|
Log-Analyse und Auswertung: iolorgdf32 program not found / iminentWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
03.09.2013, 12:54 | #1 |
| iolorgdf32 program not found / iminent Guten Tag! kann mir bitte jemand helfen? ich hab hier einen Rechner mit Windows8 , der langsam startet und vor Windows im DOS-Fenster? die Meldung bringt: iolorgdf32 program not found skipping Autocheck unter Programme war auch etwas von Iminent und WebCake zu sehen, die habe ich schon deinstalliert beim gmer--scan gabs 2 Fehlermeldungen Der Prozeß kann nicht auf Date izugreifen, da ein anderer Prozeß usw. und etwas von ntuser.dat anbei die üblichen logs: Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 13:24 on 03/09/2013 (karsten) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01 Ran by karsten (administrator) on KCW on 03-09-2013 13:26:09 Running from C:\Users\karsten\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Iminent) C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe () C:\Program Files\Sony\VAIO Care\listener.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe, HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1 HKLM\...\Policies\Explorer: [NoActiveDesktop] 1 MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe" HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation) HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.) HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe [1074736 2013-06-18] (Iminent) HKLM-x32\...\Run: [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe [884784 2013-06-18] (Iminent) HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone) AppInit_DLLs: [0 ] () AppInit_DLLs-x32: [0 ] () BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\ ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.searchnu.com/406?appid=427 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKCU - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms} SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0 BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO-x32: Plus-HD-2.6 - {11111111-1111-1111-1111-110311341140} - C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-bho.dll (Plus HD) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO-x32: LyricsContainer - {81fae1f7-9dec-456b-a40b-ad4ffb541561} - C:\Program Files (x86)\LyricsContainer\130.dll (LyricsContainer) BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GbR) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.13.13 Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126 FireFox: ======== FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default FF user.js: detected! => C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\user.js FF DefaultSearchEngine: Search Results FF SearchEngineOrder.1: Search Results FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com/ FF Keyword.URL: hxxp://dts.search-results.com/sr?src=ffb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&apn_uid=3800099316804469&o=APN10645&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\Search_Results.xml FF SearchPlugin: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\zonealarm.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\staged FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi FF Extension: webbooster - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\webbooster@iminent.com.xpi FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK FF HKCU\...\Firefox\Extensions: [{12ff8c0f-2b0e-4b07-a1cc-4b7ea21c58f2}] C:\Program Files (x86)\LyricsContainer\130.xpi FF Extension: No Name - C:\Program Files (x86)\LyricsContainer\130.xpi ==================== Services (Whitelisted) ================= R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft) R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation) R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.) S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR) S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation) R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] () R2 SProtection; C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe [2864448 2013-08-11] (Iminent) S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation) R2 WebCake Desktop Updater; C:\Program Files (x86)\WBDesktop.Updater.exe [51992 2013-08-11] (cake bake) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.) R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.) S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation) R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC) R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated) R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider) S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x] U3 mfeavfk01; No ImagePath ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys 2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-08-28 12:34 - 2013-09-01 12:13 - 00000000 ____D C:\Program Files (x86)\LyricsContainer 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-22 23:10 - 2013-08-22 23:10 - 00000000 ____D C:\Program Files (x86)\Betcat 2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-11 13:18 - 2013-09-03 11:37 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Betcat 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe 2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll 2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone 2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} ==================== One Month Modified Files and Folders ======= 2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:24 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 13:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-03 13:13 - 2013-03-07 15:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001 2013-09-03 13:13 - 2012-11-16 17:15 - 01756881 _____ C:\Windows\WindowsUpdate.log 2013-09-03 13:11 - 2013-06-29 11:31 - 00003582 _____ C:\Windows\System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl 2013-09-03 13:11 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl 2013-09-03 13:09 - 2013-06-29 11:30 - 00000420 _____ C:\Windows\Tasks\LyricsContainer Update.job 2013-09-03 13:06 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-03 13:06 - 2013-05-29 17:41 - 00001210 _____ C:\Windows\Tasks\Plus-HD-2.6-codedownloader.job 2013-09-03 13:06 - 2013-05-29 17:41 - 00001206 _____ C:\Windows\Tasks\Plus-HD-2.6-updater.job 2013-09-03 13:06 - 2013-05-29 17:41 - 00001110 _____ C:\Windows\Tasks\Plus-HD-2.6-enabler.job 2013-09-03 13:06 - 2013-05-29 17:39 - 00001842 _____ C:\Windows\Tasks\Plus-HD-2.6-firefoxinstaller.job 2013-09-03 13:04 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation 2013-09-03 12:34 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone 2013-09-03 11:52 - 2013-03-07 17:02 - 00000000 ____D C:\Original 2013-09-03 11:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-03 11:37 - 2013-08-11 13:18 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Betcat 2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird 2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-09-01 12:13 - 2013-08-28 12:34 - 00000000 ____D C:\Program Files (x86)\LyricsContainer 2013-09-01 12:13 - 2012-08-03 04:22 - 00017196 _____ C:\Windows\PFRO.log 2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013 2013-08-28 12:34 - 2013-06-29 11:30 - 00003064 _____ C:\Windows\System32\Tasks\LyricsContainer Update 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc 2013-08-22 23:10 - 2013-08-22 23:10 - 00000000 ____D C:\Program Files (x86)\Betcat 2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT 2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe 2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} Files to move or delete: ==================== C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe C:\Users\karsten\AppData\Local\Temp\propsys.dll C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe C:\Users\karsten\AppData\Local\Temp\Setup.exe C:\Users\karsten\AppData\Local\Temp\SpOrder.dll C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-01 13:13 ==================== End Of Log ============================ |
03.09.2013, 12:55 | #2 |
| iolorgdf32 program not found / iminent und hier noch der Rest:
__________________Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-09-2013 01 Ran by karsten at 2013-09-03 13:26:54 Running from C:\Users\karsten\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 123 Free Solitaire v9.0 (x32) 64 Bit HP CIO Components Installer (Version: 8.2.1) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader X (10.1.7) MUI (x32 Version: 10.1.7) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98) Aloha TriPeaks (x32 Version: 2.2.0.98) AMD APP SDK Runtime (Version: 10.0.938.2) AMD Catalyst Install Manager (Version: 8.0.881.0) Bejeweled 3 (x32 Version: 2.2.0.98) Build-a-lot: On Vacation (x32 Version: 2.2.0.110) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437) Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437) CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437) CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437) CCC Help Czech (x32 Version: 2012.0806.1155.19437) CCC Help Danish (x32 Version: 2012.0806.1155.19437) CCC Help Dutch (x32 Version: 2012.0806.1155.19437) CCC Help English (x32 Version: 2012.0806.1155.19437) CCC Help Finnish (x32 Version: 2012.0806.1155.19437) CCC Help French (x32 Version: 2012.0806.1155.19437) CCC Help German (x32 Version: 2012.0806.1155.19437) CCC Help Greek (x32 Version: 2012.0806.1155.19437) CCC Help Hungarian (x32 Version: 2012.0806.1155.19437) CCC Help Italian (x32 Version: 2012.0806.1155.19437) CCC Help Japanese (x32 Version: 2012.0806.1155.19437) CCC Help Korean (x32 Version: 2012.0806.1155.19437) CCC Help Norwegian (x32 Version: 2012.0806.1155.19437) CCC Help Polish (x32 Version: 2012.0806.1155.19437) CCC Help Portuguese (x32 Version: 2012.0806.1155.19437) CCC Help Russian (x32 Version: 2012.0806.1155.19437) CCC Help Spanish (x32 Version: 2012.0806.1155.19437) CCC Help Swedish (x32 Version: 2012.0806.1155.19437) CCC Help Thai (x32 Version: 2012.0806.1155.19437) CCC Help Turkish (x32 Version: 2012.0806.1155.19437) ccc-utility64 (Version: 2012.0806.1156.19437) Chronicles of Albian (x32 Version: 2.2.0.110) Chuzzle Deluxe (x32 Version: 2.2.0.95) Classic Shell (Version: 3.6.5) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000) Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.110) CyberLink Power2Go 8 (x32 Version: 8.0.0.1923) CyberLink PowerDVD (x32 Version: 9.0.5601.52) Dolby Home Theater v4 (x32 Version: 7.2.8000.13) el PROSet Wireless FATE (x32 Version: 2.2.0.97) FDUx86 (x32 Version: 1.0.0) Google Earth (x32 Version: 7.1.1.1888) Google Update Helper (x32 Version: 1.3.21.153) Heroes of Hellas 3: Athens (x32 Version: 2.2.0.110) HP LaserJet 100 color MFP M175 (x32) HP LJ100 M175 HP Scan (x32 Version: 1.0.302.0) HP Update (x32 Version: 5.002.006.003) hpbDSService (x32 Version: 001.001.05133) hpbM175DSService (x32 Version: 001.001.05133) HPLaserJet100ColorMFPM175_HelpLearnCenter_SI (x32 Version: 1.00.0000) HPLJUT (x32 Version: 1.00.0012) hppLaserJetService (x32 Version: 002.015.00602) hppM175LaserJetService (x32 Version: 001.014.00480) Iminent (x32 Version: 6.25.21.0) InstanceFinder (x32 Version: 1.00.0001) Intel AppUp(SM) center (x32 Version: 03.05.11) Intel(R) Display Audio Driver (x32 Version: 6.14.00.3097) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.5.0.0344) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1210.0278) Intel(R) Rapid Storage Technology (x32 Version: 11.5.3.1004) Intel(R) WiDi (Version: 3.5.34.0) Intel® PROSet/Wireless WiFi-Software (Version: 15.05.1000.1411) Intel® Trusted Connect Service Client (Version: 1.24.388.1) IrfanView (remove only) (x32 Version: 4.36) Java Auto Updater (x32 Version: 2.1.6.0) Java(TM) 7 Update 5 (64-bit) (Version: 7.0.50) Java(TM) 7 Update 5 (x32 Version: 7.0.50) KUx86 (x32 Version: 1.0.0) Luxor HD (x32 Version: 2.2.0.110) LyricsContainer (x32) Mahjongg Artifacts (x32 Version: 2.2.0.110) McAfee Agent (x32 Version: 4.6.0.2292) McAfee VirusScan Enterprise (x32 Version: 8.8.02004) Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98) Mystery P.I. - The London Caper (x32 Version: 2.2.0.95) NauticTools (HKCU Version: - Version 1.2) PDF Architect (x32 Version: 1.0.52.8917) PDFCreator (x32 Version: 1.6.2) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98) Plus-HD-2.6 (x32 Version: 1.27.153.5) Polar Bowler (x32 Version: 2.2.0.97) PX Profile Update (x32 Version: 1.00.1.) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6705) Restore (x32 Version: 1.0.0) Shared C Run-time for x64 (Version: 10.0.0) SSLx64 (Version: 1.0.0) SSLx86 (x32 Version: 1.0.0) Synaptics Pointing Device Driver (Version: 16.2.10.5) ToolboxProxy (x32 Version: 1.00.0001) Ugrib RC1 (x32 Version: Release Candidate 0.2.4) Update Installer for WildTangent Games App (x32) VAIO - Xperia Link (x32 Version: 1.0.0.08170) VAIO Care (Version: 8.0.0.08150) VAIO Control Center (x32 Version: 6.0.0.08200) VAIO Data Restore Tool (x32 Version: 1.10.0.07270) VAIO Easy Connect (x32 Version: 1.2.0.08150) VAIO Gate (x32 Version: 3.0.0.08140) VAIO Gate Default (x32 Version: 3.0.0.08060) VAIO Gesture Control (x32 Version: 2.0.0.08240) VAIO Image Optimizer (x32 Version: 3.0.00.08170) VAIO Improvement (x32 Version: 2.0.0.08090) VAIO Media Server Settings (Version: 1.0.0.08240) VAIO Movie Creator Template Data (x32 Version: 4.0.00.08170) VAIO Update (x32 Version: 6.2.1.03260) VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200) VAIO-Handbuch (x32 Version: 3.0.0.08100) VAIO-Support für Übertragungen (x32 Version: 1.8.0.08212) VCCx64 (Version: 1.0.0) VCCx86 (x32 Version: 1.0.0) VGClientX64 (Version: 1.0.0) VHD (x32 Version: 1.0.0) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98) VIx64 (Version: 1.0.0) VIx86 (x32 Version: 1.0.0) VLC media player 2.0.6 (x32 Version: 2.0.6) VMLx86 (x32 Version: 1.0.0) Vodafone Mobile Broadband (x32 Version: 10.3.401.43721) VPMx64 (Version: 1.0.0) VSSTx64 (Version: 1.0.0) VSSTx86 (x32 Version: 1.0.0) VU5x64 (Version: 1.0.0) VU5x86 (x32 Version: 1.0.0) VUx64 (Version: 1.0.0) VUx86 (x32 Version: 1.0.0) VWSTx86 (x32 Version: 1.0.0) WetterWelt GRIB-View 2.7.1 (x32 Version: 2.7.1) WildTangent Games App (x32 Version: 4.0.8.7) WildTangent-Spiele (x32 Version: 1.0.3.0) XperiaLinkx86 (x32 Version: 1.0.0) ==================== Restore Points ========================= 17-07-2013 05:33:50 Windows Update 08-08-2013 09:14:06 Installed Vodafone Mobile Connect Lite. 12-08-2013 18:18:53 Windows Update 22-08-2013 13:09:09 Windows Update 03-09-2013 09:57:21 Installed Vodafone Mobile Broadband. ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {023E4CF9-7E5D-4C7C-B0A5-C179B53574B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.) Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {21647303-9D50-4997-8D9D-DC0045A0F868} - System32\Tasks\Plus-HD-2.6-updater => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-updater.exe [2013-05-29] (Plus HD) Task: {221959ED-8B7F-4501-8143-018D8B0CDE7C} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation) Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {23CB3632-C37A-4203-99CB-FFAD2A440F5C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-03-26] (Sony Corporation) Task: {2837012F-A4E7-4103-8AAD-514F889ED283} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation) Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {2F54CA99-F1FD-4A31-B945-F631D51B7A6E} - System32\Tasks\LyricsContainer Update => C:\Program Files (x86)\LyricsContainer\LrcsCtrUpdr.exe [2013-08-27] () Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {31C63B03-2599-4079-B85B-5315CC9C230C} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [2013-03-26] (Sony Corporation) Task: {33B86844-8B4D-45E7-8B39-C2F27E4D64A9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {41A4C1B3-67E7-444E-A372-DD6E2FAB7A91} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {4A82F081-627F-4A23-AB59-2F6EDE20829B} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-03-26] (Sony Corporation) Task: {4B0889FE-2C8D-4026-B150-AE813821F8C5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22] (Adobe Systems Incorporated) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {57B72E25-8831-43A4-90B6-7AC05C417D31} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {5A2F90F9-7EA4-4B01-A50B-2DECD9DA1CF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.) Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {696A9E94-F777-4551-9AC4-44B75EAA1E98} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => start wuauserv Task: {6B6C211D-9C1C-462F-B17D-B47CFD6F31A8} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {6E0144A5-A1DF-4177-9246-08CA2A6F81D2} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {71FFCD13-EC41-4DC1-9EA3-737EE5412AB3} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation) Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {78E701AE-060A-4192-888B-DF90B3BE6C9E} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {8050837A-06F9-461A-BC1D-03904273E144} - System32\Tasks\Plus-HD-2.6-codedownloader => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-codedownloader.exe [2013-05-29] (Plus HD) Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {853E4B20-10B0-49F7-913F-B6EC6C6853C5} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.) Task: {859753A3-E7EC-407A-A9B5-F58D0FCC559D} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-08-14] (Sony Corporation) Task: {866EC86A-E93E-4EAC-8A90-E106ECC0E03F} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2012-08-04] (Sony Corporation) Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {95719DCA-B5A7-460A-9FB4-BBF670E8AFE7} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {9B40F921-C356-4711-B413-4632805A4BE5} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {9F835B87-97AE-4706-B34C-ADB49026C960} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {A7900DED-2F24-4BE8-9429-5CD51CC022EF} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {B1898C78-62E9-469F-BEC7-D6DAEF28C5C2} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2012-08-09] (Sony Corporation) Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1996E6E-916A-4138-99E1-88AB1884B592} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-07-31] (Sony Corporation) Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation) Task: {C8AF63BA-FB02-4D2F-B828-E52850538096} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation) Task: {CA11EEAD-A399-4CBC-86EB-3E661B23E127} - System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl => C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl\MinibarChrome.exe [2013-06-29] (Sien SA) Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {CD6EF970-6A99-4178-9D15-6D5AF49BE844} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DCF75693-6164-4140-B500-F0E7E822D7DB} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001 Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EA136565-3B05-4121-91A4-A7B9D7D2D224} - System32\Tasks\Plus-HD-2.6-enabler => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-enabler.exe [2013-05-29] (Plus HD) Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => start w32time task_started Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: {F829B406-50AB-4166-8C48-25C9D7EFEFF6} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient No File Task: {FCB2FC52-58C6-4EC5-925E-9BD74D3F50F7} - System32\Tasks\Plus-HD-2.6-firefoxinstaller => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-firefoxinstaller.exe [2013-05-29] (Plus HD) Task: {FF9D39B9-B349-41AC-AE22-A06EE3BE0F1F} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\LyricsContainer Update.job => C:\Program Files (x86)\LyricsContainer\LrcsCtrUpdr.exe Task: C:\Windows\Tasks\Plus-HD-2.6-codedownloader.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-codedownloader.exe Task: C:\Windows\Tasks\Plus-HD-2.6-enabler.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-enabler.exe Task: C:\Windows\Tasks\Plus-HD-2.6-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-firefoxinstaller.exe Task: C:\Windows\Tasks\Plus-HD-2.6-updater.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-updater.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-12 16:15 - 2012-09-20 08:30 - 01743872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\combase.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\WINMMBASE.dll 2012-12-29 10:56 - 2012-12-29 10:56 - 01989632 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\WINMMBASE.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.DLL 2011-06-11 02:15 - 2011-06-11 02:15 - 05601616 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc100u.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00829264 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR100.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00608080 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP100.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00064336 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFC100DEU.DLL 2012-11-16 17:20 - 2012-08-09 11:06 - 00157352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\viaggregator.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\shcore.dll 2013-04-12 16:15 - 2012-09-20 08:33 - 00699392 _____ (Microsoft Corporation) C:\Windows\System32\twinapi.dll 2013-04-12 16:16 - 2012-09-20 08:30 - 02219008 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\D3D10Warp.dll 2012-11-16 17:48 - 2012-08-14 19:54 - 00031400 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\TapTrigger.dll 2013-06-28 18:14 - 2013-03-26 15:15 - 00030784 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgentPS64.dll 2012-07-26 16:22 - 2012-07-26 16:22 - 05606856 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc110u.dll 2012-08-17 18:25 - 2012-08-17 18:25 - 00828872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110.dll 2012-08-17 18:25 - 2012-08-17 18:25 - 00661448 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP110.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.dll 2012-11-16 17:00 - 2012-08-22 13:01 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2012-11-16 17:00 - 2012-08-22 13:01 - 03643024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2012-08-23 18:25 - 2012-08-22 15:20 - 00110592 _____ (Intel Corporation) C:\Windows\System32\hccutils.DLL 2012-08-23 18:25 - 2012-08-22 16:17 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2012-08-23 18:25 - 2012-08-22 16:12 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\System32\SHCORE.dll 2012-08-23 18:25 - 2012-08-22 16:14 - 09007616 _____ (Intel Corporation) C:\Windows\System32\igfxress.dll 2012-08-23 18:25 - 2012-08-22 15:05 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-08-24 00:36 - 2012-08-24 04:16 - 01046328 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll 2012-08-24 00:36 - 2012-08-24 04:27 - 00228664 _____ (Synaptics Incorporated) C:\Windows\SYSTEM32\SynTPAPI.dll 2013-07-13 18:09 - 2013-04-23 00:08 - 09808440 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll 2012-07-25 22:13 - 2012-07-12 04:01 - 00856016 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110_CLR0400.dll 2013-07-21 14:38 - 2013-07-21 14:38 - 22589440 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\ab0a8fc3d086a3aaf942f366a12a9185\mscorlib.ni.dll 2013-06-28 07:42 - 2013-04-02 00:06 - 01237024 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 13227520 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System\84008211017a9909ffd971633716ffc5\System.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 05458432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\2c9293b1f1b691c2b1c5ae92d581532d\WindowsBase.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 14784000 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\ccb0cf23d8607c241d292c922aaa9061\PresentationCore.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 24338944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\5ae84452122e5ba9f9157164ec4e1452\PresentationFramework.ni.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 02561024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\a26ad1493f4f8621e90811cb38ad22e2\System.Xaml.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 01080160 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4c.dll 2013-06-28 07:43 - 2013-04-02 00:06 - 02123320 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll 2012-07-25 22:13 - 2012-07-12 04:01 - 01079792 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 01259008 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\196905ff422a58f4cb735f4156b1ecaa\System.Configuration.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 10137600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a51eab8159bbe5f0cd2713f383468750\System.Core.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 00039776 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\Dolby.Interop.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00994312 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll 2012-11-16 17:00 - 2012-08-22 12:26 - 00123784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 10137088 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\17fa9b078e78b857f6c5f5a8081220ae\System.Xml.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 00019808 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\de\pcee4c.resources.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 02268672 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\810a79f22ac4d44804984e417c380706\System.Drawing.ni.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 16835072 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\91baa8291ae5873141b15f66d05888a4\System.Windows.Forms.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 01001984 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runt73a1fc9d#\77f6ab0fdc009b7ca96cc0c7d228da06\System.Runtime.Remoting.ni.dll 2013-08-27 09:25 - 2013-08-27 09:25 - 17587712 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\ac7d2512165632de8b398ff62ac8070c\System.Web.ni.dll 2011-10-17 17:48 - 2011-10-17 17:48 - 00045056 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0601.dll 2011-10-17 17:48 - 2011-10-17 17:48 - 00016384 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Foundation.dll 2012-08-23 18:25 - 2012-08-22 14:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGY.dll 2011-10-18 23:08 - 2011-10-18 23:08 - 00007168 _____ ( ) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atixclib.dll 2012-08-06 12:54 - 2012-08-06 12:54 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2012-08-23 18:25 - 2012-08-22 14:48 - 01111040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\aticfx64.dll 2012-08-23 18:25 - 2012-08-22 14:58 - 00103936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiu9p64.dll 2012-07-25 22:22 - 2012-08-22 16:08 - 08281600 _____ (Intel Corporation) C:\Windows\SYSTEM32\igdumd64.dll 2012-08-23 18:25 - 2012-08-22 14:59 - 06676480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiumd64.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 00567296 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\9fb849115fa37e6b107e1d9799ad83da\PresentationFramework.Aero2.ni.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00283192 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00257024 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00124456 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationCore.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationCore.resources.dll 2012-07-25 22:13 - 2012-07-12 04:02 - 00024584 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll 2013-08-14 08:25 - 2013-07-23 00:09 - 00103568 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll 2013-05-09 22:48 - 2012-10-11 07:46 - 01395712 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll 2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\Bcp47Langs.dll 2013-06-15 10:25 - 2013-05-04 08:58 - 10116096 _____ (Microsoft Corporation) C:\Windows\System32\twinui.dll 2012-07-26 01:33 - 2012-07-26 05:07 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\windows.immersiveshell.serviceprovider.dll 2012-07-26 01:54 - 2012-07-26 05:05 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\IDStore.dll 2013-05-24 21:25 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\System32\wpncore.dll 2012-07-26 04:06 - 2012-07-26 05:07 - 00119296 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\sppc.dll 2012-08-23 18:25 - 2012-08-22 15:02 - 00129536 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiuxp64.dll 2012-07-25 22:22 - 2012-08-22 15:35 - 08505856 _____ (Intel Corporation) C:\Windows\SYSTEM32\igd10umd64.dll 2012-08-23 18:25 - 2012-08-22 14:50 - 07052288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atidxx64.dll 2012-07-26 02:05 - 2012-07-26 05:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\dcomp.dll 2012-07-26 01:31 - 2012-07-26 05:08 - 00343552 _____ (Microsoft Corporation) C:\Windows\System32\wlidprov.dll 2012-07-26 01:24 - 2012-07-26 05:05 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\InputSwitch.dll 2012-07-26 02:04 - 2012-07-26 05:07 - 00046592 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\windows.globalization.fontgroups.dll 2012-07-26 01:22 - 2012-07-26 05:06 - 00601600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2013-04-09 03:05 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll 2012-07-26 04:09 - 2012-07-26 05:07 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\qmgrprxy.dll 2012-07-26 03:37 - 2012-07-26 05:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\NcaApi.dll 2012-07-26 01:33 - 2012-07-26 05:06 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll 2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\BluetoothApis.dll 2012-07-26 02:04 - 2012-07-26 05:06 - 00223744 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\netjoin.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\apprepapi.dll 2012-07-26 04:19 - 2012-07-26 05:06 - 00023040 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\pcacli.dll 2012-07-26 02:10 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\DPAPI.dll 2013-05-09 22:49 - 2013-03-02 04:45 - 00951808 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\JScript9.dll 2012-07-26 03:56 - 2012-07-26 05:07 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\VBScript.dll 2012-07-26 04:22 - 2012-07-26 04:22 - 00003072 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\LZ32.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx7.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx5.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx3.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx2.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx6.dll 2012-12-29 10:56 - 2012-12-29 10:56 - 00741888 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicExplorer64.dll 2012-07-26 02:35 - 2012-07-26 05:07 - 04243456 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2012-07-26 04:33 - 2012-07-26 04:33 - 00629760 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIRibbonRes.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00124928 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\CHARTV.dll 2012-07-26 02:12 - 2012-07-26 06:55 - 01326784 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\webservices.dll 2012-07-26 02:08 - 2012-07-26 05:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\NTASN1.dll 2013-04-08 13:31 - 2012-11-26 06:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 01161216 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIAutomationCore.DLL 2012-11-16 17:48 - 2012-08-14 19:54 - 00064168 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIOGateShellExt.dll 2012-07-26 02:59 - 2012-07-26 05:05 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\dlnashext.dll 2013-04-12 16:16 - 2012-09-20 08:33 - 01304064 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll 2013-05-09 22:49 - 2013-03-02 04:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll 2013-06-15 10:25 - 2013-05-04 08:59 - 00760320 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll 2012-07-26 02:06 - 2012-07-26 05:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\Cabinet.dll 2013-05-09 22:49 - 2013-03-02 04:45 - 00043520 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll 2013-04-11 15:17 - 2013-03-26 15:16 - 00017984 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\InternetWrapperPS.dll 2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\BluetoothApis.dll 2012-11-16 18:36 - 2012-11-16 18:36 - 00294592 _____ (Sony Corporation) C:\Windows\Microsoft.Net\assembly\GAC_64\VAIOCareToolkit\v4.0_8.0.0.8080__6b746f706d1a5a7d\VAIOCareToolkit.dll 2013-08-17 14:58 - 2013-08-17 14:58 - 01441280 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Compba577418#\c2723f87e98dfed97b1553785a84e535\System.ComponentModel.Composition.ni.dll 2012-08-15 19:26 - 2012-08-15 19:26 - 00130752 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\de-DE\VCSystemTray.resources.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 26674688 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\95a5ee0a1e8324986bd4ed61dd78b494\System.ServiceModel.ni.dll 2013-06-28 07:42 - 2012-08-31 02:52 - 00043072 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.ComponentModel.Composition.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.ComponentModel.Composition.resources.dll 2013-08-17 14:58 - 2013-08-17 14:58 - 00155136 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\54bae9cf68d2f949a1c60152c2970a50\SMDiagnostics.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 03602944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\48b764fe44c1af86ea4052b7d4b08a47\System.Runtime.Serialization.ni.dll 2013-08-17 14:58 - 2013-08-17 14:58 - 01044992 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Servd1dec626#\5b64cfcf08e1e5fed1a239bacd3373c9\System.ServiceModel.Internals.ni.dll 2013-08-17 14:58 - 2013-08-17 14:58 - 03880960 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\9ca25e2d4861cc899594aa78052c05f5\System.IdentityModel.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 00900096 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\9cf122c79464512c4d9e53a147b6d6c0\System.Transactions.ni.dll 2012-07-25 22:12 - 2012-07-12 04:01 - 00288216 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00037056 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\IntelMonitor\IntelMonitorBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00032960 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\CommonPlugin\CommonPluginBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00239808 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\VAIOCare.Utilities.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00025280 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\MetricsPhilatelist\MetricsPhilatelistBL.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00025280 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationBL.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00010944 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationAPI.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00431808 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationPL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00018112 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\LaunchBrowser\LaunchBrowserBL.dll 2012-05-21 17:44 - 2012-05-21 17:44 - 00081920 _____ (Microsoft) C:\Program Files\Sony\VAIO Care\Libraries\Microsoft.WindowsAPICodePack.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00016576 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SystemSupport\SystemSupportBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00098496 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\NetworkDiagnostics\NetworkDiagnosticsBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00019136 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\NetworkDiagnostics\NetworkDiagnosticsAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00169664 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AboutVAIOHub\AboutVAIOHubPL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00382656 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SoftwareHub\SoftwareHubPL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00029376 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SelfHeal\SelfHealBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00012992 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SelfHeal\SelfHealAPI.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00036544 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\SelfHeal.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00089792 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AdvancedTools\AdvancedToolsBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00016576 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AdvancedTools\AdvancedToolsAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00028352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\IoloToolOpt.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00033472 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\ContactAndSupport\ContactAndSupportBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00015040 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\ContactAndSupport\ContactAndSupportAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00033984 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\History\HistoryBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00011968 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\History\HistoryAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00023744 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\BatteryCheck\BatteryCheckBL.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00179392 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\OneClickCare\OneClickCareBL.dll 2012-08-08 21:59 - 2012-08-08 21:59 - 00033472 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\OneClickCare\OneClickCareAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00050880 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Message\MessageBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00026304 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\DownloadManager\DownloadManagerBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00043712 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Solve\SolveBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Solve\SolveAPI.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\GenericVAIOCareReminders\GenericVAIOCareRemindersBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00014528 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\UploadManager\UploadManagerBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\VAIOCareUpdateCommon\VAIOCareUpdateCommonBL.dll 2012-08-08 21:48 - 2012-08-08 21:48 - 00034496 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\VAIOCareUpdate\VAIOCareUpdateBL.dll 2012-11-16 17:15 - 2012-06-12 18:40 - 00130184 ____N (Sony Corporation) C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00121944 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Runtime.Serialization.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.Runtime.Serialization.resources.dll 2013-07-04 20:29 - 2013-07-04 20:29 - 03285912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-07-17 07:24 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFCORE.dll 2013-04-14 21:31 - 2012-10-17 06:32 - 00677888 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfnetcore.dll 2012-11-16 17:15 - 2012-06-12 18:40 - 00104584 ____N (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll 2012-11-16 17:47 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-04-12 16:14 - 2012-09-20 08:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.dll 2012-06-08 12:34 - 2012-06-08 12:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest. Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest. Error: (09/03/2013 01:08:24 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434 Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004af9 ID des fehlerhaften Prozesses: 0x520 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5 Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband) (User: ) Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error PID=4568 Error: (09/03/2013 01:06:49 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2} Generatorname: MSSearch Service Writer Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347} Error: (09/03/2013 01:06:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0} Generatorname: BITS Writer Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4} Generatorname: ASR Writer Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\COM+ REGDB Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {542da469-d3e1-473c-9f4f-7847f01fc64f} Generatorname: COM+ REGDB Writer Generatorinstanz-ID: {d61a2c94-2c67-4f92-9785-a36ac10daf53} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator System errors: ============= Error: (09/03/2013 01:04:47 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet: %%2147770990 Error: (09/03/2013 01:04:33 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet: %%2147500037 Error: (09/03/2013 01:04:31 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/03/2013 00:35:03 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 00:35:03 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 00:15:23 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/03/2013 00:13:38 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet: %%2147500037 Error: (09/03/2013 00:13:35 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/03/2013 00:12:34 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 00:12:34 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Microsoft Office Sessions: ========================= Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_fuer_vlc-media-player.exe Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_for_vlc-media-player.exe Error: (09/03/2013 01:08:24 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af952001cea895aaf5845eC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll2639ceaf-1489-11e3-bec5-5453edb62022 Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband)(User: ) Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error PID=4568 Error: (09/03/2013 01:06:49 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2} Generatorname: MSSearch Service Writer Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347} Error: (09/03/2013 01:06:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0} Generatorname: BITS Writer Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4} Generatorname: ASR Writer Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\COM+ REGDB Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {542da469-d3e1-473c-9f4f-7847f01fc64f} Generatorname: COM+ REGDB Writer Generatorinstanz-ID: {d61a2c94-2c67-4f92-9785-a36ac10daf53} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 6016.39 MB Available physical RAM: 4380.46 MB Total Pagefile: 6976.39 MB Available Pagefile: 4920.11 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:667.67 GB) (Free:457.61 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 699 GB) (Disk ID: FACBF894) Partition: GPT Partition Type ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-09-03 13:35:40 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000038 WDC_WD7500BPVT-55HXZT3 rev.01.01A01 698,64GB Running: gmer_2.1.19163.exe; Driver: C:\Users\karsten\AppData\Local\Temp\pxloqpow.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ffa804177a 4 bytes [04, A8, FF, 07] .text C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ffa8041782 4 bytes [04, A8, FF, 07] .text C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007ff9ffa1532 4 bytes [FA, 9F, FF, 07] .text C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007ff9ffa153a 4 bytes [FA, 9F, FF, 07] .text C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007ff9ffa165a 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007ff9ffa1532 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007ff9ffa153a 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007ff9ffa165a 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007ff9ffa1532 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007ff9ffa153a 4 bytes [FA, 9F, FF, 07] .text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007ff9ffa165a 4 bytes [FA, 9F, FF, 07] .text C:\Windows\System32\igfxpers.exe[4168] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ffa804177a 4 bytes [04, A8, FF, 07] .text C:\Windows\System32\igfxpers.exe[4168] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ffa8041782 4 bytes [04, A8, FF, 07] .text C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[476] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ffa804177a 4 bytes [04, A8, FF, 07] .text C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[476] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ffa8041782 4 bytes [04, A8, FF, 07] .text C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[3660] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ffa804177a 4 bytes [04, A8, FF, 07] .text C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[3660] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ffa8041782 4 bytes [04, A8, FF, 07] ---- Threads - GMER 2.1 ---- Thread C:\Windows\system32\csrss.exe [688:700] fffff960008715e8 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- |
03.09.2013, 13:04 | #3 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Hallo,
__________________mal ein bisschen aufräumen.. Schritt 1
Schritt 2 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 3 Starte noch einmal FRST.
__________________ |
03.09.2013, 13:24 | #4 |
| iolorgdf32 program not found / iminentCode:
ATTFilter # AdwCleaner v3.002 - Bericht erstellt am 03/09/2013 um 14:16:20 # Updated 01/09/2013 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : karsten - KCW # Gestartet von : C:\Original\iminentremoval\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : WebCake Desktop Updater ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Browser Manager Ordner Gelöscht : C:\ProgramData\IBUpdaterService Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Program Files (x86)\Betcat Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\Betcat Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\pdfforge Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\PerformerSoft Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\jetpack Datei Gelöscht : C:\Windows\System32\roboot64.exe Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\Search_Results.xml Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\zonealarm.xml Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\user.js ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{377E5D4D-77E5-476A-8716-7E70A9272DA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{377E5D4D-77E5-476A-8716-7E70A9272DA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKCU\Software\ilivid Schlüssel Gelöscht : HKCU\Software\Iminent Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsContainer Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\iLividSRTB Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Tarma Installer ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16660 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v22.0 (de) [ Datei : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\prefs.js ] Zeile gelöscht : user_pref("browser.search.defaultenginename", "Search Results"); Zeile gelöscht : user_pref("browser.search.order.1", "Search Results"); Zeile gelöscht : user_pref("extensions.crossrider.bic", "13ef0f9a12e10a0ddd6853b28a739a3b"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.SOFTONICREFRESHRATE", "140000"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.SOFTONICREFRESHRATE", "140000"); Zeile gelöscht : user_pref("keyword.URL", "hxxp://dts.search-results.com/sr?src=ffb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&apn_uid=3800099316804469&o=APN10645&q="); ************************* AdwCleaner[R0].txt - [11861 octets] - [03/09/2013 14:14:16] AdwCleaner[S0].txt - [11490 octets] - [03/09/2013 14:16:20] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11551 octets] ########## FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01 Ran by karsten (administrator) on KCW on 03-09-2013 14:21:21 Running from C:\Users\karsten\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files\Sony\VAIO Care\VCPerfService.exe () C:\Program Files\Sony\VAIO Care\listener.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe, HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1 HKLM\...\Policies\Explorer: [NoActiveDesktop] 1 MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe" HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation) HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.) HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone) AppInit_DLLs: [0 ] () AppInit_DLLs-x32: [0 ] () BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\ ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms} SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0 BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126 FireFox: ======== FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK ==================== Services (Whitelisted) ================= R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft) R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation) R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.) S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR) S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation) R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] () S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.) R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.) S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation) R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC) R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated) R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider) S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x] U3 mfeavfk01; No ImagePath ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe 2013-09-03 14:05 - 2013-09-03 14:06 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp 2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp 2013-09-03 13:26 - 2013-09-03 13:27 - 00059544 _____ C:\Users\karsten\Downloads\Addition.txt 2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys 2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe 2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll 2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone 2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} ==================== One Month Modified Files and Folders ======= 2013-09-03 14:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-03 14:17 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-03 14:17 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-03 14:16 - 2013-09-03 14:14 - 00000000 ____D C:\AdwCleaner 2013-09-03 14:11 - 2012-08-03 04:22 - 00018420 _____ C:\Windows\PFRO.log 2013-09-03 14:10 - 2013-06-29 11:31 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe 2013-09-03 14:06 - 2013-09-03 14:05 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp 2013-09-03 14:05 - 2013-04-24 02:09 - 00000000 ____D C:\Windows\Minidump 2013-09-03 14:05 - 2013-04-24 02:08 - 531305500 _____ C:\Windows\MEMORY.DMP 2013-09-03 14:02 - 2013-03-07 15:50 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001 2013-09-03 14:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-03 13:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-03 13:37 - 2012-11-16 17:15 - 01772588 _____ C:\Windows\WindowsUpdate.log 2013-09-03 13:35 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl 2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp 2013-09-03 13:29 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten 2013-09-03 13:27 - 2013-09-03 13:26 - 00059544 _____ C:\Users\karsten\Downloads\Addition.txt 2013-09-03 13:26 - 2013-03-07 17:02 - 00000000 ____D C:\Original 2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation 2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone 2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird 2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc 2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT 2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe 2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} Files to move or delete: ==================== C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe C:\Users\karsten\AppData\Local\Temp\propsys.dll C:\Users\karsten\AppData\Local\Temp\Quarantine.exe C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe C:\Users\karsten\AppData\Local\Temp\Setup.exe C:\Users\karsten\AppData\Local\Temp\SpOrder.dll C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-01 13:13 ==================== End Of Log ============================ --- --- --- |
03.09.2013, 13:25 | #5 |
| iolorgdf32 program not found / iminentCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-09-2013 01 Ran by karsten at 2013-09-03 14:22:57 Running from C:\Users\karsten\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 123 Free Solitaire v9.0 (x32) 64 Bit HP CIO Components Installer (Version: 8.2.1) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader X (10.1.7) MUI (x32 Version: 10.1.7) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98) Aloha TriPeaks (x32 Version: 2.2.0.98) AMD APP SDK Runtime (Version: 10.0.938.2) AMD Catalyst Install Manager (Version: 8.0.881.0) Bejeweled 3 (x32 Version: 2.2.0.98) Build-a-lot: On Vacation (x32 Version: 2.2.0.110) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437) Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437) Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437) CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437) CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437) CCC Help Czech (x32 Version: 2012.0806.1155.19437) CCC Help Danish (x32 Version: 2012.0806.1155.19437) CCC Help Dutch (x32 Version: 2012.0806.1155.19437) CCC Help English (x32 Version: 2012.0806.1155.19437) CCC Help Finnish (x32 Version: 2012.0806.1155.19437) CCC Help French (x32 Version: 2012.0806.1155.19437) CCC Help German (x32 Version: 2012.0806.1155.19437) CCC Help Greek (x32 Version: 2012.0806.1155.19437) CCC Help Hungarian (x32 Version: 2012.0806.1155.19437) CCC Help Italian (x32 Version: 2012.0806.1155.19437) CCC Help Japanese (x32 Version: 2012.0806.1155.19437) CCC Help Korean (x32 Version: 2012.0806.1155.19437) CCC Help Norwegian (x32 Version: 2012.0806.1155.19437) CCC Help Polish (x32 Version: 2012.0806.1155.19437) CCC Help Portuguese (x32 Version: 2012.0806.1155.19437) CCC Help Russian (x32 Version: 2012.0806.1155.19437) CCC Help Spanish (x32 Version: 2012.0806.1155.19437) CCC Help Swedish (x32 Version: 2012.0806.1155.19437) CCC Help Thai (x32 Version: 2012.0806.1155.19437) CCC Help Turkish (x32 Version: 2012.0806.1155.19437) ccc-utility64 (Version: 2012.0806.1156.19437) Chronicles of Albian (x32 Version: 2.2.0.110) Chuzzle Deluxe (x32 Version: 2.2.0.95) Classic Shell (Version: 3.6.5) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000) Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.110) CyberLink Power2Go 8 (x32 Version: 8.0.0.1923) CyberLink PowerDVD (x32 Version: 9.0.5601.52) Dolby Home Theater v4 (x32 Version: 7.2.8000.13) el PROSet Wireless FATE (x32 Version: 2.2.0.97) FDUx86 (x32 Version: 1.0.0) Google Earth (x32 Version: 7.1.1.1888) Google Update Helper (x32 Version: 1.3.21.153) Heroes of Hellas 3: Athens (x32 Version: 2.2.0.110) HP LaserJet 100 color MFP M175 (x32) HP LJ100 M175 HP Scan (x32 Version: 1.0.302.0) HP Update (x32 Version: 5.002.006.003) hpbDSService (x32 Version: 001.001.05133) hpbM175DSService (x32 Version: 001.001.05133) HPLaserJet100ColorMFPM175_HelpLearnCenter_SI (x32 Version: 1.00.0000) HPLJUT (x32 Version: 1.00.0012) hppLaserJetService (x32 Version: 002.015.00602) hppM175LaserJetService (x32 Version: 001.014.00480) InstanceFinder (x32 Version: 1.00.0001) Intel AppUp(SM) center (x32 Version: 03.05.11) Intel(R) Display Audio Driver (x32 Version: 6.14.00.3097) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.5.0.0344) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1210.0278) Intel(R) Rapid Storage Technology (x32 Version: 11.5.3.1004) Intel(R) WiDi (Version: 3.5.34.0) Intel® PROSet/Wireless WiFi-Software (Version: 15.05.1000.1411) Intel® Trusted Connect Service Client (Version: 1.24.388.1) IrfanView (remove only) (x32 Version: 4.36) Java Auto Updater (x32 Version: 2.1.6.0) Java(TM) 7 Update 5 (64-bit) (Version: 7.0.50) Java(TM) 7 Update 5 (x32 Version: 7.0.50) KUx86 (x32 Version: 1.0.0) Luxor HD (x32 Version: 2.2.0.110) Mahjongg Artifacts (x32 Version: 2.2.0.110) McAfee Agent (x32 Version: 4.6.0.2292) McAfee VirusScan Enterprise (x32 Version: 8.8.02004) Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98) Mystery P.I. - The London Caper (x32 Version: 2.2.0.95) NauticTools (HKCU Version: - Version 1.2) PDF Architect (x32 Version: 1.0.52.8917) PDFCreator (x32 Version: 1.6.2) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98) Polar Bowler (x32 Version: 2.2.0.97) PX Profile Update (x32 Version: 1.00.1.) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6705) Restore (x32 Version: 1.0.0) Shared C Run-time for x64 (Version: 10.0.0) SSLx64 (Version: 1.0.0) SSLx86 (x32 Version: 1.0.0) Synaptics Pointing Device Driver (Version: 16.2.10.5) ToolboxProxy (x32 Version: 1.00.0001) Ugrib RC1 (x32 Version: Release Candidate 0.2.4) Update Installer for WildTangent Games App (x32) VAIO - Xperia Link (x32 Version: 1.0.0.08170) VAIO Care (Version: 8.0.0.08150) VAIO Control Center (x32 Version: 6.0.0.08200) VAIO Data Restore Tool (x32 Version: 1.10.0.07270) VAIO Easy Connect (x32 Version: 1.2.0.08150) VAIO Gate (x32 Version: 3.0.0.08140) VAIO Gate Default (x32 Version: 3.0.0.08060) VAIO Gesture Control (x32 Version: 2.0.0.08240) VAIO Image Optimizer (x32 Version: 3.0.00.08170) VAIO Improvement (x32 Version: 2.0.0.08090) VAIO Media Server Settings (Version: 1.0.0.08240) VAIO Movie Creator Template Data (x32 Version: 4.0.00.08170) VAIO Update (x32 Version: 6.2.1.03260) VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200) VAIO-Handbuch (x32 Version: 3.0.0.08100) VAIO-Support für Übertragungen (x32 Version: 1.8.0.08212) VCCx64 (Version: 1.0.0) VCCx86 (x32 Version: 1.0.0) VGClientX64 (Version: 1.0.0) VHD (x32 Version: 1.0.0) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98) VIx64 (Version: 1.0.0) VIx86 (x32 Version: 1.0.0) VLC media player 2.0.6 (x32 Version: 2.0.6) VMLx86 (x32 Version: 1.0.0) Vodafone Mobile Broadband (x32 Version: 10.3.401.43721) VPMx64 (Version: 1.0.0) VSSTx64 (Version: 1.0.0) VSSTx86 (x32 Version: 1.0.0) VU5x64 (Version: 1.0.0) VU5x86 (x32 Version: 1.0.0) VUx64 (Version: 1.0.0) VUx86 (x32 Version: 1.0.0) VWSTx86 (x32 Version: 1.0.0) WetterWelt GRIB-View 2.7.1 (x32 Version: 2.7.1) WildTangent Games App (x32 Version: 4.0.8.7) WildTangent-Spiele (x32 Version: 1.0.3.0) XperiaLinkx86 (x32 Version: 1.0.0) ==================== Restore Points ========================= 17-07-2013 05:33:50 Windows Update 08-08-2013 09:14:06 Installed Vodafone Mobile Connect Lite. 12-08-2013 18:18:53 Windows Update 22-08-2013 13:09:09 Windows Update 03-09-2013 09:57:21 Installed Vodafone Mobile Broadband. ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {023E4CF9-7E5D-4C7C-B0A5-C179B53574B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.) Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {221959ED-8B7F-4501-8143-018D8B0CDE7C} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation) Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {23CB3632-C37A-4203-99CB-FFAD2A440F5C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-03-26] (Sony Corporation) Task: {2837012F-A4E7-4103-8AAD-514F889ED283} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation) Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {31C63B03-2599-4079-B85B-5315CC9C230C} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [2013-03-26] (Sony Corporation) Task: {33B86844-8B4D-45E7-8B39-C2F27E4D64A9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {41A4C1B3-67E7-444E-A372-DD6E2FAB7A91} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {4B0889FE-2C8D-4026-B150-AE813821F8C5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22] (Adobe Systems Incorporated) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {57B72E25-8831-43A4-90B6-7AC05C417D31} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {5A2F90F9-7EA4-4B01-A50B-2DECD9DA1CF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.) Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {696A9E94-F777-4551-9AC4-44B75EAA1E98} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => start wuauserv Task: {6B6C211D-9C1C-462F-B17D-B47CFD6F31A8} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {6E0144A5-A1DF-4177-9246-08CA2A6F81D2} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {71FFCD13-EC41-4DC1-9EA3-737EE5412AB3} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation) Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {78E701AE-060A-4192-888B-DF90B3BE6C9E} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {853E4B20-10B0-49F7-913F-B6EC6C6853C5} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.) Task: {859753A3-E7EC-407A-A9B5-F58D0FCC559D} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-08-14] (Sony Corporation) Task: {866EC86A-E93E-4EAC-8A90-E106ECC0E03F} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2012-08-04] (Sony Corporation) Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {95719DCA-B5A7-460A-9FB4-BBF670E8AFE7} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {9B40F921-C356-4711-B413-4632805A4BE5} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: {9F835B87-97AE-4706-B34C-ADB49026C960} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation) Task: {A7900DED-2F24-4BE8-9429-5CD51CC022EF} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {B1898C78-62E9-469F-BEC7-D6DAEF28C5C2} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2012-08-09] (Sony Corporation) Task: {B8206BB2-12DC-4B2E-88F5-5DA033BA808C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-03-26] (Sony Corporation) Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1996E6E-916A-4138-99E1-88AB1884B592} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-07-31] (Sony Corporation) Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation) Task: {C8AF63BA-FB02-4D2F-B828-E52850538096} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation) Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {CD6EF970-6A99-4178-9D15-6D5AF49BE844} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DCF75693-6164-4140-B500-F0E7E822D7DB} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001 Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => start w32time task_started Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: {F829B406-50AB-4166-8C48-25C9D7EFEFF6} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient No File Task: {FF9D39B9-B349-41AC-AE22-A06EE3BE0F1F} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-12 16:15 - 2012-09-20 08:30 - 01743872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\combase.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\WINMMBASE.dll 2012-12-29 10:56 - 2012-12-29 10:56 - 01989632 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\WINMMBASE.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.DLL 2011-06-11 02:15 - 2011-06-11 02:15 - 05601616 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc100u.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00829264 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR100.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00608080 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP100.dll 2011-06-11 02:15 - 2011-06-11 02:15 - 00064336 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFC100DEU.DLL 2012-11-16 17:20 - 2012-08-09 11:06 - 00157352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\viaggregator.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\shcore.dll 2013-04-12 16:15 - 2012-09-20 08:33 - 00699392 _____ (Microsoft Corporation) C:\Windows\System32\twinapi.dll 2013-04-12 16:16 - 2012-09-20 08:30 - 02219008 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\D3D10Warp.dll 2012-11-16 17:48 - 2012-08-14 19:54 - 00031400 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\TapTrigger.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.dll 2013-05-09 22:48 - 2012-10-11 07:46 - 01395712 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll 2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\Bcp47Langs.dll 2013-06-15 10:25 - 2013-05-04 08:58 - 10116096 _____ (Microsoft Corporation) C:\Windows\System32\twinui.dll 2012-07-26 01:33 - 2012-07-26 05:07 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\windows.immersiveshell.serviceprovider.dll 2012-07-26 01:54 - 2012-07-26 05:05 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\IDStore.dll 2013-05-24 21:25 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\System32\wpncore.dll 2012-07-26 04:06 - 2012-07-26 05:07 - 00119296 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\sppc.dll 2012-08-23 18:25 - 2012-08-22 14:48 - 01111040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\aticfx64.dll 2012-08-23 18:25 - 2012-08-22 15:02 - 00129536 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiuxp64.dll 2012-07-25 22:22 - 2012-08-22 15:35 - 08505856 _____ (Intel Corporation) C:\Windows\SYSTEM32\igd10umd64.dll 2012-08-23 18:25 - 2012-08-22 14:50 - 07052288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atidxx64.dll 2012-07-26 02:05 - 2012-07-26 05:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\dcomp.dll 2012-07-26 01:31 - 2012-07-26 05:08 - 00343552 _____ (Microsoft Corporation) C:\Windows\System32\wlidprov.dll 2012-07-26 01:24 - 2012-07-26 05:05 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\InputSwitch.dll 2012-07-26 01:55 - 2012-07-26 05:07 - 01161216 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIAutomationCore.dll 2012-07-26 02:04 - 2012-07-26 05:07 - 00046592 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\windows.globalization.fontgroups.dll 2013-04-09 03:05 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll 2012-07-26 01:22 - 2012-07-26 05:06 - 00601600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2012-07-26 03:37 - 2012-07-26 05:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\NcaApi.dll 2012-07-26 01:33 - 2012-07-26 05:06 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll 2012-12-29 10:56 - 2012-12-29 10:56 - 00741888 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicExplorer64.dll 2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\BluetoothApis.dll 2013-04-12 16:15 - 2012-09-20 08:33 - 00866304 _____ (Microsoft Corporation) C:\Windows\System32\WinTypes.dll 2012-07-26 04:09 - 2012-07-26 05:07 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\qmgrprxy.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx7.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx5.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx3.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx2.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\apprepapi.dll 2012-07-26 04:19 - 2012-07-26 05:06 - 00023040 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\pcacli.dll 2012-07-26 02:12 - 2012-07-26 06:55 - 01326784 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\webservices.dll 2013-05-09 22:49 - 2013-03-02 04:45 - 00951808 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll 2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx6.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\JScript9.dll 2012-07-26 03:56 - 2012-07-26 05:07 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\VBScript.dll 2012-07-26 04:22 - 2012-07-26 04:22 - 00003072 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\LZ32.dll 2012-07-26 02:35 - 2012-07-26 05:07 - 04243456 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2012-07-26 04:33 - 2012-07-26 04:33 - 00629760 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIRibbonRes.dll 2012-07-26 02:59 - 2012-07-26 05:05 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\dlnashext.dll 2013-04-12 16:16 - 2012-09-20 08:33 - 01304064 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll 2013-05-09 22:49 - 2013-03-02 04:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll 2012-08-23 18:25 - 2012-08-22 16:17 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2012-08-23 18:25 - 2012-08-22 16:12 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc 2012-07-26 02:10 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\DPAPI.dll 2012-07-26 16:22 - 2012-07-26 16:22 - 05606856 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc110u.dll 2012-08-17 18:25 - 2012-08-17 18:25 - 00828872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110.dll 2012-08-17 18:25 - 2012-08-17 18:25 - 00661448 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP110.dll 2012-11-16 17:00 - 2012-08-22 13:01 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2012-11-16 17:00 - 2012-08-22 13:01 - 03643024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2012-08-23 18:25 - 2012-08-22 15:20 - 00110592 _____ (Intel Corporation) C:\Windows\System32\hccutils.DLL 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\System32\SHCORE.dll 2012-08-23 18:25 - 2012-08-22 16:14 - 09007616 _____ (Intel Corporation) C:\Windows\System32\igfxress.dll 2012-08-23 18:25 - 2012-08-22 15:05 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-08-24 00:36 - 2012-08-24 04:16 - 01046328 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll 2012-08-24 00:36 - 2012-08-24 04:27 - 00228664 _____ (Synaptics Incorporated) C:\Windows\SYSTEM32\SynTPAPI.dll 2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.DLL 2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\System32\Bcp47Langs.dll 2013-07-13 18:09 - 2013-04-23 00:08 - 09808440 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll 2012-07-25 22:13 - 2012-07-12 04:01 - 00856016 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110_CLR0400.dll 2013-07-21 14:38 - 2013-07-21 14:38 - 22589440 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\ab0a8fc3d086a3aaf942f366a12a9185\mscorlib.ni.dll 2013-06-28 07:42 - 2013-04-02 00:06 - 01237024 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 13227520 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System\84008211017a9909ffd971633716ffc5\System.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 05458432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\2c9293b1f1b691c2b1c5ae92d581532d\WindowsBase.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 14784000 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\ccb0cf23d8607c241d292c922aaa9061\PresentationCore.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 24338944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\5ae84452122e5ba9f9157164ec4e1452\PresentationFramework.ni.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 02561024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\a26ad1493f4f8621e90811cb38ad22e2\System.Xaml.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 01080160 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4c.dll 2013-06-28 07:43 - 2013-04-02 00:06 - 02123320 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll 2012-07-25 22:13 - 2012-07-12 04:01 - 01079792 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 01259008 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\196905ff422a58f4cb735f4156b1ecaa\System.Configuration.ni.dll 2013-08-14 16:31 - 2013-08-14 16:31 - 10137600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a51eab8159bbe5f0cd2713f383468750\System.Core.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 00039776 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\Dolby.Interop.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00994312 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll 2012-11-16 17:00 - 2012-08-22 12:26 - 00123784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 10137088 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\17fa9b078e78b857f6c5f5a8081220ae\System.Xml.ni.dll 2012-04-23 09:47 - 2012-04-23 09:47 - 00019808 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\de\pcee4c.resources.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 02268672 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\810a79f22ac4d44804984e417c380706\System.Drawing.ni.dll 2013-08-14 16:33 - 2013-08-14 16:33 - 16835072 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\91baa8291ae5873141b15f66d05888a4\System.Windows.Forms.ni.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 01001984 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runt73a1fc9d#\77f6ab0fdc009b7ca96cc0c7d228da06\System.Runtime.Remoting.ni.dll 2013-08-27 09:25 - 2013-08-27 09:25 - 17587712 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\ac7d2512165632de8b398ff62ac8070c\System.Web.ni.dll 2011-10-17 17:48 - 2011-10-17 17:48 - 00045056 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0601.dll 2011-10-17 17:48 - 2011-10-17 17:48 - 00016384 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Foundation.dll 2012-08-23 18:25 - 2012-08-22 14:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGY.dll 2011-10-18 23:08 - 2011-10-18 23:08 - 00007168 _____ ( ) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atixclib.dll 2012-08-06 12:54 - 2012-08-06 12:54 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2012-08-23 18:25 - 2012-08-22 14:58 - 00103936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiu9p64.dll 2012-07-25 22:22 - 2012-08-22 16:08 - 08281600 _____ (Intel Corporation) C:\Windows\SYSTEM32\igdumd64.dll 2012-08-23 18:25 - 2012-08-22 14:59 - 06676480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiumd64.dll 2013-08-14 16:32 - 2013-08-14 16:32 - 00567296 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\9fb849115fa37e6b107e1d9799ad83da\PresentationFramework.Aero2.ni.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00283192 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00257024 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll 2013-04-09 03:08 - 2012-08-31 02:52 - 00124456 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationCore.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationCore.resources.dll 2012-07-25 22:13 - 2012-07-12 04:02 - 00024584 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll 2013-08-14 08:25 - 2013-07-23 00:09 - 00103568 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll 2013-06-28 18:14 - 2013-03-26 15:15 - 00030784 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgentPS64.dll 2013-07-04 20:29 - 2013-07-04 20:29 - 03285912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2012-11-16 17:15 - 2012-06-12 18:40 - 00104584 ____N (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll 2013-04-12 16:15 - 2012-09-20 07:53 - 00311296 _____ (Microsoft Corporation) C:\Windows\AppPatch\AcLayers.DLL 2013-07-13 17:56 - 2013-04-23 00:08 - 05940888 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll 2013-07-21 14:43 - 2013-07-21 14:43 - 11500032 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\d1ce70bf6cbab6ab838cbd8b50e902c1\mscorlib.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 07988736 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System\1b46657236c1f942f9dbaf6aac73bb49\System.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00078848 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\MobileBroadband\ce6f5948000cdb21c7a67e2b6fcd9e16\MobileBroadband.ni.exe 2013-08-15 03:02 - 2013-08-15 03:02 - 01114624 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Shared\1a66c0d17350f657c3e976ced4d60169\Vodafone.View.Shared.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00100864 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.LogEngine\f3300d76a16fc56b86ec27d16a37873b\Vodafone.LogEngine.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 01531904 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Platform\a83ebfa9cf44b21b153f18ec1e39f25e\Vodafone.Platform.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00656384 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Data\10092f15a13c4e6bd35e5d89ab5e2a68\Vodafone.Data.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 02188800 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\MobileBroadbandReso#\09637daed98c4dbf02856d278f6e3384\MobileBroadbandResources.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00193536 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Contr#\1135e1a559e4064bb2abd3a72dc3ba1d\Vodafone.Base.Contracts.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00372224 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DataAccess#\fda2366f9d0f5287dec774dbd556ab78\Vodafone.DataAccessor.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00398336 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.CommonDial#\27ce9ce570b5ce8aabeb91fbe3a4c831\Vodafone.CommonDialogs.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00918016 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Applicatio#\9df0ebb91a62917a792e20e0aa67254c\Vodafone.ApplicationHost.Impl.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00118784 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Common\f7a47a4b1a5ea2918ea9eb6d5b145262\Vodafone.Common.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00081920 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.CoreI#\48cbb831a2a6be1430f975c1913e8680\Vodafone.Core.CoreInstanceProvider.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00046592 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Facto#\3bc78c5bf029902e6ceff1641d164955\Vodafone.Base.Factory.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00143360 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\2580cece680218abcd2bc674a1b200da\Vodafone.DeviceAccess.Factory.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00354304 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.ReportingM#\d2a521df834e163745eca78c7041c75c\Vodafone.ReportingManager.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00168448 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Contr#\2a04bc85172a2e76b8b5359f28747a21\Vodafone.Core.Contracts.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 01626112 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.BusinessLo#\a566c3122923a452e35c9dfe7dcc9f74\Vodafone.BusinessLogic.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 01593344 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\7e4447d26cd9083018bd28ddd60a0248\System.Drawing.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 12436480 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6b49661877ca78101ebc697b9a6a95fd\System.Windows.Forms.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00112128 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\a5b95c86a810a1e110fcc5bba13306df\Vodafone.Contracts.View.ni.dll 2013-08-09 09:35 - 2013-08-09 09:35 - 00088064 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\edeb435e45eefbc8bfb92476094639d3\Vodafone.Contracts.Common.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00105984 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\5cd43ec1a163d57bab1c1d53beef896a\Vodafone.DeviceAccess.Contracts.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00154624 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\085c1f964a0b02b616373e5f9f9add87\Vodafone.Contracts.Model.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00036864 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\6bdfac76631d8d7b7c91ec9b5007d9cd\Vodafone.Contracts.Presenter.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00041984 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.InstancePr#\5221c0530f0a167a2d6438e6618fef46\Vodafone.InstanceProvider.Impl.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00025088 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Manag#\364832e521e7d2d0420953cf3c2c5b11\Vodafone.View.ManagedToolTip.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00019968 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.MobileBroa#\74a2149f1047ca31ac2da7fadebc8d04\Vodafone.MobileBroadband.CallbackHandler.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00083456 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.VmbApi.Con#\28c43fca58f3ce323cc95574fc27dd5c\Vodafone.VmbApi.Contracts.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00382976 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Win32\4ac9f8d922e1d210ba572cca222d0f4b\Vodafone.Base.Win32.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00167936 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Mondrian\6f4dd62eb381b860483517799f027b9c\Vodafone.Mondrian.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00193536 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SmsContact#\1f76c25af5016d47be422b2cf1389966\Vodafone.SmsContactManager.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00119808 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.Shell32\95af9f2a19dc76ea15313a2970c27e0e\Interop.Shell32.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00080896 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SmsProfile#\532b129a73884b43fadd53c6464b1e7a\Vodafone.SmsProfileManager.ni.dll 2013-08-09 09:36 - 2013-08-09 09:36 - 00038912 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\844a77214648f7ae4784eb3b48d29f18\Vodafone.Contracts.Adapter.ni.dll 2013-08-09 09:43 - 2013-08-09 09:43 - 00046592 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Inter#\f725cfe5240124b7b53df4bfae8b1bc7\Vodafone.Core.Interfaces.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00716800 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Secon#\8519b025a197cb474937685333a28293\Vodafone.View.SecondaryWindows.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00094208 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Remot#\74b1025e6dfe8e5c88062a1d76630453\Vodafone.Core.Remoting.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00030720 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.OutlookCon#\32ff43a3fee1a4497fbb32ea670fdf8b\Vodafone.OutlookConnector.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00192512 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Model.Conn#\3d0ad852bc3fed8c5bef9f89e5ed6d14\Vodafone.Model.Connection.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00058880 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SettingsMa#\0d4b25274d100759e194c55542a5221a\Vodafone.SettingsManager.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00052736 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.UpdateMana#\b5709431d365f1534c226bcc1b6b76bd\Vodafone.UpdateManager.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7aed1bbbe803ad02342add324c61b80c\System.ServiceProcess.ni.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00151552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Base.Win32.dll 2012-07-25 22:25 - 2012-07-06 04:01 - 00479232 _____ (Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6910_none_d089c358442de345\msvcm80.dll 2013-04-08 13:14 - 2012-10-09 04:23 - 00364656 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00167936 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Vpn\eb6d11a81f43a6bed9184132ae405f9d\Vodafone.Vpn.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00343040 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\28a757c59813248320c13031f4cfb17f\Vodafone.DeviceAccess.Internals.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00617472 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Inter#\e46e8a503d063a16865c06e101b42839\Vodafone.Base.Internals.ni.dll 2013-08-09 09:43 - 2013-08-09 09:43 - 00015360 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Inter#\083f1d3bac2995b77674a2a992e72679\Vodafone.Base.Interfaces.ni.dll 2013-08-09 09:43 - 2013-08-09 09:43 - 00018944 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\75288fb21c14a31d66667e5c89ca0276\Vodafone.DeviceAccess.Interfaces.ni.dll 2013-08-09 09:43 - 2013-08-09 09:43 - 00054272 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.NETWORKLIST\d47dc87eda221e98120224b2810b0a71\Interop.NETWORKLIST.ni.dll 2013-04-09 03:03 - 2012-09-14 00:04 - 00315392 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00978432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\67ca465023d310bef5d3285a39444f14\System.Configuration.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 05464064 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\fc5d4ada42ed8e9a30b64912f5dc9767\System.Xml.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\3a0e58d57c135f0ecbcef20c32c15ed1\System.Security.ni.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 01051136 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\3866f7a0829a76e958174f2d89bae9a8\System.Management.ni.dll 2012-08-22 03:30 - 2012-08-03 23:31 - 00032848 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\wminet_utils.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00131072 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\de-DE\MobileBroadbandResources.resources.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00006656 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Plugins\Vodafone.Plugin.MobileConnectionProfileView.dll 2013-08-09 09:44 - 2013-08-09 09:44 - 00070144 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.VpnApiLib\bc54a5be13c58f763a0353fb7045ed49\Interop.VpnApiLib.ni.dll 2013-08-09 09:44 - 2013-08-09 09:44 - 00031744 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.FCCOMINTDLL#\c51c790efa9daf4cbac273855da88dc4\Interop.FCCOMINTDLLLib.ni.dll 2013-08-09 09:44 - 2013-08-09 09:44 - 00022528 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.INSTALLERCO#\f3636bc145b4f621eae597628b308f06\Interop.INSTALLERCONTROLLib.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 02104320 _____ (SpringSource) C:\Windows\assembly\NativeImages_v2.0.50727_32\Spring.Core\78cfbc7fe66d0157b94b1d8eb37de1a4\Spring.Core.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00047104 _____ (hxxp://netcommon.sf.net) C:\Windows\assembly\NativeImages_v2.0.50727_32\Common.Logging\722b2103972f0e7f145bc747f12c323e\Common.Logging.ni.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00231936 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Gui.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 07140352 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.U#\0ef93cf588054907bdd995f4f6ef3335\Infragistics2.Win.UltraWinToolbars.v9.2.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 00871424 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Share#\2041dc1668cc21600ab8295d31d23620\Infragistics2.Shared.v9.2.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 11055104 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.v#\a5e1f58c8c98d30348517ed9523a39b1\Infragistics2.Win.v9.2.ni.dll 2013-02-05 14:54 - 2013-02-05 14:54 - 00186880 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.AdvancedView.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00050176 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.StandardView.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00013824 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.TitleBar.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00061952 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Status.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00009216 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.TaskBar.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00008704 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Notification.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00010752 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.AlwaysBestConnected.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00016896 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Options.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00032256 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Shortcut.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Branding.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00023552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Usage.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.SecondaryWindows.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00017408 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Progressbar.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00060416 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Device.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.VsraPushingUpdates.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00010240 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Prepay.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00005632 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.ManagedToolTip.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00030208 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Commands.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00031744 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Usage.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00134144 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Connection.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00031744 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Notification.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00064000 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Status.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00026624 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.PreferredConnection.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00028672 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Prepay.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00043520 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Shortcut.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.ShortcutBar.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00010240 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Branding.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00007168 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Messaging.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00011776 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.VsraPushingUpdates.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00037888 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.AbcHelp.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Wizard.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00019968 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.WhatsNew.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00011776 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Decorator.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00095232 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Options.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00279552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.DeviceAccess.Dali.dll 2013-01-30 10:54 - 2013-01-30 10:54 - 00027136 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Dali.Contracts.dll 2013-01-23 14:57 - 2013-01-23 14:57 - 00605696 _____ (Vodafone Group) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Dali.Vbdsdk.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.DialUp.dll 2013-08-09 09:35 - 2013-08-09 09:35 - 00025600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\92229fdcf8b5abcc414baf6141f94495\Accessibility.ni.dll 2012-08-22 03:30 - 2012-08-03 23:30 - 00573008 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll 2013-02-05 14:53 - 2013-02-05 14:53 - 00028672 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Taskbar.dll 2013-01-30 10:54 - 2013-01-30 10:54 - 00542720 _____ (Microsoft) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Microsoft.WindowsAPICodePack.Shell.dll 2013-01-30 10:54 - 2013-01-30 10:54 - 00105984 _____ (Microsoft) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Microsoft.WindowsAPICodePack.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00771584 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\32e2f21d9b8c5614c650bb881d06e415\System.Runtime.Remoting.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 02297856 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\2d6e4ef61450818b934cfda112164249\System.Core.ni.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 01304064 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.U#\1acac7cedd6bff5bc8b2838e48e2b697\Infragistics2.Win.UltraWinEditors.v9.2.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 03350016 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\56543ab218fc1a48a39941558fe7d736\WindowsBase.ni.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 12240384 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\e160ec0c386568c802eff15bf297996b\PresentationCore.ni.dll 2013-07-13 18:11 - 2013-04-20 00:05 - 01737888 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll 2013-08-14 16:30 - 2013-08-14 16:30 - 06657024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\25006a263912bf62c8bb0eb4e0b589ea\System.Data.ni.dll 2012-08-22 03:30 - 2012-08-03 23:32 - 02972672 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll 2013-08-15 03:02 - 2013-08-15 03:02 - 00627200 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\cf49a998b717bce1bce9a417376fd6ab\System.Transactions.ni.dll 2012-08-22 03:30 - 2012-08-03 23:32 - 00261632 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll 2013-08-15 03:03 - 2013-08-15 03:03 - 03348992 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.M#\9bf70338008cd29b95c857976e627277\Infragistics2.Win.Misc.v9.2.ni.dll 2013-08-09 09:44 - 2013-08-09 09:44 - 00218624 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.FNCClient11#\f714e33dce9c26133eb7261dba7c3a55\Interop.FNCClient11Lib.ni.dll 2012-07-26 02:08 - 2012-07-26 05:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\NTASN1.dll 2012-11-16 17:47 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-04-12 16:14 - 2012-09-20 08:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.dll 2012-06-08 12:34 - 2012-06-08 12:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (09/03/2013 02:22:07 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434 Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004af9 ID des fehlerhaften Prozesses: 0xec8 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5 Error: (09/03/2013 02:06:28 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: ZeroConfigService.exe, Version: 15.5.0.2, Zeitstempel: 0x50070789 Name des fehlerhaften Moduls: MurocApi.dll, Version: 15.5.0.1, Zeitstempel: 0x500706ce Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000026390 ID des fehlerhaften Prozesses: 0xa64 Startzeit der fehlerhaften Anwendung: 0xZeroConfigService.exe0 Pfad der fehlerhaften Anwendung: ZeroConfigService.exe1 Pfad des fehlerhaften Moduls: ZeroConfigService.exe2 Berichtskennung: ZeroConfigService.exe3 Vollständiger Name des fehlerhaften Pakets: ZeroConfigService.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZeroConfigService.exe5 Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest. Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest. Error: (09/03/2013 01:08:24 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434 Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004af9 ID des fehlerhaften Prozesses: 0x520 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5 Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband) (User: ) Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error PID=4568 Error: (09/03/2013 01:06:49 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2} Generatorname: MSSearch Service Writer Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347} Error: (09/03/2013 01:06:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0} Generatorname: BITS Writer Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d} Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden. . Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4} Generatorname: ASR Writer Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed} System errors: ============= Error: (09/03/2013 02:17:21 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet: %%2147500037 Error: (09/03/2013 02:17:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/03/2013 02:16:34 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 02:16:34 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 02:12:14 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet: %%2147500037 Error: (09/03/2013 02:12:14 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/03/2013 02:11:07 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 02:11:07 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5} Error: (09/03/2013 02:06:52 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/03/2013 02:06:07 PM) (Source: BugCheck) (User: ) Description: 0x00000124 (0x0000000000000000, 0xfffffa800682a028, 0x00000000fe200000, 0x0000000000041136)C:\Windows\MEMORY.DMP090313-21781-01 Microsoft Office Sessions: ========================= Error: (09/03/2013 02:22:07 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af9ec801cea89f93623c8aC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll728b2bf0-1493-11e3-bec9-5453edb62022 Error: (09/03/2013 02:06:28 PM) (Source: Application Error)(User: ) Description: ZeroConfigService.exe15.5.0.250070789MurocApi.dll15.5.0.1500706cec00000050000000000026390a6401cea89df77577e8C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dll42c4a11d-1491-11e3-bec7-5453edb62022 Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_fuer_vlc-media-player.exe Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_for_vlc-media-player.exe Error: (09/03/2013 01:08:24 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af952001cea895aaf5845eC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll2639ceaf-1489-11e3-bec5-5453edb62022 Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband)(User: ) Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error PID=4568 Error: (09/03/2013 01:06:49 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2} Generatorname: MSSearch Service Writer Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347} Error: (09/03/2013 01:06:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0} Generatorname: BITS Writer Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d} Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: ) Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden. Vorgang: Generator wird initialisiert Kontext: Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4} Generatorname: ASR Writer Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed} ==================== Memory info =========================== Percentage of memory in use: 23% Total physical RAM: 6016.39 MB Available physical RAM: 4619.09 MB Total Pagefile: 12160.39 MB Available Pagefile: 10357.41 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:667.67 GB) (Free:452.63 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 699 GB) (Disk ID: FACBF894) Partition: GPT Partition Type ==================== End Of Log ============================ |
03.09.2013, 13:37 | #6 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Ja das iolor-Zeugs haben wir auch noch nicht bearbeitet, sondern zuerst mal aufgeräumt. Ist es nach diesem Fix verschwunden? Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\ HKLM-x32\...\Run: [] - [x] 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ --> iolorgdf32 program not found / iminent |
03.09.2013, 13:45 | #7 |
| iolorgdf32 program not found / iminentCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-09-2013 01 Ran by karsten at 2013-09-03 14:40:45 Run:1 Running from C:\Users\karsten\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\ HKLM-x32\...\Run: [] - [x] 2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe ***************** HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully. C:\Program Files (x86)\WBDesktop.Updater.exe => Moved successfully. ==== End of Fixlog ==== so iolo... ist nun auch weg beim nächsten Firefoxstart kam ein Tab mit: resource://firefox-at-ghostery-dot-com/ghostery/data/walkthrough.html komisch, oder? |
03.09.2013, 13:49 | #8 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Starte noch einmal FRST.
__________________ cheers, Leo |
03.09.2013, 13:51 | #9 |
| iolorgdf32 program not found / iminent ..das geht ja fix hier, Schlag auf Schlag.. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01 Ran by karsten (administrator) on KCW on 03-09-2013 14:50:08 Running from C:\Users\karsten\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe () C:\Program Files\Sony\VAIO Care\listener.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE (AMD) C:\Windows\system32\atieclxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe, HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1 HKLM\...\Policies\Explorer: [NoActiveDesktop] 1 MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe" MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe" HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation) HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.) HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone) AppInit_DLLs: [0 ] () AppInit_DLLs-x32: [0 ] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms} SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0 BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.13.13 Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126 FireFox: ======== FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\ FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK ==================== Services (Whitelisted) ================= R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft) R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation) R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.) S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR) S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation) R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] () S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.) R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.) S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation) R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC) R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated) R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider) S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x] U3 mfeavfk01; No ImagePath ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-03 14:23 - 2013-09-03 14:23 - 00052726 _____ C:\Users\karsten\Downloads\FRST2.txt 2013-09-03 14:14 - 2013-09-03 14:16 - 00000000 ____D C:\AdwCleaner 2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe 2013-09-03 14:05 - 2013-09-03 14:06 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp 2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp 2013-09-03 13:26 - 2013-09-03 14:23 - 00071563 _____ C:\Users\karsten\Downloads\Addition2.txt 2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys 2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll 2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone 2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} ==================== One Month Modified Files and Folders ======= 2013-09-03 14:48 - 2013-03-07 15:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001 2013-09-03 14:43 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-03 14:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-03 14:34 - 2012-11-16 17:56 - 00000000 ____D C:\Program Files (x86)\WildGames 2013-09-03 14:34 - 2012-11-16 17:54 - 00000000 ____D C:\ProgramData\WildTangent 2013-09-03 14:33 - 2013-06-13 19:29 - 00000000 ____D C:\Users\karsten\AppData\Roaming\WildTangent 2013-09-03 14:24 - 2012-11-16 17:15 - 01788440 _____ C:\Windows\WindowsUpdate.log 2013-09-03 14:23 - 2013-09-03 14:23 - 00052726 _____ C:\Users\karsten\Downloads\FRST2.txt 2013-09-03 14:23 - 2013-09-03 13:26 - 00071563 _____ C:\Users\karsten\Downloads\Addition2.txt 2013-09-03 14:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-03 14:17 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-03 14:16 - 2013-09-03 14:14 - 00000000 ____D C:\AdwCleaner 2013-09-03 14:11 - 2012-08-03 04:22 - 00018420 _____ C:\Windows\PFRO.log 2013-09-03 14:10 - 2013-06-29 11:31 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe 2013-09-03 14:06 - 2013-09-03 14:05 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp 2013-09-03 14:05 - 2013-04-24 02:09 - 00000000 ____D C:\Windows\Minidump 2013-09-03 14:05 - 2013-04-24 02:08 - 531305500 _____ C:\Windows\MEMORY.DMP 2013-09-03 14:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-03 13:35 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl 2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp 2013-09-03 13:29 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten 2013-09-03 13:26 - 2013-03-07 17:02 - 00000000 ____D C:\Original 2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST 2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe 2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log 2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable 2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe 2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe 2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation 2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log 2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys 2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk 2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone 2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone 2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird 2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013 2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk 2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc 2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT 2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet 2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner 2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone 2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations 2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision 2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll 2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913} Files to move or delete: ==================== C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe C:\Users\karsten\AppData\Local\Temp\propsys.dll C:\Users\karsten\AppData\Local\Temp\Quarantine.exe C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe C:\Users\karsten\AppData\Local\Temp\Setup.exe C:\Users\karsten\AppData\Local\Temp\SpOrder.dll C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe C:\Users\karsten\AppData\Local\Temp\~nsu.tmp\Au_.exe C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-f9420c9b-db40-456f-abef-79528e0adff2\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-f5498a76-bb70-4428-aa15-52ddca6673de\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-e47cd7a6-94bf-4105-9fad-63543a3ca07f\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-d232afc7-9bba-46fa-a024-7693c5e98197\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-c779992d-5d1a-4eb7-ac6f-ca2082d11e5e\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-948308ea-093f-4582-9061-d61f377036e5\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-8717515e-328e-4e6a-9baa-dc6cdd8253d7\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-7d39a6d6-04bd-422d-aaaa-920bc10a29c0\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-708d7ab0-5bb4-48dd-a60a-9b96fafaee8b\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-4c580cb4-6a3f-4d45-97fc-e1dede2e1858\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-45be10c2-64b7-4e22-aad5-56c1b1b94801\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-41cc1944-3d7e-4725-b1bc-d895a7da5299\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-1f1012f5-a6a0-4604-95b2-b8775bbd1537\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-1e34201a-9db6-4558-adcc-41034d5022ad\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-0caa35cb-5eb0-496f-9af7-5954e5cc925c\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-065084a8-897a-4c38-875c-291c23e4123c\Uninstaller.exe C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-01 13:13 ==================== End Of Log ============================ |
03.09.2013, 13:58 | #10 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Ist nach diesen Schritten alles in Ordnung oder bestehen noch weitere Probleme? Schritt 1 Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2 ESET Online Scanner
__________________ cheers, Leo |
03.09.2013, 14:03 | #11 |
| iolorgdf32 program not found / iminent geht los... Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-09-2013 01 Ran by karsten at 2013-09-03 15:02:40 Run:2 Running from C:\Users\karsten\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi ***************** C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi => Moved successfully. ==== End of Fixlog ==== |
03.09.2013, 14:04 | #12 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Ok. Der ESET-Scan könnte etwas länger dauern - das ist normal.
__________________ cheers, Leo |
03.09.2013, 14:38 | #13 |
| iolorgdf32 program not found / iminent ESET läuft und hat was gefunden: probably variant of WIN32/Adware.Yontoo.A.application der Haken remove ist abgewählt.. soll ich den ESET wie angegeben unter 4-5 deinstallieren oder brauchen wir den nochmal? |
03.09.2013, 14:39 | #14 |
/// TB-Ausbilder | iolorgdf32 program not found / iminent Poste dann das ESET-Log, wenn der Scan durch ist. Dieser Fund ist schon mal harmlos. Wir brauchen ESET danach nicht mehr. Poste zuerst (!) das Log und deinstalliere ihn danach.
__________________ cheers, Leo |
03.09.2013, 15:50 | #15 |
| iolorgdf32 program not found / iminent ESET ist erst bei 90% wird wohl erst morgen früh weitergehen aber schönen Dank schonmal... |
Themen zu iolorgdf32 program not found / iminent |
administrator, adobe, adobe flash player, converter, defender, explorer, farbar, farbar recovery scan tool, firefox, flash player, google, home, homepage, langsam, microsoft, mozilla, plug-in, programme, proxy, realtek, registry, services.exe, software, sprotection, svchost.exe, system, temp, wildtangent games, windows, winlogon.exe |