|
Plagegeister aller Art und deren Bekämpfung: Windows 7: Öffnen von Firefox verursacht sofort Absturz-MeldungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.09.2013, 12:35 | #1 |
| Windows 7: Öffnen von Firefox verursacht sofort Absturz-Meldung Hallo zusammen, brauche jetzt dringend direkte Hilfe, weil andere Foren keine Lösung mehr parat haben... Wenn ich den Firefox öffnen will verursacht er sofort Absturz-Meldung. Ich komme gar nicht in irgendeinen abgesicherten Modus, keine config und somit auch nicht mal das Browser-Fenster!?! Das alles habe ich schon versucht: - Computer auf Viren mit F-Secure gecheckt => Adware.BHO.Bprotector für Babylon Toolbar => bereinigt (Den Scan-Bericht müsste ich scannen - hab den nur ausgedruckt.... - falls benötigt kurz Bescheid geben) Ein erneutes Scannen hat nichts mehr gefunden. - zusätzlich habe ich noch den Adw Cleaner für Adware und Spyware durchlaufen und bereinigen lassen. Code:
ATTFilter # AdwCleaner v3.004 - Bericht erstellt am 19/09/2013 um 11:31:30 # Updated 15/09/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Kathrin Schmid - TERRAPC-KATHRIN # Gestartet von : C:\Users\Kathrin Schmid\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6FDADWIA\adwcleaner004.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\ProgramData\BrowserDefender Ordner Gelöscht : C:\ProgramData\FreeRIP Ordner Gelöscht : C:\ProgramData\IBUpdaterService Ordner Gelöscht : C:\Program Files (x86)\optimizer pro Ordner Gelöscht : C:\Program Files (x86)\Savings Sidekick Ordner Gelöscht : C:\Program Files (x86)\Searchqu Toolbar Ordner Gelöscht : C:\Program Files (x86)\tubesaver Ordner Gelöscht : C:\Program Files (x86)\Common Files\spigot Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Babylon Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Savings Sidekick Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Wajam Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\LocalLow\Claro LTD Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\file scout Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\Claro LTD Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\FreeRIP Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\Funmoods Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\Search Settings Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpglkicenollcignonpgiafdgfeehoj Ordner Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdepfaagokllfmhfbcfmocaeigmoebo Datei Gelöscht : C:\Users\KATHRI~1\AppData\Local\Temp\Searchqu.ini Datei Gelöscht : C:\Users\KATHRI~1\AppData\Local\Temp\searchqutoolbar-manifest.xml Datei Gelöscht : C:\Users\KATHRI~1\AppData\Local\Temp\SetupDataMngr_Searchqu.exe Datei Gelöscht : C:\Users\KATHRI~1\AppData\Local\Temp\Uninstall.exe Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\\invalidprefs.js Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\bprotector_extensions.sqlite Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\bprotector_prefs.js Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\searchplugins\Babylon.xml Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\searchplugins\delta.xml Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\user.js Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences Datei Gelöscht : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cjpglkicenollcignonpgiafdgfeehoj_0.localstorage Datei Gelöscht : C:\windows\Tasks\TubeSaver Update.job Datei Gelöscht : C:\windows\System32\Tasks\TubeSaver Update ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKCU\Software\Mozilla\Firefox\Extensions [Tubesaver@istqt.co] Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dhdepfaagokllfmhfbcfmocaeigmoebo Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\lkojdlfbcgjhhjmdgdbbbbbnfjpepbcj Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BrowserConnection.Loader Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BrowserConnection.Loader.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.funmoodsESrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Savings Sidekick_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Savings Sidekick_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASMANCS Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox.1 Schlüssel Gelöscht : HKCU\Software\5853d68bb739e912 Schlüssel Gelöscht : HKLM\SOFTWARE\5853d68bb739e912 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freerip-mp3_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freerip-mp3_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_mp3-quality-modifier_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_mp3-quality-modifier_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{75A4D144-506D-4BE5-81DB-EC7DA1E7F840} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220022502260} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550055505560} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660066506660} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440044504460} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{000F18F2-09EB-4A59-82B2-5AE4184C39C3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9E131A93-EED7-4BEB-B015-A0ADB30B5646} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D0F4A166-B8D4-48B8-9D63-80849FE137CB} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E634228A-03CF-4BC8-B0AB-668257F1FD8C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110011501160} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079A25-328F-4BD4-BE04-00955ACAA0A7}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9E131A93-EED7-4BEB-B015-A0ADB30B5646}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\Cr_Installer Schlüssel Gelöscht : HKCU\Software\DataMngr [#] Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\filescout Schlüssel Gelöscht : HKCU\Software\IGearSettings Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Savings Sidekick Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Search Settings Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\searchqutoolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\TubeSaver Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\Software\Babylon Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\SearchquMediabarTb Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Savings Sidekick Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu Toolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tubesaver@istqt.co Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DataMngr Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16686 -\\ Mozilla Firefox v21.0 (de) [ Datei : C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\rzk2fu8p.default\prefs.js ] Zeile gelöscht : user_pref("extensions.delta.admin", false); Zeile gelöscht : user_pref("extensions.delta.aflt", "babsst"); Zeile gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Zeile gelöscht : user_pref("extensions.delta.autoRvrt", "false"); Zeile gelöscht : user_pref("extensions.delta.dfltLng", "de"); Zeile gelöscht : user_pref("extensions.delta.excTlbr", false); Zeile gelöscht : user_pref("extensions.delta.ffxUnstlRst", true); Zeile gelöscht : user_pref("extensions.delta.id", "3e8b355c000000000000bc05430bd247"); Zeile gelöscht : user_pref("extensions.delta.instlDay", "15906"); Zeile gelöscht : user_pref("extensions.delta.instlRef", "sst"); Zeile gelöscht : user_pref("extensions.delta.newTab", false); Zeile gelöscht : user_pref("extensions.delta.prdct", "delta"); Zeile gelöscht : user_pref("extensions.delta.prtnrId", "delta"); Zeile gelöscht : user_pref("extensions.delta.rvrt", "false"); Zeile gelöscht : user_pref("extensions.delta.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.delta.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.delta.tlbrSrchUrl", ""); Zeile gelöscht : user_pref("extensions.delta.vrsn", "1.8.21.5"); Zeile gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.21.514:43:45"); Zeile gelöscht : user_pref("extensions.delta.vrsni", "1.8.21.5"); Zeile gelöscht : user_pref("extensions.delta_i.babExt", ""); Zeile gelöscht : user_pref("extensions.delta_i.babTrack", "affID=120692&tsp=4949"); Zeile gelöscht : user_pref("extensions.delta_i.srcExt", "ss"); -\\ Google Chrome v29.0.1547.76 [ Datei : C:\Users\Kathrin Schmid\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht : homepage Gelöscht : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [20916 octets] - [19/09/2013 11:30:49] AdwCleaner[S0].txt - [19389 octets] - [19/09/2013 11:31:30] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [19450 octets] ########## - unter den lokalen Einstellungen hab ich die Acrobat- und Macromedia Flash-Ordner umbenannt sodass FF die nicht mehr starten kann, weil immer wieder der Arobat und Flash usw. mit Abstürzen in Verbindung gebracht wird. - Habe jetzt schon mindestens 5x den Firefox de- und wieder installiert. Und es hat nichts geholfen - sitze mit der neusten Version von FF da und erhalte bei jedem Öffnen eine Absturz-Meldung. Freiwillig wäre ich schon lange bei IE oder Chrome geblieben, jedoch muss ich arbeitsbedingt auch auf FF entwickeln... Also hilft alles nichts und das Ding MUSS funktionieren.......................... Freu mich auf Eure Antwort! |
19.09.2013, 13:49 | #2 |
/// the machine /// TB-Ausbilder | Windows 7: Öffnen von Firefox verursacht sofort Absturz-Meldung hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
19.09.2013, 13:56 | #3 |
| Windows 7: Öffnen von Firefox verursacht sofort Absturz-Meldung FRST.txt
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 Ran by Kathrin Schmid (administrator) on TERRAPC-KATHRIN on 19-09-2013 14:54:04 Running from C:\Users\Kathrin Schmid\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (ASUSTeK COMPUTER INC.) C:\windows\system32\ATKFUSService.exe (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\windows\system32\nvvsvc.exe () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe () C:\Windows\SysWOW64\ASDR.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WlanNetService.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fshoster32.exe (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\CCF_Reputation\fsorsp.exe (HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSMA32.EXE (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSHDLL64.EXE (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\fssm32.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (Hewlett-Packard Company) C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe () C:\Program Files (x86)\MultiScreen\MultiScreen.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe (Hewlett-Packard Company) C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSM32.EXE (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fshoster32.exe () C:\Program Files\ASUS\GamerOSD\ATKFastUserSwitching.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE (Adobe Systems Incorporated) C:\windows\system32\Macromed\Flash\FlashUtil64_11_8_800_174_ActiveX.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7560296 2011-12-12] (Realtek Semiconductor) HKLM\...\Run: [CanonMyPrinter] - C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2184520 2009-03-23] (CANON INC.) HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-17] (CANON INC.) HKLM\...\Run: [HP LaserJet Professional CM1410 Series Fax] - C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe [3706424 2010-08-24] (Hewlett-Packard Company) HKCU\...\Run: [MultiScreen] - C:\Program Files (x86)\MultiScreen\MultiScreen.exe [303104 2009-08-11] () HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20684656 2013-07-25] (Skype Technologies S.A.) MountPoints2: {d179ea75-7388-11e1-9c81-f46d04666a9e} - G:\pushinst.exe HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2012-02-01] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AVMWlanClient] - C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin) HKLM-x32\...\Run: [ASUSGamerOSD] - C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe [380928 2009-07-30] (ASUSTeK Computer Inc.) HKLM-x32\...\Run: [ToolboxFX] - C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe [58936 2010-10-25] (Hewlett-Packard Company) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [F-Secure Manager] - C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSM32.EXE [310208 2013-08-14] (F-Secure Corporation) HKLM-x32\...\Run: [F-Secure Hoster (666)] - C:\Program Files (x86)\F-Secure\fshoster32.exe [191424 2013-05-15] (F-Secure Corporation) HKU\Gast\...\RunOnce: [FlashPlayerUpdate] - C:\windows\system32\Macromed\Flash\FlashUtil64_11_6_602_180_ActiveX.exe -update activex AppInit_DLLs: [0 ] () AppInit_DLLs-x32: [ ] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://nmd.msn.com SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKLM - {03EDFA5C-4DB9-425C-A2FA-90796AC66FFD} URL = hxxp://searchfunmoods.com/results.php?f=4&q={searchTerms}&a=iron2&chnl=iron2&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyCyCyC0Azy0EtAyDyD0CtN0D0Tzu0CtBzztCtN1L2XzutBtFtBtFtDtFtAyEyE&cr=379772023 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {03EDFA5C-4DB9-425C-A2FA-90796AC66FFD} URL = hxxp://searchfunmoods.com/results.php?f=4&q={searchTerms}&a=iron2&chnl=iron2&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyCyCyC0Azy0EtAyDyD0CtN0D0Tzu0CtBzztCtN1L2XzutBtFtBtFtDtFtAyEyE&cr=379772023 SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {11BED4B3-0005-4368-69DC-6D58CE885B0D} URL = hxxp://isearch.avg.com/search?cid={6F464DFC-2109-4351-A33C-C017DDB2CDFC}&mid=d9d71ffaa5b647d09e236d4c05ef3bb4-7a4fbba7756584b9d380e7d7ede34f0ef718b678&lang=de&ds=od011&pr=sa&d=2012-03-22 00:14:06&v=10.2.0.3&sap=dsp&q={searchTerms} SearchScopes: HKCU - {6C2F1D41-C2A5-4A3C-99A1-D9E152A33A5B} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=386496&p={searchTerms} BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla\Firefox\Profiles\ug2mgzkf.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @canon.com/EPPEX - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) FF Plugin-x32: @java.com/DTPlugin,version=10.11.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File CHR Plugin: (McAfee Security Scanner +) - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.110.21) - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Extension: (Chrome In-App Payments service) - C:\Users\KATHRI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 ==================== Services (Whitelisted) ================= R2 AAV UpdateService; C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [128296 2008-10-24] () R2 ASDR; C:\Windows\SysWOW64\ASDR.exe [61440 2009-07-27] () R2 ATKFUSService; C:\windows\system32\ATKFUSService.exe [63488 2009-12-01] (ASUSTeK COMPUTER INC.) R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) R2 fshoster; C:\Program Files (x86)\F-Secure\fshoster32.exe [191424 2013-05-15] (F-Secure Corporation) R3 FSMA; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSMA32.EXE [216000 2013-08-14] (F-Secure Corporation) R2 FSORSPClient; C:\Program Files (x86)\F-Secure\apps\CCF_Reputation\fsorsp.exe [60352 2013-06-25] (F-Secure Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2009-02-10] () S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) ==================== Drivers (Whitelisted) ==================== R3 asusgsb; C:\Windows\System32\drivers\asusgsb.sys [17792 2009-02-17] (ASUSTeK Computer Inc.) R3 atkdisplf; C:\Windows\System32\drivers\ATKDispLowFilter.sys [39424 2009-02-17] (ASUSTeK Computer Inc.) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-04] (AVM Berlin) R1 EIO64; C:\Windows\System32\DRIVERS\EIO64.sys [16384 2012-03-21] (ASUSTeK Computer Inc.) R3 F-Secure Gatekeeper; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [202176 2013-08-27] (F-Secure Corporation) R3 F-Secure Gatekeeper; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [202176 2013-08-27] (F-Secure Corporation) R1 F-Secure HIPS; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\HIPS\drivers\fshs.sys [68928 2013-06-25] (F-Secure Corporation) R1 F-Secure HIPS; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\HIPS\drivers\fshs.sys [68928 2013-06-25] (F-Secure Corporation) R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [56016 2013-08-27] () R0 fsbts; C:\Windows\SysWow64\Drivers\fsbts.sys [42248 2013-05-28] () R3 fsni; C:\Program Files (x86)\F-Secure\apps\CCF_Scanning\fsni64.sys [80832 2013-04-25] (F-Secure Corporation) R3 fsni; C:\Program Files (x86)\F-Secure\apps\CCF_Scanning\fsni64.sys [80832 2013-04-25] (F-Secure Corporation) R1 fsvista; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\minifilter\fsvista.sys [13248 2013-08-14] () R1 fsvista; C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\minifilter\fsvista.sys [13248 2013-08-14] () S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH) R3 fwlanusb4; C:\Windows\System32\DRIVERS\fwlanusb4.sys [1293824 2010-10-04] (AVM GmbH) R2 inpoutx64; C:\Windows\System32\Drivers\inpoutx64.sys [15008 2012-03-06] (Highresolution Enterprises [www.highrez.co.uk]) R4 IOMap; C:\windows\system32\drivers\IOMap64.sys [23680 2010-02-22] (ASUSTeK Computer Inc.) R4 IOMap; C:\windows\system32\drivers\IOMap64.sys [23680 2010-02-22] (ASUSTeK Computer Inc.) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 cpuz135; \??\C:\Users\ADMINI~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-19 14:53 - 2013-09-19 14:53 - 00000000 ____D C:\FRST 2013-09-19 14:52 - 2013-09-19 14:53 - 01950594 _____ (Farbar) C:\Users\Kathrin Schmid\Downloads\FRST64.exe 2013-09-19 12:26 - 2013-09-19 12:26 - 01039554 _____ C:\Users\Kathrin Schmid\Downloads\adwcleaner004.exe 2013-09-19 12:18 - 2013-09-19 12:18 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Local\Mozilla 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-09-19 12:08 - 2013-09-19 12:08 - 00281896 _____ (Mozilla) C:\Users\Kathrin Schmid\Downloads\Firefox Setup Stub 24.0.exe 2013-09-19 11:34 - 2013-09-19 14:37 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-09-19 11:34 - 2013-09-19 11:37 - 00003822 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2013-09-19 11:30 - 2013-09-19 12:26 - 00000000 ____D C:\AdwCleaner 2013-09-18 15:09 - 2013-09-19 12:12 - 00000000 ____D C:\Users\Kathrin Schmid\Downloads\Rezepte 2013-09-14 03:02 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-09-14 03:02 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-09-14 03:02 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-09-14 03:02 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-09-14 03:02 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-09-14 03:02 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-09-14 03:02 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-09-14 03:02 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-09-14 03:02 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-09-14 03:02 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-09-14 03:02 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-09-14 03:02 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-09-14 03:02 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-09-14 03:02 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-13 12:36 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys 2013-09-13 12:36 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-09-13 12:36 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-09-13 12:36 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll 2013-09-13 12:36 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll 2013-09-13 12:36 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll 2013-09-13 12:36 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-09-13 12:36 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll 2013-09-13 12:36 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-09-13 12:36 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2013-09-13 12:36 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2013-09-13 12:36 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2013-09-13 12:36 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll 2013-09-13 12:36 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2013-09-13 12:36 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-09-13 12:36 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe 2013-09-13 12:36 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe 2013-09-13 12:36 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll 2013-09-13 12:36 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe 2013-09-13 12:36 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe 2013-09-13 12:36 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-13 12:36 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-13 12:35 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-09-13 12:35 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-09-13 12:35 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-09-13 12:35 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2013-09-13 12:35 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll 2013-09-08 16:28 - 2013-09-08 16:28 - 00000000 __SHD C:\Users\Kathrin Schmid\AppData\Roaming\.# 2013-09-02 19:33 - 2013-09-02 19:33 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\F-Secure 2013-08-20 21:52 - 2013-08-20 21:52 - 00163456 _____ () C:\Users\Kathrin Schmid\Downloads\MutluvonSchriftartenFontsde_downloader_by_SchriftartenFontsde.exe 2013-08-20 21:04 - 2013-08-27 12:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird ==================== One Month Modified Files and Folders ======= 2013-09-19 14:53 - 2013-09-19 14:53 - 00000000 ____D C:\FRST 2013-09-19 14:53 - 2013-09-19 14:52 - 01950594 _____ (Farbar) C:\Users\Kathrin Schmid\Downloads\FRST64.exe 2013-09-19 14:49 - 2009-07-14 06:45 - 00016752 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-19 14:49 - 2009-07-14 06:45 - 00016752 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-19 14:44 - 2012-10-03 19:27 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Local\CrashDumps 2013-09-19 14:37 - 2013-09-19 11:34 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-09-19 14:36 - 2012-07-24 10:07 - 00001126 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-19 14:33 - 2012-03-22 00:35 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\Skype 2013-09-19 13:36 - 2012-03-06 18:33 - 01198685 _____ C:\windows\WindowsUpdate.log 2013-09-19 12:33 - 2013-02-15 08:46 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-09-19 12:33 - 2012-07-24 10:07 - 00001122 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-19 12:33 - 2012-03-22 00:35 - 00000000 ____D C:\ProgramData\Skype 2013-09-19 12:28 - 2012-03-02 09:16 - 00000000 ____D C:\ProgramData\NVIDIA 2013-09-19 12:28 - 2010-11-21 05:47 - 00370200 _____ C:\windows\PFRO.log 2013-09-19 12:28 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-09-19 12:28 - 2009-07-14 06:51 - 00053282 _____ C:\windows\setupact.log 2013-09-19 12:26 - 2013-09-19 12:26 - 01039554 _____ C:\Users\Kathrin Schmid\Downloads\adwcleaner004.exe 2013-09-19 12:26 - 2013-09-19 11:30 - 00000000 ____D C:\AdwCleaner 2013-09-19 12:18 - 2013-09-19 12:18 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\Mozilla 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Local\Mozilla 2013-09-19 12:18 - 2013-09-19 12:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-09-19 12:18 - 2013-05-26 17:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-09-19 12:16 - 2012-03-21 22:14 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\Adobe 2013-09-19 12:12 - 2013-09-18 15:09 - 00000000 ____D C:\Users\Kathrin Schmid\Downloads\Rezepte 2013-09-19 12:08 - 2013-09-19 12:08 - 00281896 _____ (Mozilla) C:\Users\Kathrin Schmid\Downloads\Firefox Setup Stub 24.0.exe 2013-09-19 12:07 - 2012-03-21 22:14 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Local\Adobe_gibts-nicht-mehr 2013-09-19 11:38 - 2011-02-23 14:12 - 00656236 _____ C:\windows\system32\perfh007.dat 2013-09-19 11:38 - 2011-02-23 14:12 - 00131090 _____ C:\windows\system32\perfc007.dat 2013-09-19 11:38 - 2009-07-14 07:13 - 01505422 _____ C:\windows\system32\PerfStringBackup.INI 2013-09-19 11:37 - 2013-09-19 11:34 - 00003822 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2013-09-19 11:37 - 2012-04-02 11:40 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2013-09-19 11:37 - 2012-03-21 23:44 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-19 11:33 - 2013-05-28 17:21 - 00000618 _____ C:\windows\Tasks\Scheduled scanning task.job 2013-09-19 11:33 - 2013-03-22 08:51 - 00000000 ____D C:\Program Files (x86)\F-Secure 2013-09-19 11:02 - 2013-05-28 17:21 - 00003392 _____ C:\windows\System32\Tasks\Scheduled scanning task 2013-09-19 10:39 - 2012-03-27 10:43 - 00003994 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{05B0ECE8-2410-4A19-8CFC-7A2FFB5687D0} 2013-09-18 22:54 - 2012-04-15 18:16 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\HpUpdate 2013-09-18 21:17 - 2012-04-08 19:56 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-18 15:34 - 2012-03-22 00:19 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\MyPhoneExplorer 2013-09-18 15:32 - 2013-06-04 13:19 - 201316160 _____ C:\Users\Kathrin Schmid\Downloads\Vorsilvester.zip 2013-09-16 12:22 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\NDF 2013-09-14 14:52 - 2012-03-21 21:14 - 00000000 ___RD C:\Users\Kathrin Schmid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-14 14:52 - 2012-03-21 21:14 - 00000000 ___RD C:\Users\Kathrin Schmid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-14 03:46 - 2013-02-28 04:43 - 00000000 ____D C:\windows\rescache 2013-09-14 03:21 - 2009-07-14 06:45 - 09450904 _____ C:\windows\system32\FNTCACHE.DAT 2013-09-14 03:17 - 2012-04-08 19:58 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\SoftGrid Client 2013-09-14 03:02 - 2012-04-08 19:58 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-09-14 03:02 - 2012-03-21 21:31 - 01532104 _____ C:\windows\SysWOW64\PerfStringBackup.INI 2013-09-14 03:01 - 2013-08-17 03:00 - 00000000 ____D C:\windows\system32\MRT 2013-09-14 03:01 - 2012-04-02 13:04 - 79143768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-09-08 16:28 - 2013-09-08 16:28 - 00000000 __SHD C:\Users\Kathrin Schmid\AppData\Roaming\.# 2013-09-08 16:24 - 2012-11-10 17:25 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Local\HP 2013-09-02 19:33 - 2013-09-02 19:33 - 00000000 ____D C:\Users\Kathrin Schmid\AppData\Roaming\F-Secure 2013-08-27 14:06 - 2013-05-28 17:23 - 00056016 _____ C:\windows\system32\Drivers\fsbts.sys 2013-08-27 13:59 - 2012-03-21 21:31 - 10424366 _____ C:\windows\FSISU.log 2013-08-27 13:59 - 2012-03-21 21:31 - 03166959 _____ C:\windows\FSSFM.log 2013-08-27 13:59 - 2012-03-21 21:31 - 02578522 _____ C:\windows\FSSETUP.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00801640 _____ C:\windows\FSDEPH.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00708668 _____ C:\windows\FSPROD.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00691827 _____ C:\windows\RunSetup.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00421721 _____ C:\windows\FSAVINST.LOG 2013-08-27 13:59 - 2012-03-21 21:31 - 00101572 _____ C:\windows\fspplugin.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00028533 _____ C:\windows\FSGKIAIN.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00019785 _____ C:\windows\prodsett_copy.ini 2013-08-27 13:59 - 2012-03-21 21:31 - 00012827 _____ C:\windows\FSLDIN.LOG 2013-08-27 13:59 - 2012-03-21 21:31 - 00012243 _____ C:\windows\FSAVCSIN.LOG 2013-08-27 13:59 - 2012-03-21 21:31 - 00003942 _____ C:\windows\fsav_db_setup.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00003013 _____ C:\windows\fsavunin.log 2013-08-27 13:59 - 2012-03-21 21:31 - 00002380 _____ C:\windows\DAASINST.LOG 2013-08-27 12:53 - 2013-08-20 21:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-20 21:52 - 2013-08-20 21:52 - 00163456 _____ () C:\Users\Kathrin Schmid\Downloads\MutluvonSchriftartenFontsde_downloader_by_SchriftartenFontsde.exe Some content of TEMP: ==================== C:\Users\Kathrin Schmid\AppData\Local\Temp\36527uninstall.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\AskSLib.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\avguidx.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\CommonInstaller.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\iGearedHelper.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\installhelper.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\MachineIdCreator.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\MSETUP4.EXE C:\Users\Kathrin Schmid\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\nvSCPAPISvr.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\nvStereoApiI.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\nvStInst.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\pdf24-creator-update.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\Quarantine.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\SkypeSetup.exe C:\Users\Kathrin Schmid\AppData\Local\Temp\SRAssetsHelper.dll C:\Users\Kathrin Schmid\AppData\Local\Temp\wajam_install.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-13 14:24 ==================== End Of Log ============================ Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-09-2013 Ran by Kathrin Schmid at 2013-09-19 14:54:27 Running from C:\Users\Kathrin Schmid\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 64 Bit HP CIO Components Installer (Version: 7.2.4) 64 Bit HP CIO Components Installer (Version: 7.2.8) 7-Zip 9.20 (x32) AAVUpdateManager (x32 Version: 18.00.0000) Adobe AIR (x32 Version: 3.7.0.1530) Adobe Community Help (x32 Version: 3.4.980) Adobe Content Viewer (x32 Version: 1.4.0) Adobe Digital Editions (x32) Adobe Download Assistant (x32 Version: 1.2.1) Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.174) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168) Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.14.1.0) ASUS Gamer OSD (x32 Version: 3.07.0419) ASUS nVidia Driver (x32 Version: 1.00.0000) ASUS Smart Doctor (x32 Version: 5.80) AVM FRITZ!WLAN (x32) Canon IJ Network Tool (x32) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (x32) Canon MP Navigator EX 3.0 (x32) Canon MP640 series Benutzerregistrierung (x32) Canon MP640 series MP Drivers Canon Utilities Easy-PhotoPrint EX (x32) Canon Utilities My Printer (x32) Canon Utilities Solution Menu (x32) Computer Security 12.83.104.0 (release) (x32 Version: 12.83.104.0) D3DX10 (x32 Version: 15.4.2368.0902) ElsterFormular (x32 Version: 13.2.0.8623p) F-Secure (x32 Version: 1.83.311.0) F-Secure CCF Reputation (x32 Version: 1.0.25.1877) F-Secure CCF Scanning 1.23.124.8831 (release) (x32 Version: 1.23.124.8831) F-Secure Network CCF 1.02.128 (x32 Version: 1.02.128) Google Chrome (x32 Version: 29.0.1547.76) HP FWUpdateEDO3 (x32 Version: 1.0.0.0) HP LaserJet Professional CM1410 Series (x32) HP LJ CM1410 MFP Series HP Scan (x32 Version: 1.0.302.0) HP Update (x32 Version: 5.003.001.001) HPLaserJetHelp_LearnCenter (x32 Version: 1.03.0000) HPLJUT (x32 Version: 1.00.0012) hppCM1410LaserJetService (x32 Version: 001.008.00477) hppFaxDrvCM1410 (x32 Version: 003.000.00001) hppFaxUtilityCM1410 (x32 Version: 000.002.00001) hppLaserJetService (x32 Version: 002.015.00599) hppSendFaxCM1410 (x32 Version: 003.000.00001) hppTLBXFXCM1410 (x32 Version: 001.012.00948) hpzTLBXFX (x32 Version: 006.015.01163) I.R.I.S. OCR (x32 Version: 12.3.4.0) Intel(R) Control Center (x32 Version: 1.2.1.1007) Intel(R) Management Engine Components (x32 Version: 7.0.0.1144) Intel(R) Rapid Storage Technology (x32 Version: 11.1.0.1006) Juniper Networks Network Connect 7.1.0 (x32 Version: 7.1.0.18193) Juniper Networks, Inc. Setup Client (HKCU Version: 7.1.2.10059) Juniper Networks, Inc. Setup Client Activex Control (x32 Version: 2.1.1.1) Junk Mail filter update (x32 Version: 15.4.3502.0922) Marketsplash Shortcuts (x32 Version: 1.0.0.9) McAfee Security Scan Plus (x32 Version: 3.0.318.3) Mesh Runtime (x32 Version: 15.4.5722.2) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053) Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053) Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000) Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000) Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000) Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000) Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000) Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000) Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000) Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000) Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0) Mozilla Maintenance Service (x32 Version: 24.0) Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MultiScreen (x32 Version: 1.00.0000) MyPhoneExplorer (x32 Version: 1.8.4) NVIDIA 3D Vision Controller-Treiber 306.97 (Version: 306.97) NVIDIA 3D Vision Treiber 311.06 (Version: 311.06) NVIDIA Grafiktreiber 311.06 (Version: 311.06) NVIDIA HD-Audiotreiber 1.3.12.0 (Version: 1.3.12.0) NVIDIA Install Application (Version: 2.1002.108.688) NVIDIA PhysX (x32 Version: 9.12.0209) NVIDIA PhysX-Systemsoftware 9.12.0209 (Version: 9.12.0209) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106) NVIDIA Systemsteuerung 311.06 (Version: 311.06) NVIDIA Update 1.11.3 (Version: 1.11.3) NVIDIA Update Components (Version: 1.11.3) PDF24 Creator 5.2.0 (x32) PSPad editor (x32 Version: 4.5.7.2450) Realtek Ethernet Controller Driver (x32 Version: 7.50.1123.2011) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6526) Skype™ 6.7 (x32 Version: 6.7.102) Steuer-Spar-Erklärung 2013 (x32 Version: 18.08) TeamViewer 8 (x32 Version: 8.0.18051) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Utility (x32 Version: 1.00.0002) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3538.0513) Windows Live Family Safety (Version: 15.4.3538.0513) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3538.0513) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) WinSCP 4.3.7 (x32 Version: 4.3.7) XviD MPEG-4 Video Codec (x32) ==================== Restore Points ========================= 19-09-2013 12:05:16 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2013-08-20 08:07 - 2013-09-15 14:03 - 00000355 ____A C:\windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {00B775A7-E039-40E5-B8DB-BF0014E355D3} - System32\Tasks\{7369FBA1-CEDD-4769-BD1F-8BE376A35C6B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started Task: {058815D2-B6F3-4F38-88B0-5E8CEA03EF44} - System32\Tasks\{4D3B28E6-5D2D-458D-BFD2-DC9F926B09A8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {059DACB1-103B-4CDB-84C5-87CEB352EDB8} - System32\Tasks\{B8C2E909-CF5E-40BB-8691-3D06F5C4099E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {07FCB389-4F41-418C-B021-F4B756967FBD} - System32\Tasks\{CD2EA73A-1FB1-473C-AB4E-81C31EC0CA38} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {08F3C2D9-5C48-4B62-81F8-9F1AF6B1CA69} - System32\Tasks\{1339CCD8-9DEF-4878-B542-BEDD34941C43} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0A0E67F0-1D9A-42AD-A76C-7253BF118CCD} - System32\Tasks\{EA464005-45F6-4FB3-BAF7-A664977C18D0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0ABBB3E9-F26B-46CF-B2B8-8BDA0517F0FB} - System32\Tasks\{03967AAA-BA09-41E5-9CE9-368539EB0504} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0B7FB927-628D-4251-9DD9-E3E518656F40} - System32\Tasks\User_Feed_Synchronization-{05B0ECE8-2410-4A19-8CFC-7A2FFB5687D0} => C:\windows\system32\msfeedssync.exe [2013-02-28] (Microsoft Corporation) Task: {0D45165F-8901-4920-B87C-D313AD88BE8F} - System32\Tasks\{F9C3A6C2-56C2-4489-96CE-0FEEEB0F43F8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1111198B-DF6E-4B2B-A44D-69F5F0FBE8F0} - System32\Tasks\{4C5FEA06-024A-4B5F-A7CC-A11CC5B2F31D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1601 Task: {11B79994-9731-4A66-BF1C-DD30126B3D08} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-24] (Google Inc.) Task: {13DD30DD-929F-496D-B61A-D8003737367F} - System32\Tasks\{016B82D6-8FD7-456F-A55F-2D2DC7524EC2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {14980B74-48F9-410B-A7E4-111373AB8051} - System32\Tasks\{304FABA6-1856-44E0-978B-2363C3A3A138} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1581F5CB-1996-4574-9073-B40C78DB90F9} - System32\Tasks\{CC3EBBFA-373B-4DBD-A988-D56F4EEDD47E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {170220DF-CC0D-4013-9CFC-FCE55A16624D} - System32\Tasks\{123D7B47-FC89-4569-BFC0-46AC34300EE9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1CDE9D1B-9F70-4206-A447-73FDAD982867} - System32\Tasks\{47ADD6B8-2B1D-4B90-A856-A109248B465C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1E56A252-305A-4247-B65B-39463BDFC841} - System32\Tasks\{F99EC967-16A8-4F2D-A132-B085ED6EDFB2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1E6A6F39-9DD1-4DEE-8CDF-BE3ABE1EDB19} - System32\Tasks\{DBDCA000-9772-4B91-92B7-3BED4BF33583} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {20C670CD-F37F-4EC4-A984-381B5C8492ED} - System32\Tasks\{973E2F79-06D2-4FE2-89E3-0474F746319F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2127FBED-5565-4C1E-9D6B-2B2C741E353C} - System32\Tasks\{D449BBF0-5827-42D7-A91A-7EC8E80E0F86} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2213FC65-2D32-4733-AC4D-EA91F526854F} - System32\Tasks\{6F8C9E80-F74F-4B75-AA84-3550E182D823} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {23087F9A-A48B-45A6-905A-D06CA34847CF} - System32\Tasks\{C76FA7B2-87EC-4F8E-9D3C-321D939FB70E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {23ACD206-5287-4D89-BE8E-14DD42548741} - System32\Tasks\{5130ECE8-A561-48C2-B2BA-6DC2606DAF66} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2433ECC1-0372-43ED-B504-FB10C79C45AB} - System32\Tasks\{DB4380BC-AD54-4EE2-8BC2-CA04C8146DB8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2585D5D7-E2BA-41E7-A5D1-494CEADA6445} - System32\Tasks\{C3130FDF-D884-45DF-BF98-665B62BFC8B8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {295ADF3D-73CA-4D8F-BEA9-0D89E68DD163} - System32\Tasks\{36C1B5B8-F5CA-429D-809C-61ED2B2E3781} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2A9A67D8-F0F7-4A3F-9683-F6565AA37E48} - System32\Tasks\{F041D7F0-602D-46A2-AA08-53657346D34A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2C892E7F-C17A-4476-A7B8-1CAC37AAF4D5} - System32\Tasks\{3BC7CE76-C5BB-4ABB-96FD-01A2F16D7AB4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {303C6C65-1585-4AA8-9D6B-8884A67C0CBB} - System32\Tasks\{B568E268-C8AD-487B-8BEE-515EF539B632} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {32D52B56-2A21-4219-AF57-89AE2A09BDE3} - System32\Tasks\{E3888358-8503-40FD-97DC-AC33B38CFF98} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {350665AE-2E5C-4BF0-BC46-7AD5BC719089} - System32\Tasks\{158A6793-9314-429F-A8F7-CCBCDB3E4AD4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {35CEA214-FE3C-442F-903C-E1D93422B8D9} - System32\Tasks\{EACE458E-5CAE-4A26-B77D-8AA4EB7AA19D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {35D2D9AA-E605-47E2-B563-6DE69EDEAFB5} - System32\Tasks\{18388E58-DBAB-4A37-854C-BAD11EE69FDD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3654AD67-9851-4F91-91DA-1FB1805F84F7} - System32\Tasks\{EE79D4D4-C2DC-4799-9721-F7AF25BEF653} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3791654D-AD48-405A-96CD-22AC9711DFB9} - System32\Tasks\{38735CD3-C4E7-4A02-BA31-B521D0DEF294} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {389CB6E0-3667-4EA1-B838-F18F0D50E70F} - System32\Tasks\{D3878F4F-10F0-46B0-B99C-174C37DACC3D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3A1DADE5-D4D2-446B-A587-CAD42C759EEF} - System32\Tasks\{086C3492-273F-470A-91E6-B2CCE6D865AB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3C8CEEB5-6758-4667-9060-7F18B7EE12C1} - System32\Tasks\{EC5F6594-303D-4E67-BDB0-597A61608777} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3DA06B71-DD00-4485-A692-EE90E04C07E3} - System32\Tasks\{C02DE9E7-64AD-4961-940E-AEDBFE24411D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3FF10476-4A48-4A02-ADE0-569737BF07F9} - System32\Tasks\{03A42803-832F-4DF4-A2FA-B9D840AB0054} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {434AFCBB-2DE8-4E0B-9591-6549B8B6C159} - System32\Tasks\{1DE4B927-355F-4B15-A182-D7B8300E0919} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {43770A67-3183-4E40-9D5D-38DE8AC83BDA} - System32\Tasks\{91EEA43F-CD1E-4CB4-B915-03C057F98223} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {43FF33F6-875F-4224-B1F1-7CBB76B50A7A} - System32\Tasks\{CACE7604-DC53-4BC7-A87A-A722B35386C1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {46023144-FE78-4DEF-9A82-284EBFBD82D1} - System32\Tasks\{39CCBA41-EE69-4A86-9F66-47726A38B46E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {47CF0B97-4490-4BF2-8CF3-7B702ACD8C54} - System32\Tasks\{5F9BF71E-99DF-45DE-A154-142CDF85773C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4CCAECD1-6AD6-4C21-BE5A-950ADA16B2CC} - System32\Tasks\{E2FBAC5D-4957-4029-8B0F-D5575F14E3F5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4D6BA446-3C05-4DB0-85F3-2ACE0DC161BF} - System32\Tasks\{CA60538D-F4C4-4E59-9A29-C16F082E562B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4FDC83D0-B8AA-4185-98C8-A6CD2B115F08} - System32\Tasks\Scheduled scanning task => C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Anti-Virus\fsav.exe [2013-08-14] (F-Secure Corporation) Task: {4FE77082-3FBA-4D8F-A04D-62C5F17F4D87} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {536D099E-54EE-431E-AE9C-D153E3BF5511} - System32\Tasks\{84FF88BC-F047-4024-A4A0-A577F00048E9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {54BD4746-47D4-4F93-9A76-F6ED2D129204} - System32\Tasks\{FC64DBE5-D0EC-48E2-BE63-7A0F7C1D9E16} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {54D95B81-33D4-4CB3-89A8-2D80D8C46E92} - System32\Tasks\{8BA2CDB5-9A5B-4981-B29E-BF01D8605E96} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {56A374D4-A952-4518-8D71-4D6E46BB07B7} - System32\Tasks\{C7DD98D8-FF17-4643-A516-4EDAC56F63A0} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5B96695F-8B6C-4457-AF37-E6D41E02D3FD} - System32\Tasks\{386B5BBE-F218-4EBD-8312-92E81FBB3B69} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5BEA82F6-DCE6-4910-9982-9D22F282FDB7} - System32\Tasks\{448F3C9B-43EA-4837-899B-E94C70BE3945} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5F83B238-A50D-402D-9B62-7034C1ACE90E} - System32\Tasks\{9C90E535-7741-40B8-8F7E-A6E832811589} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {60F2BF41-BF2E-45F3-B3FD-BE4F8338518F} - System32\Tasks\{7CD30B05-6DE2-418C-B17D-76E89A6CFBD5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {65C3F434-F410-4089-A5CB-CF419F4257D8} - System32\Tasks\{3BA1EDFA-BD5C-4863-9B9F-1318AD4BA3D9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {68123CAA-C6B0-4863-95CB-C216949F7EC5} - System32\Tasks\{60F2C939-229D-46F3-925A-8D452E10D2D5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {686D2467-A49B-4254-9559-B73E4518ACE2} - System32\Tasks\{778D8EB2-3530-4483-9F4D-6B2140259A09} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {68C10A09-BC3D-4AEB-A371-C3E110489F58} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {696266CD-C701-45F8-9B0E-D6C48D416D08} - System32\Tasks\{E70A5C63-F9F4-426E-80E6-A20A002561E1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6B804652-1A3E-41F6-9767-45C958A52281} - System32\Tasks\{AD2AAF05-169E-4758-8B6D-161321986F0E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6BBF686B-2662-4667-B314-BADF83A10480} - System32\Tasks\{C5CBFC06-BAA4-4663-A1D1-CDB831567155} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6E0B8F83-4E65-49B2-946C-65B0D7ED5D82} - System32\Tasks\{8D502677-20E8-4252-A7B2-942402A40C29} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7124A54B-F768-46A6-ACEC-292870B32094} - \TubeSaver Update No Task File Task: {7416F264-F1FD-4DDD-BB23-A09F55E5E851} - System32\Tasks\{65AD442D-2095-4D5F-8168-121E9653291B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7711E431-ED48-4142-87DA-3DD96CE3E6EF} - System32\Tasks\{CB26D781-6C9A-4CD8-8E24-2DB506390BD6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {78B5806D-57F7-407B-B1E7-17452A29AD7E} - System32\Tasks\{6413A402-DE9F-48C5-A9F7-2818D9C90DAA} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {78F099FF-AB3D-4C7F-AC70-3CC41BBC015D} - System32\Tasks\{657ECAD9-85CF-489E-B9F5-7B736A1113B0} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {794F3C2A-A587-4AE0-8AE6-F97BA8D99490} - System32\Tasks\{295763E5-AE0A-41CF-9E88-4F9F203C7966} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7B664B4F-790C-4A51-997C-A2230B35FAF5} - System32\Tasks\{94AE8A2C-AF84-4911-9AF3-7B9F9DDC276B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7B8B74B3-9F62-4606-A821-B71B0DF5B8FE} - System32\Tasks\{D7AE8C23-D496-422C-9E76-6FCC7828CEA2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7BF25431-2BDB-4A33-8EFD-178B703015ED} - System32\Tasks\{4546EE4A-3A4C-40B2-B729-F3B878ECE550} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7C796623-A92D-4435-ACC2-F6A0BA0728C7} - System32\Tasks\{8B42FDCC-D297-40A1-9DC2-66F3E3BEC49B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7CE377D7-FDAA-4601-839C-57570686D140} - System32\Tasks\{ED46B96F-2F61-4F48-954B-88632BF4A69B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7E262D2F-5A6A-4AB4-883C-650894A45883} - System32\Tasks\{DCC2F1EF-99CE-43A7-8BAA-BA12688ED6A6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7E5BAE99-98A1-46B7-B077-C6F25B1B1259} - System32\Tasks\{4297BE1B-0C5D-4CA2-928F-6D5B6841BFCD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7FC0FD9D-301B-47E7-A71F-2ABB9C736966} - System32\Tasks\{86A444A4-A9E1-458B-A7EA-6092A5924D6E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7FE5C2BF-EA47-4E54-B2B4-9474F476BCF9} - System32\Tasks\{A0DAC210-F042-44FD-83B2-F3AC6355A76D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {847B8E18-57A8-4EDE-86A8-15129CDBB466} - System32\Tasks\{392CA99E-66E2-4778-ACDC-FD8B1C4BED88} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {88491306-B8F3-4672-A1E9-C3D5ECDD7619} - System32\Tasks\{0339BCCA-2B7A-4856-8C5B-416FCEC5D8F8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8972F390-1E6E-4ABD-9673-869B9AD4983A} - System32\Tasks\{A993A1AB-BCCB-4E7A-B4FD-ECADE298D58B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8D30A4EB-91FE-4C18-83AE-F1BE0F67F26F} - System32\Tasks\{357E356C-F3AB-4C00-BEB1-F1EBADEC2489} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8DBF1C4B-87C0-4F42-9D02-FD6F976AB37F} - System32\Tasks\{F0AF6A49-70B9-4652-A1B8-99582261B7B3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {900F2FFD-2BA6-4409-806E-6E8057E8AC39} - System32\Tasks\{236CE039-AA90-4888-8E7D-111929A2FB87} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {95B1A2A9-17E2-4DD7-8B2E-EF7F28D0D086} - System32\Tasks\{8011D967-10C7-45F8-AE7C-A2D788C2C8D1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {95CFC1B2-CEBD-4501-A5B3-0D003F05C912} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-19] (Adobe Systems Incorporated) Task: {99EF410F-EB4D-43C6-A183-13E8F2A7D335} - System32\Tasks\{AAABC15D-41E3-44BE-A143-3A1E01084493} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9BB687B4-BF76-4FD8-A85F-EE8896929704} - System32\Tasks\{4F25E39D-F05A-4F45-928F-A9F288AFFC3B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9BE29A49-27D5-4E11-A42B-AE3481C05C27} - System32\Tasks\{98CB3ADE-141A-4DFF-AA41-845693B54737} => Firefox.exe hxxp://ui.skype.com/ui/0/5.9.0.123/de/go/help.faq.installer?LastError=1603 Task: {9CBE4DEC-6E21-46F2-9C03-DD1C004A8E30} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-21] (Microsoft Corporation) Task: {9E420853-3712-49AD-B23E-F71A36FABA04} - System32\Tasks\{0A20245E-AE60-4AA1-9810-2D03386CB6D0} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9EFCA2A7-3AB2-44D0-9109-971E067C3DFA} - System32\Tasks\{FC622E80-3D8C-4807-B900-8DBB763E1F68} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9F466A86-CE1E-4509-8C38-32241E56A6C9} - System32\Tasks\{473DAFDC-80B2-4769-BD12-EBFC2C5F9D89} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A4D9AB69-1D0E-4956-A1B3-D79F94BA8E68} - System32\Tasks\{398029DC-82FD-4906-8BBF-3E8FD81F001A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AA3D0252-F659-4D4D-ACBC-D39E28CB74B0} - System32\Tasks\{5E846F4E-D9F7-47DD-9E82-637DDC1CE01B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {ABD3DBA5-B7C8-4C40-9B6E-C9205E6D6392} - System32\Tasks\{630C2310-5374-459A-A0E0-44043C7BE4C9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AF625DD9-F863-4F63-85F9-3E5C77E58846} - System32\Tasks\{59D31B6C-8521-4A21-9BC4-49143377F6B8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B25CE163-098B-440B-ABC6-C7FD96D49ECF} - System32\Tasks\{B5AB6C1F-C9A0-4B9D-8958-E87B6C517884} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B32597BB-2BEB-4EF4-B950-613AF6914302} - System32\Tasks\{D1750FA0-D214-450A-A2BD-334FBEB6A138} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B834B34B-8E6E-4360-83B6-CBD277B78EA8} - System32\Tasks\{FBC536E7-A041-4A42-8DA6-596085416FB0} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BC0C444A-9BC5-493D-A12A-D9475FF27814} - System32\Tasks\{DF45C901-70F1-4CAB-8C80-A06701F59292} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BCEA99CC-FC99-44FB-9ECD-A45708ABDEC4} - System32\Tasks\{BC13BA5F-8861-438D-A974-791E4FB98FD9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BCF7B3CB-ADFF-40E2-8AE2-9E1EEB413873} - System32\Tasks\{B63F8C6C-0B6D-47D2-8D91-5F3B9196ED5F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C36A912E-4668-4054-A11B-87FC21E2DA88} - System32\Tasks\{351A9441-8D3C-4A28-9AE8-14FB417A772D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C3DEFFD8-A3B4-4585-8715-BAD4546110D9} - System32\Tasks\{5666BA67-F961-4AEF-A430-A9FB0DE9CBE5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C4101EF3-AB9D-4C40-BFD4-2A16711FEF14} - System32\Tasks\{B3DE1111-A362-4103-8676-89E13BE3A1E4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C5FFCEB0-8C6E-44EB-885D-7A0B9ED7F7D3} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {C72CCFF1-027A-406E-89AB-1E0ED7316818} - System32\Tasks\{95369A47-F19A-4540-9FC0-FCCB646513C7} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C8ECB455-D17C-498D-8383-13297F911BE9} - System32\Tasks\{E1500D43-603B-4E64-AE48-B47633EED795} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C9E68CAA-4741-464F-8245-F991079D6461} - System32\Tasks\{AFB9AFA7-31B6-43F7-9F56-E3A61D79C0AD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CA8A366A-4184-4A6C-98D9-1C13B0255221} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\windows\SysWOW64\FlashPlayerUpdateService.exe Task: {CAC3294B-BD3C-4E33-94EC-83E6F1C5F76E} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\System32\sdengin2.dll [2010-11-21] (Microsoft Corporation) Task: {CD92B80C-1029-4A5D-8D07-148545E4EFFA} - System32\Tasks\{F523F104-0C2E-4FC3-BAF1-CDCBDBB2B7CB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D3FDAC05-C9F0-4DD6-93E1-B13303E28E35} - System32\Tasks\{365675F1-594C-4B56-BF1B-C6FB0982906D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D41A4D20-F1ED-4D76-9DBD-6A34759238BA} - System32\Tasks\{79C54CA4-AFE3-4B1D-BCB9-A33FC8EF0BF9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D7309B95-0945-413C-ADA5-302FC4C90C9A} - System32\Tasks\AdobeFlashPlayerUpdate => C:\windows\SysWOW64\FlashPlayerUpdateService.exe Task: {DAEC2144-6666-40F8-B81D-EA73A99537F8} - System32\Tasks\{EAA059CE-3613-4808-B3FC-4CC70B2477A5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DBE78CE3-3F42-4E0A-978D-C85A35F0CCEE} - System32\Tasks\{4D6E0B67-CD29-4350-A100-9270038FC42D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DC3BF922-D2CE-4C72-BA65-4628153A1EEF} - System32\Tasks\{C17DD8A3-1470-4D4C-B39D-351F542EA6FB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DDEE0CDE-587D-406A-A5B2-874247D7788C} - \WPD\SqmUpload_S-1-5-21-2126143677-4287403178-2351277978-500 No Task File Task: {E154C373-BACB-423B-926F-4FF2BBB7336C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-24] (Google Inc.) Task: {E283EE16-137B-4755-87BA-1C4955181FA6} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {E4725443-5773-4BA9-AEBD-129930FB71C2} - System32\Tasks\{7AF4C1B8-1837-4493-AB7D-4BABF88936D1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E5728719-45E6-47C7-9B50-EEE623C07CF1} - System32\Tasks\{30FB0DC8-048A-484A-9085-C67896760CCE} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E66ABD46-208A-4A67-AEF3-2229350109F4} - System32\Tasks\{8ED817E3-9384-40BA-A419-9317A0269F24} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E93BE01A-180B-4986-9731-176E0CF7FF23} - System32\Tasks\{ABD857DB-3288-4F57-AAAF-20A71E9AB341} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EA1ED66E-964F-4904-8CD4-37F1E4AF2C3C} - System32\Tasks\{4075A646-A45C-42FC-B850-ACB131D7CAF5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EAA8BEB0-E0AB-4CB9-9AD7-18DFB2F64309} - System32\Tasks\{C2351698-C348-46F1-A37B-1D919D176C0C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EC322DC6-F122-4471-8E59-DE744BFECCD4} - System32\Tasks\{BC1CB838-B494-43D3-9A89-B9926AC3166A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EC6B5064-643E-4EE4-9B35-80F356B4E626} - System32\Tasks\{2C8D5B99-93C5-485E-9AF3-29A7E0658CA2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {ECEBB3D8-0CDB-4095-9BED-F9EF87062EF1} - System32\Tasks\{02D3363C-7E5D-489F-9A52-97C4443C12D1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EF175BFB-D8E7-4071-B247-6105E8F48199} - System32\Tasks\{B94288D2-9465-49B9-9AE5-53282E26090D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F216D93B-8A0F-459E-B783-A65E38A9FC65} - System32\Tasks\{73DBC91F-D397-4DA9-BB5F-34A403E384EE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F23C489E-B647-46C8-A56F-4731772D1F64} - System32\Tasks\{DB90AF95-1A7D-4D88-85D7-31180278FA98} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F23E257A-3D11-411A-BF72-47EF55052E25} - System32\Tasks\{CD893C08-512A-4298-9156-FDFB4243A862} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F24DC3D6-D3A0-4820-A535-91A8FE4D86D4} - System32\Tasks\{5C840014-CB99-483D-9617-026145CF6C79} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F4CC6582-BA5B-4301-BB14-229BFDA2824E} - System32\Tasks\{958B80CC-DCA6-4E55-BFFA-2F700A197152} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F51D62A2-0E18-4BD9-BA70-4BCA1F2679D4} - System32\Tasks\{FDCF9740-E9B4-4CD6-A542-536268532F5B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F64BC6A1-9FA6-47C3-B920-8C35DFB2DEC5} - System32\Tasks\{B508F401-4D82-42B4-B773-4A0C7AD02DF4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F7881A70-1F3F-4CB9-ABA3-B37CFB9A9D22} - System32\Tasks\{E2C0744A-325C-46EA-B337-60997E07F6D9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F8BB683D-5B2B-4727-8CF6-162C9F0E3D57} - System32\Tasks\{A893F2AE-D910-4DBE-8F01-7E1C2F1F39AB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FB4AD339-CE00-416D-9EFF-59C03FED1815} - System32\Tasks\{DA49E619-BE49-4206-ADE4-4E4E0ADC4BFC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FC9F44C7-CB54-4F23-A070-D2E25929C675} - System32\Tasks\{5FA5E5E3-2FB7-4994-807C-80DCC2DC7EF3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FF0A06B9-B772-448D-A6F1-FAB44AC67BB7} - System32\Tasks\{8291A250-4AD4-4604-BACF-D90EB81A88FA} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FF1FC5A0-2A30-4A64-B1E1-D7DBFCDDD099} - System32\Tasks\{138261CB-32EE-4082-ACA9-772C36152AB4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\Scheduled scanning task.job => C:\PROGRA~2\F-Secure\apps\COMPUT~1\ANTI-V~1\fsav.exe ==================== Loaded Modules (whitelisted) ============= 2009-07-14 02:18 - 2009-07-14 03:38 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\imaadp32.acm 2009-07-14 02:18 - 2009-07-14 03:38 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\msg711.acm 2009-07-14 02:18 - 2009-07-14 03:38 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\msgsm32.acm 2009-07-14 02:18 - 2009-07-14 03:38 - 00024064 _____ (Microsoft Corporation) C:\windows\system32\msadp32.acm 2009-07-14 02:22 - 2009-07-14 03:38 - 00081408 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\System32\l3codeca.acm 2013-08-27 14:02 - 2013-06-25 09:37 - 00506304 _____ (F-Secure Corporation) c:\program files (x86)\f-secure\apps\computersecurity\hips\fshook64.dll 2012-03-21 22:13 - 2010-04-15 20:33 - 00151040 _____ (ASUSTeK Computer Inc.) C:\windows\system32\atkdx11dispx.dll 2012-10-10 22:23 - 2013-02-26 00:32 - 15053264 _____ (NVIDIA Corporation) C:\windows\system32\nvwgf2umx.dll 2012-04-03 08:22 - 2012-02-18 21:35 - 00192208 _____ (Martin Prikryl) C:\Program Files (x86)\WinSCP\DragExt64.dll 2013-05-28 17:10 - 2013-08-14 14:23 - 00234432 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fspmapi_64.dll 2013-02-26 00:32 - 2013-02-26 00:32 - 18055184 _____ (NVIDIA Corporation) C:\windows\system32\nvd3dumx.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00278464 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fpshx.dll 2013-05-28 17:10 - 2013-08-14 14:23 - 00303552 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fslapi64.dll 2013-05-28 17:10 - 2013-08-14 14:23 - 00203712 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSMA_64.dll 2012-03-02 09:14 - 2010-11-03 19:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2012-03-02 09:14 - 2011-12-08 17:27 - 03744872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2012-04-08 19:50 - 2009-03-23 19:00 - 00113152 _____ (CANON INC.) C:\Program Files\Canon\MyPrinter\cnmpu.dll 2012-04-08 19:50 - 2009-04-06 19:00 - 00065536 _____ (CANON INC.) C:\Program Files\Canon\MyPrinter\BJMyRes.dll 2011-12-10 00:01 - 2011-12-10 00:01 - 00041472 _____ () C:\Program Files (x86)\MyPhoneExplorer\DLL\mpe_gadget_connector_net.dll 2012-10-10 22:23 - 2013-02-26 00:32 - 02826040 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll 2013-09-19 11:34 - 2013-09-19 11:34 - 00529288 _____ (Adobe Systems, Inc.) C:\windows\system32\Macromed\Flash\FlashUtil64_11_8_800_174_ActiveX.dll 2012-03-22 22:47 - 2009-08-11 14:54 - 00094208 _____ () C:\Program Files (x86)\MultiScreen\TitleBar.dll 2012-03-22 22:47 - 2009-08-11 14:54 - 00053248 _____ () C:\Program Files (x86)\MultiScreen\SmartMouseDll.dll 2013-08-27 14:02 - 2013-06-25 09:37 - 00419264 _____ (F-Secure Corporation) c:\program files (x86)\f-secure\apps\computersecurity\hips\fshook32.dll 2012-03-22 22:47 - 2009-08-11 14:56 - 00057344 _____ () C:\Program Files (x86)\MultiScreen\MGResGer.dll 2012-03-21 22:13 - 2009-04-29 21:46 - 01077248 _____ () C:\Program Files (x86)\ASUS\GamerOSD\ImageTransform.dll 2012-03-21 22:13 - 2009-02-17 19:22 - 00184320 _____ () C:\Program Files (x86)\ASUS\GamerOSD\AudioOnVistaDLL.dll 2009-07-14 02:07 - 2009-07-14 03:14 - 00064000 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codeca.acm 2010-10-25 14:36 - 2010-10-25 14:36 - 00038456 _____ (HP) C:\Program Files (x86)\HP\ToolboxFX\bin\HPServiceCommunicator.dll 2010-10-25 14:36 - 2010-10-25 14:36 - 00119864 _____ () C:\Program Files (x86)\HP\ToolboxFX\bin\nativeutils.dll 2012-04-24 16:32 - 2012-12-12 11:28 - 00057528 _____ (Geek Software GmbH) C:\Program Files (x86)\PDF24\Settings.dll 2012-04-24 16:32 - 2012-12-12 11:28 - 00394936 _____ (Geek Software GmbH) C:\Program Files (x86)\PDF24\NotifyIcon.dll 2012-04-24 16:32 - 2012-12-12 11:28 - 00047288 _____ (Geek Software GmbH) C:\Program Files (x86)\PDF24\Language.dll 2012-04-24 16:32 - 2012-12-12 11:28 - 00382648 _____ (Geek Software GmbH) C:\Program Files (x86)\PDF24\About.dll 2013-08-27 13:59 - 2013-08-14 14:23 - 00175040 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\FSPMAPI.dll 2013-08-27 13:59 - 2013-08-14 14:23 - 00236480 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fslapi.dll 2013-08-27 13:59 - 2013-08-14 14:23 - 00148928 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fsma32.dll 2013-05-28 17:10 - 2013-08-14 14:23 - 00105408 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\Common\fsmres.eng 2013-05-28 17:10 - 2013-08-14 14:22 - 02149312 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\fsmuiav.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00605120 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\gres.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00220096 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\guilaunc.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 01960896 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\flyer.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00056256 _____ () C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\fsavures.eng 2012-08-06 14:53 - 2013-06-25 07:37 - 00117696 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\CCF_Reputation\json_c.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00154560 _____ () C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\flyerres.eng 2013-05-28 17:10 - 2013-08-14 14:23 - 00224192 _____ (F-Secure Corp.) c:\program files (x86)\f-secure\apps\computersecurity\scanner-interface\fsgkiapi.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00068544 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\CCFIPC.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00101312 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\CCFDLLHosterAPI.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 01047488 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\ControlLayer.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00041408 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\JsonParser.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00031168 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\ParserFramework.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 02661944 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtCore4.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00064448 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\CuifTypes.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00129984 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\DataLayer.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 08793656 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtGui4.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00150464 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\DeclarationHandler.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 14270008 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtWebKit4.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 01093176 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtNetwork4.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 00593464 _____ () C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtMultimediaKit1.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 00831032 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtOpenGL4.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 00376376 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtXml4.dll 2013-01-18 12:06 - 2013-06-18 03:00 - 00125888 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fs_ccf_id_converter32.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00891840 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\CuifWidgets.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00076736 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\CommonSettingsWidgets.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00142272 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\HelpWidgets.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 00462392 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtHelp4.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 00650808 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtSql4.dll 2013-03-22 08:51 - 2013-03-22 08:51 - 01154616 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\windows\WinSxS\x86_f-secure.qt_4_6_2_2e112a926211c0a3_4.6.482.65_none_b59e1e0911fd55ab\QtCLucene4.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00285632 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\LaunchPadWidgets.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00306112 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\servicewidgets.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00146368 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\widgets\ActionCenterWidgets.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00179136 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\ActionCenterPlugin.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00134080 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fs_ccf_settings32.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00046528 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\About.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00056256 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\Navigator.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00068544 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\AboutPlugin.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00408512 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\serviceinstallerui.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00129984 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\CuifApi.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00056256 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\fs_gaming_mode_ui.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00059840 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fs_gaming_mode_32.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00068544 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\Status.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00037824 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\Licensing.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00051648 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\CCF_Licensing.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00029120 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\SystemInfo.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00134080 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\checkforupdatesui.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00080832 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fsaua_api_dll.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00019904 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\LocaleInfo.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00027072 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\ProductInfo.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00056256 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\CuifSimpleAction.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00080832 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\HelpPlugin.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00036288 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\fs_cs_status_notification.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00093120 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\LegacyLink.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00117696 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\NotificationsHistoryPlugin.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00224192 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\Localization.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00028608 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\Help.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00187328 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\CommonSettingsPlugin.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 00121792 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\LaunchPadPlugin.dll 2013-01-18 12:06 - 2013-01-18 12:06 - 00155632 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\SELocalInfoAPI.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00059328 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\WinFirewall.dll 2013-05-28 17:10 - 2013-08-14 14:22 - 00134080 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\ManagementAgent.dll 2013-08-27 13:59 - 2013-08-14 14:23 - 00148928 _____ (F-Secure Corporation) c:\program files (x86)\f-secure\apps\computersecurity\common\fsma32.dll 2013-08-27 13:59 - 2013-08-14 14:23 - 00175040 _____ (F-Secure Corporation) c:\program files (x86)\f-secure\apps\computersecurity\common\fspmapi.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00363456 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\addproductplugin.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00064448 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fs_ccf_download_32.dll 2013-08-27 13:59 - 2013-08-14 14:22 - 00089024 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\ManagementAgent\AntiVirus.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00637888 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\agent.dll 2013-05-15 16:06 - 2013-05-15 16:06 - 01440704 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\fs_secl_32.dll 2013-08-27 13:59 - 2013-08-14 14:22 - 00056256 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\ManagementAgent\AUASettings.dll 2013-08-27 13:59 - 2013-08-14 14:22 - 00056256 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\apps\ComputerSecurity\FSGUI\data\ManagementAgent\Email.dll 2013-05-15 16:05 - 2013-05-15 16:05 - 00183232 _____ (F-Secure Corporation) C:\Program Files (x86)\F-Secure\plugins\FlyerPlugin.dll 2013-07-25 08:52 - 2013-07-25 08:52 - 00088944 ____R (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.dll 2013-09-19 11:34 - 2013-09-19 11:34 - 16244616 ____R (Adobe Systems, Inc.) C:\windows\SysWOW64\Macromed\Flash\Flash32_11_8_800_174.ocx 2013-08-17 03:27 - 2013-08-17 03:27 - 00489472 _____ (Intel Corporation) C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\591b99d5681c59ed6c5e9544d7def0ea\IAStorUtil.ni.dll 2013-07-11 03:29 - 2013-07-11 03:29 - 00014336 _____ (Intel Corp.) C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\45581138b36fd338c87813390775b65f\IAStorCommon.ni.dll ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/19/2013 02:44:22 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 10.0.9200.16686, Zeitstempel: 0x52058cf0 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb1116 Ausnahmecode: 0x80004005 Fehleroffset: 0x0000c41f ID des fehlerhaften Prozesses: 0xcf0 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Error: (09/19/2013 00:30:34 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/19/2013 11:34:56 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/19/2013 11:30:31 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: nvtray.exe, Version: 7.17.13.1106, Zeitstempel: 0x50f957dd Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0x3764 Startzeit der fehlerhaften Anwendung: 0xnvtray.exe0 Pfad der fehlerhaften Anwendung: nvtray.exe1 Pfad des fehlerhaften Moduls: nvtray.exe2 Berichtskennung: nvtray.exe3 Error: (09/19/2013 11:21:25 AM) (Source: FSecure-FSecure-F-Secure DeepGuard) (User: ) Description: 1 2013-09-19 11:21:25+02:00 SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\users\kathrin schmid\appdata\local\microsoft\windows\temporary internet files\content.ie5\1yb3zlyt\hijackthis - chip-downloader.exe File hash: 1f1554fce6915c52c28f47441f64d44abaee6852 Error: (09/19/2013 11:16:03 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: taskeng.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce79d2c Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0x125c Startzeit der fehlerhaften Anwendung: 0xtaskeng.exe0 Pfad der fehlerhaften Anwendung: taskeng.exe1 Pfad des fehlerhaften Moduls: taskeng.exe2 Berichtskennung: taskeng.exe3 Error: (09/19/2013 11:03:53 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SearchProtocolHost.exe, Version: 7.0.7601.17610, Zeitstempel: 0x4dc0d006 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0x180c Startzeit der fehlerhaften Anwendung: 0xSearchProtocolHost.exe0 Pfad der fehlerhaften Anwendung: SearchProtocolHost.exe1 Pfad des fehlerhaften Moduls: SearchProtocolHost.exe2 Berichtskennung: SearchProtocolHost.exe3 Error: (09/19/2013 11:01:55 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: nvtray.exe, Version: 7.17.13.1106, Zeitstempel: 0x50f957dd Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0x2fac Startzeit der fehlerhaften Anwendung: 0xnvtray.exe0 Pfad der fehlerhaften Anwendung: nvtray.exe1 Pfad des fehlerhaften Moduls: nvtray.exe2 Berichtskennung: nvtray.exe3 Error: (09/19/2013 11:01:52 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: nvtray.exe, Version: 7.17.13.1106, Zeitstempel: 0x50f957dd Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0x2398 Startzeit der fehlerhaften Anwendung: 0xnvtray.exe0 Pfad der fehlerhaften Anwendung: nvtray.exe1 Pfad des fehlerhaften Moduls: nvtray.exe2 Berichtskennung: nvtray.exe3 Error: (09/19/2013 11:01:33 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: nvtray.exe, Version: 7.17.13.1106, Zeitstempel: 0x50f957dd Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb164a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000986ea ID des fehlerhaften Prozesses: 0xa80 Startzeit der fehlerhaften Anwendung: 0xnvtray.exe0 Pfad der fehlerhaften Anwendung: nvtray.exe1 Pfad des fehlerhaften Moduls: nvtray.exe2 Berichtskennung: nvtray.exe3 System errors: ============= Error: (09/19/2013 00:30:50 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (09/19/2013 00:30:50 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (09/19/2013 11:35:14 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (09/19/2013 11:35:14 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (09/18/2013 10:57:26 PM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (09/18/2013 03:34:38 PM) (Source: DCOM) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (09/18/2013 03:31:26 PM) (Source: DCOM) (User: ) Description: {73C9DFA0-750D-11E1-B0C4-0800200C9A66} Error: (09/18/2013 00:22:53 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (09/18/2013 00:21:32 PM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (09/16/2013 06:10:06 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Microsoft Office Sessions: ========================= Error: (09/19/2013 02:44:22 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE10.0.9200.1668652058cf0KERNELBASE.dll6.1.7601.1822951fb1116800040050000c41fcf001ceb524720c9d1aC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\windows\syswow64\KERNELBASE.dll3506a7ae-2129-11e3-9db8-bc05430bd247 Error: (09/19/2013 00:30:34 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/19/2013 11:34:56 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/19/2013 11:30:31 AM) (Source: Application Error)(User: ) Description: nvtray.exe7.17.13.110650f957ddntdll.dll6.1.7601.1822951fb164ac000000500000000000986ea376401ceb51ae1c646e9C:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\windows\SYSTEM32\ntdll.dll1ffc9b50-210e-11e3-bd97-bc05430bd247 Error: (09/19/2013 11:21:25 AM) (Source: FSecure-FSecure-F-Secure DeepGuard)(User: ) Description: 1 2013-09-19 11:21:25+02:00 SYSTEM F-Secure DeepGuard Application was blocked. This was determined to be a high-risk application by system control heuristics. Application path: \\?\c:\users\kathrin schmid\appdata\local\microsoft\windows\temporary internet files\content.ie5\1yb3zlyt\hijackthis - chip-downloader.exe File hash: 1f1554fce6915c52c28f47441f64d44abaee6852 Error: (09/19/2013 11:16:03 AM) (Source: Application Error)(User: ) Description: taskeng.exe6.1.7601.175144ce79d2cntdll.dll6.1.7601.1822951fb164ac000000500000000000986ea125c01ceb518db1a3f68C:\windows\system32\taskeng.exeC:\windows\SYSTEM32\ntdll.dll1ac8f383-210c-11e3-bd97-bc05430bd247 Error: (09/19/2013 11:03:53 AM) (Source: Application Error)(User: ) Description: SearchProtocolHost.exe7.0.7601.176104dc0d006ntdll.dll6.1.7601.1822951fb164ac000000500000000000986ea180c01ceb5172a373bf1C:\windows\system32\SearchProtocolHost.exeC:\windows\SYSTEM32\ntdll.dll67e88992-210a-11e3-bd97-bc05430bd247 Error: (09/19/2013 11:01:55 AM) (Source: Application Error)(User: ) Description: nvtray.exe7.17.13.110650f957ddntdll.dll6.1.7601.1822951fb164ac000000500000000000986ea2fac01ceb516e38294e5C:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\windows\SYSTEM32\ntdll.dll2133e285-210a-11e3-bd97-bc05430bd247 Error: (09/19/2013 11:01:52 AM) (Source: Application Error)(User: ) Description: nvtray.exe7.17.13.110650f957ddntdll.dll6.1.7601.1822951fb164ac000000500000000000986ea239801ceb516e1bbced5C:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\windows\SYSTEM32\ntdll.dll1f6f2016-210a-11e3-bd97-bc05430bd247 Error: (09/19/2013 11:01:33 AM) (Source: Application Error)(User: ) Description: nvtray.exe7.17.13.110650f957ddntdll.dll6.1.7601.1822951fb164ac000000500000000000986eaa8001ceb516d553a7a1C:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\windows\SYSTEM32\ntdll.dll1411f0c1-210a-11e3-bd97-bc05430bd247 ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8172.13 MB Available physical RAM: 6145.15 MB Total Pagefile: 16342.45 MB Available Pagefile: 13553.62 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:90.73 GB) (Free:5.82 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: () (Fixed) (Total:931.51 GB) (Free:508.15 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: CA7E1C2F) Partition 1: (Not Active) - (Size=91 GB) - (Type=07 NTFS) Partition 2: (Active) - (Size=21 GB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 2E0DA728) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
19.09.2013, 17:35 | #4 |
/// the machine /// TB-Ausbilder | Windows 7: Öffnen von Firefox verursacht sofort Absturz-Meldung Revo Uninstaller - Download - Filepony damit Firefox deinstallieren, keine Daten behalten, alle Reste entfernen lassen. Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte. Firefox neu installieren.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 7: Öffnen von Firefox verursacht sofort Absturz-Meldung |
abstürzen, adw cleaner, appdata, appdatalow, browser-fenster, computer, dateien, dringend, explorer, firefox, foren, gelöscht, google, home, internet, internet explorer, lösung, microsoft, mozilla, nicht mehr, ordner, registrierungsdatenbank, software, spyware, starten, system32, verbindung, viren, wickel, windows |