Inc.) Task: {EF2C35EA-AF4F-4567-A404-AA89DBA34AD8} - System32\Tasks\{D82FEB35-3304-4588-A062-1AFE3B6C8676} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {F5213C01-7D12-4236-A33F-1CBB49BD4359} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-31] (Google Inc.) Task: {F5941194-BF47-4039-B719-5919A031DEF5} - System32\Tasks\{F2FD546E-800F-451C-853A-7D12670B3B59} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {F807B920-BDD7-4E6C-9416-883579D4B70D} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files\TuneUp Utilities 2010\OneClick.exe [2010-08-26] (TuneUp Software) Task: {FB774592-809B-49A2-9C8A-A0CFA4399377} - System32\Tasks\{D6BA42DB-5AE3-4981-B692-837259BCF995} => C:\Program Files\Logitech\Vid HD\Vid.exe [2011-01-13] (Logitech Inc.) Task: {FBCAA489-6E33-4541-AF90-C6BBD33DEB8E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2013-08-06] (Microsoft) Task: {FE295C47-0717-4F43-9AE4-1C6803524C41} - System32\Tasks\{C66CF4D4-A562-49A4-B7C3-7C3835FF992E} => C:\Program Files\Internet Explorer\iexplore.exe [2013-07-25] (Microsoft Corporation) Task: {FFE94942-4431-4AD0-8B44-3A79B1C76106} - System32\Tasks\{08081496-CB3E-4AAE-8CDE-EE1D812DD3EC} => c:\program files\mozilla firefox\firefox.exe [2013-08-18] (Mozilla Corporation) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001Core.job => C:\Users\fredi\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4153379753-1028634153-505719400-1001UA.job => C:\Users\fredi\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\PC SpeedUp Service Deactivator.job => C:\Program Files\PC Beschleunigen\PCSUSD.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/22/2013 01:40:49 PM) (Source: Application Hang) (User: ) Description: Programm FRST.exe, Version 3.3.8.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: d58 Startzeit: 01ce9f2c60eee4fa Endzeit: 101 Anwendungspfad: C:\Users\fredi\Downloads\FRST.exe Berichts-ID: a67eca16-0b1f-11e3-9f12-d8d38521d5c8 Error: (08/21/2013 09:14:09 PM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 23.0.1.4974 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: b80 Startzeit: 01ce9ea26fef8adf Endzeit: 109 Anwendungspfad: C:\Program Files\Mozilla Firefox\firefox.exe Berichts-ID: cdcab75e-0a95-11e3-a22c-d8d38521d5c8 Error: (08/21/2013 05:30:20 PM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 23.0.1.4974 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 6a4 Startzeit: 01ce9e832e71722b Endzeit: 7566 Anwendungspfad: C:\Program Files\Mozilla Firefox\firefox.exe Berichts-ID: 834083c2-0a76-11e3-992c-d8d38521d5c8 Error: (08/21/2013 05:25:59 PM) (Source: System Restore) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows Update). Zusätzliche Informationen: 0x8000ffff. Error: (08/19/2013 08:59:28 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 23.0.1.4974, Zeitstempel: 0x520bc252 Name des fehlerhaften Moduls: xul.dll, Version: 23.0.1.4974, Zeitstempel: 0x520bc166 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0017af08 ID des fehlerhaften Prozesses: 0xbcc Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 Error: (08/18/2013 07:45:38 PM) (Source: Windows Backup) (User: ) Description: Die Sicherung war nicht erfolgreich. Fehler: "Auf diesem Laufwerk ist nicht genügend Speicherplatz zum Speichern der Sicherung verfügbar. Löschen Sie ältere Sicherungen und nicht benötigte Daten, um Speicherplatz freizugeben, oder ändern Sie die Sicherungseinstellungen. (0x81000005)" Error: (08/18/2013 07:29:11 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 23.0.1.4974, Zeitstempel: 0x520bc252 Name des fehlerhaften Moduls: xul.dll, Version: 23.0.1.4974, Zeitstempel: 0x520bc166 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0017af08 ID des fehlerhaften Prozesses: 0xb10 Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 Error: (08/12/2013 09:45:40 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 22.0.0.4917, Zeitstempel: 0x51c06b1b Name des fehlerhaften Moduls: xul.dll, Version: 22.0.0.4917, Zeitstempel: 0x51c06a5b Ausnahmecode: 0xc0000005 Fehleroffset: 0x00173668 ID des fehlerhaften Prozesses: 0xd18 Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 Error: (08/12/2013 08:05:37 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 22.0.0.4917, Zeitstempel: 0x51c06b1b Name des fehlerhaften Moduls: xul.dll, Version: 22.0.0.4917, Zeitstempel: 0x51c06a5b Ausnahmecode: 0xc0000005 Fehleroffset: 0x00173668 ID des fehlerhaften Prozesses: 0x364 Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 Error: (08/11/2013 09:20:33 PM) (Source: Windows Backup) (User: ) Description: Die Sicherung war nicht erfolgreich. Fehler: "Auf diesem Laufwerk ist nicht genügend Speicherplatz zum Speichern der Sicherung verfügbar. Löschen Sie ältere Sicherungen und nicht benötigte Daten, um Speicherplatz freizugeben, oder ändern Sie die Sicherungseinstellungen. (0x81000005)" System errors: ============= Error: (08/23/2013 08:09:19 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: AFS Error: (08/23/2013 08:08:34 AM) (Source: atikmdag) (User: ) Description: Display is not active Error: (08/23/2013 08:08:34 AM) (Source: atikmdag) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/22/2013 10:22:51 PM) (Source: Service Control Manager) (User: ) Description: Dienst "SProtection" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/22/2013 10:18:53 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: AFS Error: (08/22/2013 10:18:01 PM) (Source: atikmdag) (User: ) Description: Display is not active Error: (08/22/2013 10:18:01 PM) (Source: atikmdag) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/22/2013 01:07:19 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: AFS Error: (08/22/2013 01:06:06 PM) (Source: atikmdag) (User: ) Description: Display is not active Error: (08/22/2013 01:06:06 PM) (Source: atikmdag) (User: ) Description: CPLIB :: General - Invalid Parameter Microsoft Office Sessions: ========================= Error: (08/22/2013 01:40:49 PM) (Source: Application Hang)(User: ) Description: FRST.exe3.3.8.1d5801ce9f2c60eee4fa101C:\Users\fredi\Downloads\FRST.exea67eca16-0b1f-11e3-9f12-d8d38521d5c8 Error: (08/21/2013 09:14:09 PM) (Source: Application Hang)(User: ) Description: firefox.exe23.0.1.4974b8001ce9ea26fef8adf109C:\Program Files\Mozilla Firefox\firefox.execdcab75e-0a95-11e3-a22c-d8d38521d5c8 Error: (08/21/2013 05:30:20 PM) (Source: Application Hang)(User: ) Description: firefox.exe23.0.1.49746a401ce9e832e71722b7566C:\Program Files\Mozilla Firefox\firefox.exe834083c2-0a76-11e3-992c-d8d38521d5c8 Error: (08/21/2013 05:25:59 PM) (Source: System Restore)(User: ) Description: Windows Update0x8000ffff Error: (08/19/2013 08:59:28 AM) (Source: Application Error)(User: ) Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af08bcc01ce9ca99144450bC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dlle3a21cda-089c-11e3-b0cf-d8d38521d5c8 Error: (08/18/2013 07:45:38 PM) (Source: Windows Backup)(User: ) Description: Auf diesem Laufwerk ist nicht genügend Speicherplatz zum Speichern der Sicherung verfügbar. Löschen Sie ältere Sicherungen und nicht benötigte Daten, um Speicherplatz freizugeben, oder ändern Sie die Sicherungseinstellungen. (0x81000005) Error: (08/18/2013 07:29:11 PM) (Source: Application Error)(User: ) Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af08b1001ce9c371d340d6cC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dllb186a74f-082b-11e3-b0df-d8d38521d5c8 Error: (08/12/2013 09:45:40 PM) (Source: Application Error)(User: ) Description: firefox.exe22.0.0.491751c06b1bxul.dll22.0.0.491751c06a5bc000000500173668d1801ce977db9829f7aC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dllc3c452cd-0387-11e3-b04b-d8d38521d5c8 Error: (08/12/2013 08:05:37 AM) (Source: Application Error)(User: ) Description: firefox.exe22.0.0.491751c06b1bxul.dll22.0.0.491751c06a5bc00000050017366836401ce9720e12c99dfC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll34ebd76c-0315-11e3-b00b-d8d38521d5c8 Error: (08/11/2013 09:20:33 PM) (Source: Windows Backup)(User: ) Description: Auf diesem Laufwerk ist nicht genügend Speicherplatz zum Speichern der Sicherung verfügbar. Löschen Sie ältere Sicherungen und nicht benötigte Daten, um Speicherplatz freizugeben, oder ändern Sie die Sicherungseinstellungen. (0x81000005) ==================== Memory info =========================== Percentage of memory in use: 40% Total physical RAM: 2812.87 MB Available physical RAM: 1669.46 MB Total Pagefile: 5040.85 MB Available Pagefile: 3589.33 MB Total Virtual: 2047.88 MB Available Virtual: 1928.71 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:131.75 GB) (Free:2.74 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.99 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149 GB) (Disk ID: 8AB6F604) Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=132 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=2 GB) - (Type=0C) ==================== End Of Log ============================ |
23.08.2013, 12:36 | #7 | |
/// TB-Ausbilder | Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... Servus, Aus deiner Logdatei: Zitat:
Alleine der Besuch auf Seiten, welche diese Dateien zum Download anbieten, beinhaltet ein hohes Risiko sich zu infizieren. Wenn Du den Crack startest, startest du eine ausführbare Datei aus einer sehr dubiosen Quelle. Im Quellcode der Datei kann alles mögliche stehen. ( z.B downloaden und ausführen von Malware Dateien ) Dies ist einer der Hauptgründe wie man sich infiziert. Wir tolerieren Software-Diebstahl nicht. Darum haben wir uns darauf geeinigt, Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.Wir sind nicht die Internetpolizei und werden bestimmt nicht explizit danach suchen. Darum entferne und lösche alle Cracks, Keygens usw bevor Du um Hilfe bittest und halte dich in Zukunft davon fern. Ich tippe ja auf ein gecracktes Office... |
27.08.2013, 10:00 | #8 |
/// TB-Ausbilder | Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... Fehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen! |
Themen zu Malware http://www_getwindowinfo/ läßt sich nicht entfernen ... |
download, entferne, entfernen, erste mal, forum, http://www_getwindowinfo/, malware, neu, nicht mehr, schliessen, sobald, tagen, von selbst, öffnet |