|
Plagegeister aller Art und deren Bekämpfung: HTML/Infected.WebPage.Gen2Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.10.2013, 23:39 | #1 |
| HTML/Infected.WebPage.Gen2 Hallo zusammen, habe einen Virus oder ähnliches gefunden: HTML/Infected.WebPage.Gen2 Habe daraufhin meine Festplatte neu formatiert. Der Fund kam nun von meiner externen Festplatte, auf der ich meine Daten gesichert habe. Habe OTL ausgeführt, nur weiß ich nicht, ob die Festplatte auch gescannt wurde. Anbei die logs. Code:
ATTFilter OTL logfile created on: 06.10.2013 00:14:48 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Caro\Downloads Starter Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 1,99 Gb Total Physical Memory | 1,39 Gb Available Physical Memory | 69,84% Memory free 3,98 Gb Paging File | 3,06 Gb Available in Paging File | 76,88% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 215,79 Gb Total Space | 197,28 Gb Free Space | 91,42% Space Free | Partition Type: NTFS Drive D: | 4,00 Gb Total Space | 2,66 Gb Free Space | 66,51% Space Free | Partition Type: FAT32 Drive E: | 931,32 Gb Total Space | 596,24 Gb Free Space | 64,02% Space Free | Partition Type: exFAT Computer Name: CARO-PC | User Name: Caro | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Caro\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) PRC - C:\Programme\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) PRC - C:\Programme\Samsung\Kies\Kies.exe (Samsung) PRC - C:\Programme\Bluetooth Suite\BtvStack.exe (Atheros Communications) PRC - C:\Programme\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations) PRC - C:\Programme\Bluetooth Suite\AdminService.exe (Atheros Commnucations) PRC - C:\Programme\Launch Manager\LManager.exe (Dritek System Inc.) PRC - C:\Programme\Launch Manager\dsiwmis.exe (Dritek System Inc.) PRC - C:\Programme\Launch Manager\LMworker.exe (Dritek System Inc.) PRC - C:\Programme\Acer\Updater\iUpdate.exe (Insyde Software Corp.) PRC - C:\Windows\explorer.exe (Microsoft Corporation) PRC - C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated) PRC - C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) PRC - C:\Programme\Acer\Acer ePower Management\ePowerEvent.exe (Acer Incorporated) PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) PRC - C:\Programme\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.) PRC - C:\Programme\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) PRC - C:\Programme\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.) PRC - C:\Programme\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated) PRC - C:\Programme\Acer\Acer VCM\RS_Service.exe (Acer Incorporated) PRC - C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group) PRC - C:\Programme\Acer\Registration\GREGsvc.exe (Acer Incorporated) PRC - C:\Programme\Acer\Android Manager\iSync.exe (Insyde Software Corp.) PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation) ========== Modules (No Company Name) ========== MOD - C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll () MOD - C:\Windows\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_de_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll () MOD - C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_de_b77a5c561934e089\System.Runtime.Remoting.resources.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\1f18baac078c4552b764e9f9b7fb1fa0\System.Core.ni.dll () MOD - C:\Programme\Samsung\Kies\Theme\Kies.Theme.dll () MOD - C:\Programme\Samsung\Kies\Common\Kies.UI.dll () MOD - C:\Programme\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.Interface.dll () MOD - C:\Programme\Samsung\Kies\MVVM\Kies.MVVM.dll () MOD - C:\Programme\Samsung\Kies\External\MediaModules\ASF_cSharpAPI.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\179228277a9bbba9fb2ebeee5b1a41a2\IAStorUtil.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\6b8b76b26be7d7f4c3d1cb644811a2ef\System.ServiceProcess.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\6728ef6a4c4b41eec6af6f48a7109457\System.Runtime.Remoting.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b090f03193ffab4bc38d14316331ac67\PresentationFramework.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\46a97b15da5b620fbb606cb05b6573a3\System.Windows.Forms.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\fdeec42fa02f3d789c42be2e33b130eb\System.Drawing.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\b7075f4be49affb3dfc655917113dd02\PresentationCore.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cd18fe55c106a2776b08ce297afe7f46\WindowsBase.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\3060dfcdecbeb8ee65077fb29b217c3d\System.Xml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\f2060a0cf20f2536277761f4e517e906\System.Configuration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\500ddd904b1099f95552a81b54223b7f\System.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\f58ab951b57c8526430486dcf7ee38fd\mscorlib.ni.dll () MOD - C:\Programme\Acer\Android Manager\DEU.dll () MOD - C:\Programme\Launch Manager\CdDirIo.dll () ========== Services (SafeList) ========== SRV - (AntiVirSchedulerService) -- C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirWebService) -- C:\Programme\Avira\AntiVir Desktop\avwebg7.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirService) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) SRV - (AtherosSvc) -- C:\Programme\Bluetooth Suite\AdminService.exe (Atheros Commnucations) SRV - (DsiWMIService) -- C:\Programme\Launch Manager\dsiwmis.exe (Dritek System Inc.) SRV - (ePowerSvc) -- C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) SRV - (IAStorDataMgrSvc) -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV - (MWLService) -- C:\Programme\EgisTec MyWinLocker\x86\MWLService.exe (Egis Technology Inc.) SRV - (RS_Service) -- C:\Programme\Acer\Acer VCM\RS_Service.exe (Acer Incorporated) SRV - (Updater Service) -- C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group) SRV - (GREGService) -- C:\Programme\Acer\Registration\GREGsvc.exe (Acer Incorporated) SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV - (WMPNetworkSvc) -- C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH) DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira Operations GmbH & Co. KG) DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG) DRV - (avnetflt) -- C:\Windows\System32\drivers\avnetflt.sys (Avira Operations GmbH & Co. KG) DRV - (avkmgr) -- C:\Windows\System32\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG) DRV - (BTATH_A2DP) -- C:\Windows\System32\drivers\btath_a2dp.sys (Atheros) DRV - (BtFilter) -- C:\Windows\System32\drivers\btfilter.sys (Atheros) DRV - (BTATH_HCRP) -- C:\Windows\System32\drivers\btath_hcrp.sys (Atheros) DRV - (BTATH_RCP) -- C:\Windows\System32\drivers\btath_rcp.sys (Atheros) DRV - (BTATH_LWFLT) -- C:\Windows\System32\drivers\btath_lwflt.sys (Atheros) DRV - (ATHDFU) -- C:\Windows\System32\drivers\AthDfu.sys (Windows (R) Win 7 DDK provider) DRV - (AthBTPort) -- C:\Windows\System32\drivers\btath_flt.sys (Atheros) DRV - (BTATH_BUS) -- C:\Windows\System32\drivers\btath_bus.sys (Atheros) DRV - (L1C) -- C:\Windows\System32\drivers\L1C62x86.sys (Atheros Communications, Inc.) DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.) DRV - (EUCR) -- C:\Windows\System32\drivers\EUCR6SK.sys (ENE Technology Inc.) DRV - (mwlPSDVDisk) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys (Egis Technology Inc.) DRV - (mwlPSDNServ) -- C:\Windows\System32\drivers\mwlPSDNserv.sys (Egis Technology Inc.) DRV - (mwlPSDFilter) -- C:\Windows\System32\drivers\mwlPSDFilter.sys (Egis Technology Inc.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ IE - HKCU\..\SearchScopes,DefaultScope = {774B50F9-F90F-403D-AEA2-6D977DF6BCC2} IE - HKCU\..\SearchScopes\{774B50F9-F90F-403D-AEA2-6D977DF6BCC2}: "URL" = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Programme\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O4 - HKLM..\Run: [Acer ePower Management] C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated) O4 - HKLM..\Run: [AndroidManager] C:\Programme\Acer\Android Manager\AML.exe () O4 - HKLM..\Run: [AthBtTray] C:\Program Files\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations) O4 - HKLM..\Run: [AtherosBtStack] C:\Program Files\Bluetooth Suite\BtvStack.exe (Atheros Communications) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) O4 - HKLM..\Run: [EgisUpdate] C:\Program Files\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.) O4 - HKLM..\Run: [IAStorIcon] C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [iPatchData] C:\Programme\Acer\Updater\iUpdate.exe (Insyde Software Corp.) O4 - HKLM..\Run: [iSyncData] C:\Programme\Acer\Android Manager\iSync.exe (Insyde Software Corp.) O4 - HKLM..\Run: [KiesTrayAgent] C:\Programme\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKLM..\Run: [LManager] C:\Programme\Launch Manager\LManager.exe (Dritek System Inc.) O4 - HKLM..\Run: [mwlDaemon] C:\Programme\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.) O4 - HKLM..\Run: [SuiteTray] C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.) O4 - HKCU..\Run: [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup File not found O4 - HKCU..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe (Samsung) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O9 - Extra Button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Programme\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3554765A-9542-43B4-A2AA-8C58BD01F508}: DhcpNameServer = 192.168.178.1 O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Acer\Acer VCM\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2013.10.06 02:37:47 | 000,000,000 | ---D | C] -- C:\Windows\de-DE [2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer [2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\de-DE [2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\0407 [2013.10.06 02:37:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\de [2013.10.06 02:36:48 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbrpm.sys.mui [2013.10.06 02:36:38 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fvevol.sys.mui [2013.10.06 02:36:24 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\nwifi.sys.mui [2013.10.06 02:36:24 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\qwavedrv.sys.mui [2013.10.06 02:36:13 | 000,033,280 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\de-DE\yk62x86.sys.mui [2013.10.06 02:36:13 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volsnap.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbport.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1y6032.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1e6032.sys.mui [2013.10.06 02:36:13 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\E1G60I32.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\viac7.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\processr.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\intelppm.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdppm.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdk8.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1q6032.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1k6032.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\k57nd60x.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\b57nd60x.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbhub.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serial.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ohci1394.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\1394ohci.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerIb.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\i8042prt.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\acpi.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\de-DE\ltmdmnt.sys.mui [2013.10.06 02:36:13 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\battc.sys.mui [2013.10.06 02:36:13 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pci.sys.mui [2013.10.06 02:36:13 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthport.sys.mui [2013.10.06 02:36:13 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\IPMIDrv.sys.mui [2013.10.06 02:36:13 | 000,006,144 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\bcm4sbxp.sys.mui [2013.10.06 02:36:13 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\sermouse.sys.mui [2013.10.06 02:36:13 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdclass.sys.mui [2013.10.06 02:36:13 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e100b325.sys.mui [2013.10.06 02:36:13 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouclass.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wacompen.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vhdmp.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vdrvroot.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tpm.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\isapnp.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hdaudbus.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parport.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ataport.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\de-DE\atikmdag.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\de-DE\getn62.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\umbus.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parvdm.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mssmbios.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouhid.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vwifibus.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\VIAAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ULIAGPKX.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\UAGP35.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\SISAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\NV_AGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\MTConfig.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdhid.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\GAGP30KX.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\BTHUSB.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AMDAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AGP440.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wd.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\disk.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\cdrom.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthenum.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdide.sys.mui [2013.10.06 02:36:09 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mpio.sys.mui [2013.10.06 02:36:09 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\afd.sys.mui [2013.10.06 02:36:09 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerId.sys.mui [2013.10.06 02:36:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\msdsm.sys.mui [2013.10.06 02:36:09 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pcmcia.sys.mui [2013.10.06 02:36:09 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthpan.sys.mui [2013.10.06 02:36:09 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\de-DE\pscr.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\portcls.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\modem.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ipnat.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\HdAudio.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serscan.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismpx.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismp6.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hidbth.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volmgrx.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pnpmem.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\Dot4usb.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrParwdm.sys.mui [2013.10.06 02:36:05 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ntfs.sys.mui [2013.10.06 02:36:05 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tunnel.sys.mui [2013.10.06 02:36:05 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\luafv.sys.mui [2013.10.06 02:36:05 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rdbss.sys.mui [2013.10.06 02:36:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\srv.sys.mui [2013.10.06 02:36:04 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndisuio.sys.mui [2013.10.06 02:36:04 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\partmgr.sys.mui [2013.10.06 02:36:04 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mountmgr.sys.mui [2013.10.06 02:35:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndiscap.sys.mui [2013.10.06 02:35:59 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\RNDISMP.sys.mui [2013.10.06 02:35:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scfilter.sys.mui [2013.10.06 02:35:55 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\http.sys.mui [2013.10.06 02:35:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndis.sys.mui [2013.10.06 02:35:55 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fltmgr.sys.mui [2013.10.06 02:35:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scsiport.sys.mui [2013.10.06 02:35:55 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui [2013.10.06 02:35:50 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tcpip.sys.mui [2013.10.06 02:35:50 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pacer.sys.mui [2013.10.06 02:35:50 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ws2ifsl.sys.mui [2013.10.06 02:35:46 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bfe.dll.mui [2013.10.06 02:30:25 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log [2013.10.05 23:49:13 | 000,000,000 | ---D | C] -- C:\Windows\pss [2013.10.05 21:06:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec [2013.10.05 21:06:31 | 000,000,000 | ---D | C] -- C:\Program Files\MyFree Codec [2013.10.05 21:03:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung [2013.10.05 21:03:27 | 004,659,712 | ---- | C] (Dmitry Streblechenko) -- C:\Windows\System32\Redemption.dll [2013.10.05 21:03:08 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- C:\Windows\System32\dgderapi.dll [2013.10.05 21:02:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung [2013.10.05 21:02:17 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung [2013.10.05 21:00:03 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Downloaded Installations [2013.10.05 20:57:24 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Avira [2013.10.05 20:50:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira [2013.10.05 20:50:28 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys [2013.10.05 20:50:24 | 000,137,208 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys [2013.10.05 20:50:24 | 000,089,376 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys [2013.10.05 20:50:24 | 000,067,680 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avnetflt.sys [2013.10.05 20:50:24 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avkmgr.sys [2013.10.05 20:50:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira [2013.10.05 20:50:20 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2013.10.05 20:48:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee [2013.10.05 20:29:35 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2013.10.05 20:22:02 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcore.dll [2013.10.05 20:20:25 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Adobe [2013.10.05 20:17:52 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Macromedia [2013.10.05 20:17:40 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Intel Corporation [2013.10.05 20:17:33 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\EgisTec IPS [2013.10.05 20:17:08 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2013.10.05 20:17:08 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2013.10.05 20:17:07 | 000,000,000 | R--D | C] -- C:\Users\Caro\Searches [2013.10.05 20:16:56 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Identities [2013.10.05 20:16:50 | 000,000,000 | R--D | C] -- C:\Users\Caro\Contacts [2013.10.05 20:15:42 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll [2013.10.05 20:15:41 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll [2013.10.05 20:15:32 | 000,000,000 | ---D | C] -- C:\Program Files\OEM [2013.10.05 20:15:23 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll [2013.10.05 20:15:22 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll [2013.10.05 20:15:22 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll [2013.10.05 20:15:18 | 000,000,000 | ---D | C] -- C:\Program Files\Acer Accessory Store [2013.10.05 20:15:05 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll [2013.10.05 20:15:05 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe [2013.10.05 20:14:38 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\VirtualStore [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Vorlagen [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Verlauf [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Temporary Internet Files [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Startmenü [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\SendTo [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Recent [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Netzwerkumgebung [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Lokale Einstellungen [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Videos [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Musik [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Eigene Dateien [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Bilder [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Druckumgebung [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Cookies [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Anwendungsdaten [2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Anwendungsdaten [2013.10.05 20:14:36 | 000,000,000 | --SD | C] -- C:\Users\Caro\AppData\Roaming\Microsoft [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Videos [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Saved Games [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Pictures [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Music [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Links [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Favorites [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Downloads [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Documents [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Desktop [2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2013.10.05 20:14:36 | 000,000,000 | -H-D | C] -- C:\Users\Caro\AppData [2013.10.05 20:14:36 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Temp [2013.10.05 20:14:36 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Microsoft [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Recovery [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Programme [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente [2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten [2013.10.05 17:21:54 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2013.10.05 17:21:48 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition [2013.10.05 17:20:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft [2013.10.05 17:20:36 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive [2013.10.05 17:20:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live [2013.10.05 17:20:14 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live [2013.10.05 17:20:02 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2013.10.05 17:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live [2013.10.05 17:18:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2013.10.05 17:15:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft [2013.10.05 17:06:46 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program [2013.10.05 17:06:40 | 000,000,000 | ---D | C] -- C:\Program Files\Bluetooth Suite [2013.10.05 17:04:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye webcam [2013.10.05 17:04:47 | 000,000,000 | ---D | C] -- C:\Program Files\Acer Crystal Eye webcam [2013.10.05 17:04:43 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics [2013.10.05 16:57:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\Atheros_L1e [2013.10.05 16:52:39 | 000,000,000 | ---D | C] -- C:\book [2013.10.05 16:52:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem [2013.10.05 16:48:52 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2013.10.05 16:48:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang [2013.10.05 16:48:21 | 001,006,104 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igxpun.exe [2013.10.05 16:45:45 | 000,000,000 | -HSD | C] -- C:\System Volume Information ========== Files - Modified Within 30 Days ========== [2013.10.06 02:37:24 | 000,295,922 | ---- | M] () -- C:\Windows\System32\perfi007.dat [2013.10.06 02:37:24 | 000,038,104 | ---- | M] () -- C:\Windows\System32\perfd007.dat [2013.10.06 02:36:48 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbrpm.sys.mui [2013.10.06 02:36:38 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fvevol.sys.mui [2013.10.06 02:36:29 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\de-DE\WpdMtpDr.dll.mui [2013.10.06 02:36:24 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\nwifi.sys.mui [2013.10.06 02:36:24 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\qwavedrv.sys.mui [2013.10.06 02:36:13 | 000,033,280 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\de-DE\yk62x86.sys.mui [2013.10.06 02:36:13 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volsnap.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbport.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1y6032.sys.mui [2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1e6032.sys.mui [2013.10.06 02:36:13 | 000,022,016 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\E1G60I32.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\viac7.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\processr.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\intelppm.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdppm.sys.mui [2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdk8.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1q6032.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1k6032.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\k57nd60x.sys.mui [2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\b57nd60x.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbhub.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serial.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ohci1394.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\1394ohci.sys.mui [2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerIb.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\i8042prt.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\acpi.sys.mui [2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\de-DE\ltmdmnt.sys.mui [2013.10.06 02:36:13 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\battc.sys.mui [2013.10.06 02:36:13 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pci.sys.mui [2013.10.06 02:36:13 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthport.sys.mui [2013.10.06 02:36:13 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\IPMIDrv.sys.mui [2013.10.06 02:36:13 | 000,006,144 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\bcm4sbxp.sys.mui [2013.10.06 02:36:13 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\sermouse.sys.mui [2013.10.06 02:36:13 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdclass.sys.mui [2013.10.06 02:36:13 | 000,005,120 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e100b325.sys.mui [2013.10.06 02:36:13 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouclass.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wacompen.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vhdmp.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vdrvroot.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tpm.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\isapnp.sys.mui [2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hdaudbus.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parport.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ataport.sys.mui [2013.10.06 02:36:13 | 000,003,584 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\de-DE\atikmdag.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | M] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\de-DE\getn62.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\umbus.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parvdm.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mssmbios.sys.mui [2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouhid.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vwifibus.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\VIAAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ULIAGPKX.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\UAGP35.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\SISAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\NV_AGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\MTConfig.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdhid.sys.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\GAGP30KX.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\BTHUSB.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AMDAGP.SYS.mui [2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AGP440.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wd.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\disk.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\cdrom.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthenum.sys.mui [2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdide.sys.mui [2013.10.06 02:36:09 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mpio.sys.mui [2013.10.06 02:36:09 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\afd.sys.mui [2013.10.06 02:36:09 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerId.sys.mui [2013.10.06 02:36:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\de-DE\WUDFUsbccidDriver.dll.mui [2013.10.06 02:36:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\msdsm.sys.mui [2013.10.06 02:36:09 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pcmcia.sys.mui [2013.10.06 02:36:09 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthpan.sys.mui [2013.10.06 02:36:09 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\de-DE\pscr.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\portcls.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\modem.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ipnat.sys.mui [2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\HdAudio.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serscan.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismpx.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismp6.sys.mui [2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hidbth.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volmgrx.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pnpmem.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\Dot4usb.sys.mui [2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrParwdm.sys.mui [2013.10.06 02:36:05 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ntfs.sys.mui [2013.10.06 02:36:05 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tunnel.sys.mui [2013.10.06 02:36:05 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\luafv.sys.mui [2013.10.06 02:36:05 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rdbss.sys.mui [2013.10.06 02:36:05 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\srv.sys.mui [2013.10.06 02:36:04 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndisuio.sys.mui [2013.10.06 02:36:04 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\partmgr.sys.mui [2013.10.06 02:36:04 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mountmgr.sys.mui [2013.10.06 02:35:59 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndiscap.sys.mui [2013.10.06 02:35:59 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\RNDISMP.sys.mui [2013.10.06 02:35:59 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scfilter.sys.mui [2013.10.06 02:35:55 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\http.sys.mui [2013.10.06 02:35:55 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndis.sys.mui [2013.10.06 02:35:55 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fltmgr.sys.mui [2013.10.06 02:35:55 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scsiport.sys.mui [2013.10.06 02:35:55 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui [2013.10.06 02:35:50 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tcpip.sys.mui [2013.10.06 02:35:50 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pacer.sys.mui [2013.10.06 02:35:50 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ws2ifsl.sys.mui [2013.10.06 02:35:46 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bfe.dll.mui [2013.10.06 02:30:25 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag [2013.10.06 00:16:47 | 000,009,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013.10.06 00:16:47 | 000,009,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013.10.06 00:13:39 | 000,643,866 | ---- | M] () -- C:\Windows\System32\perfh007.dat [2013.10.06 00:13:39 | 000,607,190 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2013.10.06 00:13:39 | 000,126,394 | ---- | M] () -- C:\Windows\System32\perfc007.dat [2013.10.06 00:13:39 | 000,103,568 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2013.10.06 00:09:08 | 000,000,035 | ---- | M] () -- C:\Users\Public\Documents\AtherosServiceConfig.ini [2013.10.06 00:08:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013.10.06 00:08:35 | 1602,035,712 | -HS- | M] () -- C:\hiberfil.sys [2013.10.05 20:50:39 | 000,002,020 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk [2013.10.05 18:01:36 | 000,048,637 | ---- | M] () -- C:\Windows\System32\license.rtf [2013.10.05 17:07:59 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_btath_hcrp_01009.Wdf [2013.10.05 17:06:57 | 000,246,804 | ---- | M] () -- C:\Windows\System32\drivers\AtherosBt.bin [2013.10.05 17:04:53 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf [2013.10.05 16:52:07 | 000,015,080 | ---- | M] () -- C:\Windows\System32\results.xml [2013.10.05 16:51:12 | 000,257,880 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2013.10.05 16:49:35 | 000,000,003 | ---- | M] () -- C:\Windows\System32\PLD_Framework.cmd [2013.09.30 11:01:31 | 000,028,520 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys [2013.09.30 11:01:13 | 000,137,208 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys [2013.09.30 11:01:13 | 000,089,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys [2013.09.30 11:01:13 | 000,067,680 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avnetflt.sys [2013.09.30 11:01:13 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avkmgr.sys ========== Files Created - No Company Name ========== [2013.10.06 02:42:55 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag [2013.10.06 02:38:24 | 000,643,866 | ---- | C] () -- C:\Windows\System32\perfh007.dat [2013.10.06 02:38:24 | 000,295,922 | ---- | C] () -- C:\Windows\System32\perfi007.dat [2013.10.06 02:38:24 | 000,126,394 | ---- | C] () -- C:\Windows\System32\perfc007.dat [2013.10.06 02:38:24 | 000,038,104 | ---- | C] () -- C:\Windows\System32\perfd007.dat [2013.10.05 20:50:39 | 000,002,020 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk [2013.10.05 20:17:12 | 000,001,417 | ---- | C] () -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2013.10.05 17:26:46 | 000,000,035 | ---- | C] () -- C:\Users\Public\Documents\AtherosServiceConfig.ini [2013.10.05 17:18:16 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk [2013.10.05 17:07:59 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_btath_hcrp_01009.Wdf [2013.10.05 17:04:53 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf [2013.10.05 16:52:07 | 000,015,080 | ---- | C] () -- C:\Windows\System32\results.xml [2013.10.05 16:49:35 | 000,000,003 | ---- | C] () -- C:\Windows\System32\PLD_Framework.cmd [2013.10.05 16:45:46 | 1602,035,712 | -HS- | C] () -- C:\hiberfil.sys [2013.07.18 14:32:38 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe [2013.07.18 14:32:34 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll [2013.07.18 14:32:34 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll [2013.07.18 14:32:34 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll [2013.07.18 14:32:34 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll [2010.09.17 11:24:14 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe ========== ZeroAccess Check ========== [2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2010.07.27 16:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009.07.14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both ========== LOP Check ========== ========== Purity Check ========== < End of report > Code:
ATTFilter OTL Extras logfile created on: 06.10.2013 00:14:48 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Caro\Downloads Starter Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 1,99 Gb Total Physical Memory | 1,39 Gb Available Physical Memory | 69,84% Memory free 3,98 Gb Paging File | 3,06 Gb Available in Paging File | 76,88% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 215,79 Gb Total Space | 197,28 Gb Free Space | 91,42% Space Free | Partition Type: NTFS Drive D: | 4,00 Gb Total Space | 2,66 Gb Free Space | 66,51% Space Free | Partition Type: FAT32 Drive E: | 931,32 Gb Total Space | 596,24 Gb Free Space | 64,02% Space Free | Partition Type: exFAT Computer Name: CARO-PC | User Name: Caro | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5EE71D7E-A445-4E36-8AF4-48A9328E871E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{9463BC7C-1682-4488-94C8-AEE427C96118}" = lport=2869 | protocol=6 | dir=in | app=system | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{20A5C867-274F-42F1-9D16-16A2D07B9D9D}" = dir=in | app=c:\program files\acer\acer vcm\vc.exe | "{5E01F3B9-64D3-4109-BAAD-3EBF41A7155B}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe | "{897534DB-ABA2-41E9-86B3-821842FB83E7}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{99FDBDD0-1696-410A-AE1E-5DBC0CEEC3A7}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{D6007FF0-E302-4277-94AD-6649D4AC5171}" = dir=in | app=c:\program files\acer\acer vcm\rs_service.exe | "{E75D8D9A-3B17-412E-9D76-DB76ADDF56C0}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{E967D2F5-BE9F-4AF0-912C-1E3EC115B757}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{047F790A-7A2A-4B6A-AD02-38092BA63DAC}" = Acer VCM "{0D7CD0D9-4A88-4A63-8F91-3F4E8F371768}" = MyWinLocker "{101A497C-7EF6-4001-834D-E5FA1C70FEFA}" = Bluetooth Win7 Suite "{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform "{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology "{51F026FA-5146-4232-A8BA-1364740BD053}" = Acer Crystal Eye webcam "{523281E5-91DD-49F5-9D85-954148F7596A}" = AndroidInstaller "{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent "{586509F0-350D-48B5-B763-9CC2F8D96C4C}" = Windows Live Sync "{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1" = Acer GameZone Console "{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110300453}" = Spin & Win "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111355427}" = Poker Pop "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}" = Merriam Websters Spell Jam "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173}" = Airport Mania First Flight "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2 "{850C7BD3-9F3F-46AD-9396-E7985B38C55E}" = Windows Live Fotogalerie "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A7496F46-78AE-4DB2-BCF5-95F210FA6F96}" = Windows Live Movie Maker "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI "{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger "{C2695E83-CF1D-43D1-84FE-B3BEC561012A}" = Shredder "{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail "{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call "{E0A4805D-280A-4DD7-9E74-3A5F85E302A1}" = Windows Live Writer "{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}" = eBay Worldwide "{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "3B29FD3CCF1F5B855DA0C521597413EBABE97DFB" = ENE USB Card Reader Driver "Acer Registration" = Acer Registration "Acer Screensaver" = Acer ScreenSaver "Acer Welcome Center" = Welcome Center "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Avira AntiVir Desktop" = Avira Free Antivirus "HDMI" = Intel(R) Graphics Media Accelerator Driver "Identity Card" = Identity Card "InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "InstallShield_{523281E5-91DD-49F5-9D85-954148F7596A}" = AndroidInstaller "InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "LManager" = Launch Manager "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinLiveSuite_Wave3" = Windows Live Essentials ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "MyFreeCodec" = MyFreeCodec ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 05.10.2013 12:32:29 | Computer Name = Caro-PC | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Fehler in Manifest- oder Richtliniendatei "c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" in Zeile 3. Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 05.10.2013 14:29:31 | Computer Name = Caro-PC | Source = Microsoft-Windows-RestartManager | ID = 10006 Description = Die Anwendung oder der Dienst "Bing Bar" konnte nicht heruntergefahren werden. Error - 05.10.2013 14:29:31 | Computer Name = Caro-PC | Source = Microsoft-Windows-RestartManager | ID = 10006 Description = Die Anwendung oder der Dienst "Internet Explorer" konnte nicht heruntergefahren werden. Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5004 Description = Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5022 Description = Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5004 Description = Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5022 Description = Error - 05.10.2013 17:32:56 | Computer Name = Caro-PC | Source = Application Hang | ID = 1002 Description = Programm OTL.exe, Version 3.2.69.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 584 Startzeit: 01cec211d13b3ba3 Endzeit: 15 Anwendungspfad: C:\Users\Caro\Downloads\OTL.exe Berichts-ID: [ System Events ] Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = DCOM | ID = 10005 Description = Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = DCOM | ID = 10005 Description = Error - 05.10.2013 17:54:10 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:10 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001 Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 < End of report > |
06.10.2013, 06:07 | #2 |
/// the machine /// TB-Ausbilder | HTML/Infected.WebPage.Gen2 Hi,
__________________zeig bitte mal das Log des Antivirusprogrammes, wo der Fund gemacht wurde.
__________________ |
06.10.2013, 09:41 | #3 |
| HTML/Infected.WebPage.Gen2Code:
ATTFilter Avira Free Antivirus Erstellungsdatum der Reportdatei: Samstag, 5. Oktober 2013 21:31 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Avira Free Antivirus Seriennummer : 0000149996-ADJIE-0000001 Plattform : Windows 7 Starter Windowsversion : (plain) [6.1.7600] Boot Modus : Normal gebootet Benutzername : Caro Computername : CARO-PC Versionsinformationen: BUILD.DAT : 14.0.0.383 Bytes 30.09.2013 11:01:00 AVSCAN.EXE : 14.0.0.383 968776 Bytes 30.09.2013 09:01:14 AVSCANRC.DLL : 14.0.0.225 62024 Bytes 30.09.2013 09:01:14 LUKE.DLL : 14.0.0.383 65096 Bytes 30.09.2013 09:01:30 AVSCPLR.DLL : 14.0.0.383 92232 Bytes 30.09.2013 09:01:14 AVREG.DLL : 14.0.0.383 250440 Bytes 30.09.2013 09:01:14 avlode.dll : 14.0.0.383 512584 Bytes 30.09.2013 09:01:13 avlode.rdf : 13.0.1.42 26846 Bytes 30.09.2013 09:01:13 VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 09:01:31 VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 09:01:31 VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 09:01:31 VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 09:01:31 VBASE004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 09:01:31 VBASE005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 09:01:31 VBASE006.VDF : 7.11.103.230 2293248 Bytes 24.09.2013 09:01:31 VBASE007.VDF : 7.11.103.231 2048 Bytes 24.09.2013 09:01:31 VBASE008.VDF : 7.11.103.232 2048 Bytes 24.09.2013 09:01:31 VBASE009.VDF : 7.11.103.233 2048 Bytes 24.09.2013 09:01:31 VBASE010.VDF : 7.11.103.234 2048 Bytes 24.09.2013 09:01:31 VBASE011.VDF : 7.11.103.235 2048 Bytes 24.09.2013 09:01:31 VBASE012.VDF : 7.11.103.236 2048 Bytes 24.09.2013 09:01:31 VBASE013.VDF : 7.11.103.237 2048 Bytes 24.09.2013 09:01:31 VBASE014.VDF : 7.11.104.123 282112 Bytes 26.09.2013 09:01:31 VBASE015.VDF : 7.11.104.237 359424 Bytes 28.09.2013 09:01:31 VBASE016.VDF : 7.11.105.103 195072 Bytes 02.10.2013 18:52:36 VBASE017.VDF : 7.11.105.104 2048 Bytes 02.10.2013 18:52:36 VBASE018.VDF : 7.11.105.105 2048 Bytes 02.10.2013 18:52:36 VBASE019.VDF : 7.11.105.106 2048 Bytes 02.10.2013 18:52:36 VBASE020.VDF : 7.11.105.107 2048 Bytes 02.10.2013 18:52:36 VBASE021.VDF : 7.11.105.108 2048 Bytes 02.10.2013 18:52:36 VBASE022.VDF : 7.11.105.109 2048 Bytes 02.10.2013 18:52:37 VBASE023.VDF : 7.11.105.110 2048 Bytes 02.10.2013 18:52:37 VBASE024.VDF : 7.11.105.111 2048 Bytes 02.10.2013 18:52:37 VBASE025.VDF : 7.11.105.112 2048 Bytes 02.10.2013 18:52:37 VBASE026.VDF : 7.11.105.113 2048 Bytes 02.10.2013 18:52:38 VBASE027.VDF : 7.11.105.114 2048 Bytes 02.10.2013 18:52:38 VBASE028.VDF : 7.11.105.115 2048 Bytes 02.10.2013 18:52:38 VBASE029.VDF : 7.11.105.116 2048 Bytes 02.10.2013 18:52:39 VBASE030.VDF : 7.11.105.117 2048 Bytes 02.10.2013 18:52:39 VBASE031.VDF : 7.11.105.228 541696 Bytes 05.10.2013 18:52:49 Engineversion : 8.2.12.126 AEVDF.DLL : 8.1.3.4 102774 Bytes 30.09.2013 09:01:12 AESCRIPT.DLL : 8.1.4.154 512382 Bytes 05.10.2013 18:52:59 AESCN.DLL : 8.1.10.4 131446 Bytes 30.09.2013 09:01:12 AESBX.DLL : 8.2.16.26 1245560 Bytes 30.09.2013 09:01:12 AERDL.DLL : 8.2.0.128 688504 Bytes 30.09.2013 09:01:12 AEPACK.DLL : 8.3.2.30 749945 Bytes 05.10.2013 18:52:58 AEOFFICE.DLL : 8.1.2.76 205181 Bytes 30.09.2013 09:01:12 AEHEUR.DLL : 8.1.4.676 6201722 Bytes 05.10.2013 18:52:57 AEHELP.DLL : 8.1.27.6 266617 Bytes 30.09.2013 09:01:12 AEGEN.DLL : 8.1.7.14 446839 Bytes 30.09.2013 09:01:12 AEEXP.DLL : 8.4.1.62 328055 Bytes 30.09.2013 09:01:12 AEEMU.DLL : 8.1.3.2 393587 Bytes 30.09.2013 09:01:12 AECORE.DLL : 8.1.32.0 201081 Bytes 30.09.2013 09:01:12 AEBB.DLL : 8.1.1.4 53619 Bytes 30.09.2013 09:01:12 AVWINLL.DLL : 14.0.0.225 23624 Bytes 30.09.2013 09:01:15 AVPREF.DLL : 14.0.0.225 48712 Bytes 30.09.2013 09:01:14 AVREP.DLL : 14.0.0.225 175688 Bytes 30.09.2013 09:01:14 AVARKT.DLL : 14.0.0.225 257096 Bytes 30.09.2013 09:01:13 AVEVTLOG.DLL : 14.0.0.383 165960 Bytes 30.09.2013 09:01:13 SQLITE3.DLL : 3.7.0.1 394824 Bytes 30.09.2013 09:01:31 AVSMTP.DLL : 14.0.0.225 60488 Bytes 30.09.2013 09:01:14 NETNT.DLL : 14.0.0.225 13384 Bytes 30.09.2013 09:01:30 RCIMAGE.DLL : 14.0.0.225 4786760 Bytes 30.09.2013 09:01:31 RCTEXT.DLL : 14.0.0.225 67144 Bytes 30.09.2013 09:01:31 Konfiguration für den aktuellen Suchlauf: Job Name..............................: ShlExt Konfigurationsdatei...................: C:\Users\Caro\AppData\Local\Temp\394aabe3.avp Protokollierung.......................: standard Primäre Aktion........................: Interaktiv Sekundäre Aktion......................: Ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Bootsektoren..........................: E:, Durchsuche aktive Programme...........: aus Durchsuche Registrierung..............: aus Suche nach Rootkits...................: aus Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Intelligente Dateiauswahl Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Samstag, 5. Oktober 2013 21:31 Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'E:\' <k> E:\Documents\Documents\Bewerbung - Jobs\Bosch_1\Bosch_1.mht [0] Archivtyp: MIME --> object [1] Archivtyp: MIME --> Users\Caroline\Documents\Bewerbung - Master\Jobs und Karriere - Studierende - Ihre Dissertation.mht [FUND] Enthält Erkennungsmuster des HTML-Scriptvirus HTML/Infected.WebPage.Gen2 [WARNUNG] Infizierte Dateien in Archiven können nicht repariert werden Beginne mit der Desinfektion: E:\Documents\Documents\Bewerbung - Jobs\Bosch_1\Bosch_1.mht [FUND] Enthält Erkennungsmuster des HTML-Scriptvirus HTML/Infected.WebPage.Gen2 [WARNUNG] Die Datei wurde ignoriert. Ende des Suchlaufs: Samstag, 5. Oktober 2013 22:40 Benötigte Zeit: 32:24 Minute(n) Der Suchlauf wurde abgebrochen! 1590 Verzeichnisse wurden überprüft 139181 Dateien wurden geprüft 1 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 0 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 0 Dateien konnten nicht durchsucht werden 139180 Dateien ohne Befall 3182 Archive wurden durchsucht 2 Warnungen 0 Hinweise http://www.trojaner-board.de/131882-...page-gen2.html Der Virus hat sich dann mit Sicherheit auf meiner externen Festplatte versteckt oder? |
06.10.2013, 16:40 | #4 | |
/// the machine /// TB-Ausbilder | HTML/Infected.WebPage.Gen2Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
06.10.2013, 18:48 | #5 |
| HTML/Infected.WebPage.Gen2 So einfach Hab ich gemacht und starte nochmals Antivir Scan. Falls etwas auftaucht meld ich mich. Ansonsten viel Dank. |
07.10.2013, 08:37 | #6 |
/// the machine /// TB-Ausbilder | HTML/Infected.WebPage.Gen2 jup
__________________ --> HTML/Infected.WebPage.Gen2 |
Themen zu HTML/Infected.WebPage.Gen2 |
antivir, autorun, avg, avira, bho, defender, desktop, ebay, error, explorer, fehler, festplatte, firefox, flash player, install.exe, launch, logfile, opera, pmmupdate.exe, port, realtek, registry, richtlinie, rundll, security, software, svchost.exe, taskhost.exe, virus, windows |