Ob es noch Probleme gibt, kannst Du es besser beurteilen als ich.
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by Elisa Rossi (administrator) on ELISAROSSI-PC on 04-11-2013 22:32:18
Running from C:\Users\Elisa Rossi\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(Chicony) C:\Program Files (x86)\Dell\Dell KM632 Wireless Keyboard Caps Lock Indicator\OSDSrv.exe
() C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe
() C:\Program Files (x86)\Dell\Dell KM632 Wireless Keyboard Caps Lock Indicator\LaunchOSDSrv.exe
(Cyberlink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe
(DELL) C:\Program Files (x86)\Dell\Dell KM632 Wireless Keyboard Caps Lock Indicator\IndicatorOSD.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4526 2010-11-29] ()
HKLM\...\Run: [IntelliType Pro] - C:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\822\g2awinlogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-09-11] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20472992 2013-10-02] (Skype Technologies S.A.)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKLM-x32\...\Run: [Chicony_OSD] - C:\Program Files (x86)\Dell\Dell KM632 Wireless Keyboard Caps Lock Indicator\LaunchOSDSrv.exe [53248 2011-01-12] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [RemoteControl] - C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [71216 2007-03-14] (Cyberlink Corp.)
HKLM-x32\...\Run: [LanguageShortcut] - C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [52256 2007-01-08] ()
HKLM-x32\...\Run: [LGODDFU] - C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2012-09-12] (Bitleader)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.)
Startup: C:\Users\Elisa Rossi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Überwachungstool für die Intel® Turbo-Boost-Technik 2.0.lnk
ShortcutTarget: Überwachungstool für die Intel® Turbo-Boost-Technik 2.0.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.amazon.de/gp/bit/amazonserp/ref=bit_bds-p07_serp_ie_de_display?ie=UTF8&tagbase=bds-p07&tbrId=v1_abb-channel-7_96a20f8506fd472fb6945554cf24c347_30_46_20131015_DE_ie_sp_
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2003} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=116&systemid=3&v=n9411-133&apn_uid=6008587312654850&apn_dtid=IME003&o=APN10643&apn_ptnrs=AG4&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Whilokii - {204df522-9a96-4a72-abb0-60f7a216d6d2} - C:\Program Files (x86)\Whilokii\WhilokiiBHO.dll No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default
FF DefaultSearchEngine: Sichere Suche
FF SearchEngineOrder.1: Sichere Suche
FF SelectedSearchEngine: Sichere Suche
FF Homepage: https://www.google.de/
FF Keyword.URL: hxxp://de.search.yahoo.com/search?fr=mcafee&p=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Elisa Rossi\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Elisa Rossi\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\searchplugins\amazon.xml
FF SearchPlugin: C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\searchplugins\dokotoolbar.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\Ask.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Amazon Browser Bar - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\abb@amazon.com
FF Extension: metacrawler.com - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\ffxtlbr@metacrawler.com
FF Extension: Music Toolbar (Dist. by iMesh, Inc.) - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\{0307351f-b2d7-41f2-b44a-8af7d9d90a18}
FF Extension: New tab - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\{13058AF4-66EB-75FE-B521-F5B654EE2BA4}
FF Extension: firefox - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\firefox@whilokii.net.xpi
FF Extension: prefs - C:\Users\Elisa Rossi\AppData\Roaming\Mozilla\Firefox\Profiles\p7t5f75g.default\Extensions\{60364604-8b4c-42f4-a2ca-a76ca7b61b37}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (YouTube) - C:\Users\ELISAR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1
CHR Extension: (Google Search) - C:\Users\ELISAR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1
CHR Extension: (Whilokii) - C:\Users\ELISAR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaimhpklononapfjngelgdokckfjekfc\1.0.0_0
CHR Extension: (Skype Click to Call) - C:\Users\ELISAR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0
CHR Extension: (Gmail) - C:\Users\ELISAR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [edcikfknpchdehdlmjpbofgkoaonaijg] - C:\Users\Elisa Rossi\AppData\Roaming\BabSolution\CR\Doko.crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
CHR HKLM-x32\...\Chrome\Extension: [iaimhpklononapfjngelgdokckfjekfc] - C:\Program Files (x86)\Whilokii\iaimhpklononapfjngelgdokckfjekfc.crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
==================== Services (Whitelisted) =================
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-09-24] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-09-20] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-09-24] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-09-24] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [231224 2010-04-13] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [279848 2007-06-27] (Nero AG)
R2 OSDSvc; C:\Program Files (x86)\Dell\Dell KM632 Wireless Keyboard Caps Lock Indicator\OSDSrv.exe [176128 2010-12-01] (Chicony)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe [272024 2007-05-14] ()
==================== Drivers (Whitelisted) ====================
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-09-24] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-09-24] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [310224 2013-09-24] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519192 2013-09-24] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [781312 2013-09-24] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [390552 2013-09-20] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [95984 2013-09-20] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343568 2013-09-24] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [66040 2010-04-13] (Mozy, Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-02 15:52 - 2013-11-02 15:52 - 01957098 _____ (Farbar) C:\Users\Elisa Rossi\Desktop\FRST64.exe
2013-11-02 15:46 - 2013-11-02 15:46 - 00001206 _____ C:\Users\Elisa Rossi\Desktop\FRST64(2) - Verknüpfung ().lnk
2013-11-02 15:45 - 2013-11-02 15:45 - 00001206 _____ C:\Users\Elisa Rossi\Desktop\FRST64(1) - Verknüpfung.lnk
2013-11-02 15:42 - 2013-11-02 15:42 - 01957098 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(5).exe
2013-11-02 15:42 - 2013-11-02 15:42 - 00001535 _____ C:\Users\Elisa Rossi\Desktop\FRST64(5) - Verknüpfung.lnk
2013-11-02 15:27 - 2013-11-02 15:27 - 00001506 _____ C:\Users\Elisa Rossi\Desktop\TFC(3) - Verknüpfung.lnk
2013-11-02 15:25 - 2013-11-02 15:25 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(3).exe
2013-11-02 15:24 - 2013-11-02 15:24 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(2).exe
2013-10-27 18:08 - 2013-10-27 18:08 - 01956160 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(4).exe
2013-10-25 13:55 - 2013-10-25 13:55 - 00050857 _____ C:\Users\Elisa Rossi\Downloads\FRST.txt
2013-10-25 13:40 - 2013-10-25 13:40 - 01955412 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(3).exe
2013-10-25 13:12 - 2013-10-25 13:12 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(1).exe
2013-10-25 13:11 - 2013-10-25 13:10 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC.exe
2013-10-20 09:39 - 2013-10-20 09:39 - 03607431 _____ C:\Users\Elisa Rossi\Downloads\PS22-Chorus-ROLLING-IN-THE-DEEP-Adele(1).mp3.part
2013-10-19 21:50 - 2013-10-19 21:50 - 01954548 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(2).exe
2013-10-19 21:49 - 2013-10-19 21:49 - 00001150 _____ C:\Users\Elisa Rossi\Downloads\checkup.txt
2013-10-19 21:43 - 2013-10-19 21:43 - 00891167 _____ C:\Users\Elisa Rossi\Downloads\SecurityCheck.exe
2013-10-18 22:22 - 2013-10-18 22:23 - 00000000 ____D C:\Windows\system32\MRT
2013-10-18 22:22 - 2013-09-26 00:46 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-18 14:47 - 2013-10-18 15:07 - 00000000 ____D C:\Users\Elisa Rossi\Desktop\ANNEXE Naima
2013-10-17 21:48 - 2013-10-17 21:48 - 00003211 _____ C:\Users\Elisa Rossi\Desktop\JRT.txt
2013-10-17 21:35 - 2013-10-17 21:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-17 21:35 - 2013-10-17 21:34 - 01033335 _____ (Thisisu) C:\Users\Elisa Rossi\Downloads\JRT(1).exe
2013-10-17 21:34 - 2013-10-17 21:34 - 01033335 _____ (Thisisu) C:\Users\Elisa Rossi\Downloads\JRT.exe
2013-10-17 20:38 - 2013-09-23 12:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
2013-10-15 19:46 - 2013-10-15 19:50 - 00000000 ____D C:\AdwCleaner
2013-10-15 19:45 - 2013-10-15 19:45 - 01048960 _____ C:\Users\Elisa Rossi\Downloads\adwcleaner.exe
2013-10-15 19:41 - 2013-10-15 19:41 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-10-15 19:40 - 2013-10-15 19:40 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.4964.dll
2013-10-15 17:30 - 2013-10-15 17:30 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Malwarebytes
2013-10-15 17:27 - 2013-10-15 17:27 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-10-15 17:27 - 2013-10-15 17:27 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-15 17:27 - 2013-10-15 17:27 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-15 17:27 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-15 17:26 - 2013-10-15 17:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Elisa Rossi\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-10-14 22:04 - 2013-10-14 22:04 - 01558672 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-14 22:04 - 2013-10-14 22:04 - 00035886 _____ C:\Users\Elisa Rossi\Downloads\combifx t.txt
2013-10-14 21:55 - 2013-10-14 21:55 - 00035886 _____ C:\ComboFix.txt
2013-10-14 20:14 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-10-14 20:14 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-10-14 20:14 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-10-14 20:14 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-10-14 20:14 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-10-14 20:14 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-10-14 20:14 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-10-14 20:14 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-10-14 20:07 - 2013-10-14 21:57 - 00000000 ____D C:\Qoobox
2013-10-14 20:06 - 2013-10-14 21:47 - 00000000 ____D C:\Windows\erdnt
2013-10-14 20:04 - 2013-10-14 20:04 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-14 20:03 - 2013-10-14 20:03 - 00001197 _____ C:\Users\Elisa Rossi\Desktop\ComboFix - Verknüpfung.lnk
2013-10-14 20:02 - 2013-10-14 20:02 - 05132614 ____R (Swearware) C:\Users\Elisa Rossi\Downloads\ComboFix.exe
2013-10-13 15:53 - 2013-11-04 21:53 - 00001844 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk
2013-10-13 15:52 - 2013-10-13 15:52 - 00000000 ____D C:\Program Files (x86)\McAfeeMOBK
2013-10-13 15:52 - 2013-10-13 15:52 - 00000000 ____D C:\Program Files (x86)\McAfee Online Backup
2013-10-13 15:52 - 2010-04-13 19:10 - 00066040 _____ (Mozy, Inc.) C:\Windows\system32\Drivers\MOBK.sys
2013-10-13 15:51 - 2013-10-13 15:51 - 00000000 ____D C:\Program Files (x86)\McAfee.com
2013-10-13 15:49 - 2013-10-28 17:07 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-10-13 15:49 - 2013-10-13 15:52 - 00000000 ____D C:\Program Files\McAfee
2013-10-13 15:49 - 2013-10-13 15:49 - 00000000 ____D C:\Program Files\McAfee.com
2013-10-13 15:36 - 2013-10-14 17:21 - 00002872 _____ C:\Windows\system32\TmInstall.log
2013-10-13 15:36 - 2013-10-13 15:36 - 00004280 _____ C:\Windows\SysWOW64\TmInstall.log
2013-10-13 15:32 - 2013-10-17 20:37 - 00000000 ____D C:\Program Files\Common Files\McAfee
2013-10-13 15:32 - 2013-10-13 15:32 - 05128728 _____ (McAfee, Inc.) C:\Users\Elisa Rossi\Downloads\McAfeeSetup.exe
2013-10-13 15:32 - 2013-09-24 19:25 - 00182752 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe
2013-10-13 15:05 - 2013-10-14 19:33 - 00000090 _____ C:\Users\Elisa Rossi\AppData\Roaming\WB.CFG
2013-10-13 15:05 - 2013-10-14 19:33 - 00000006 _____ C:\Users\Elisa Rossi\AppData\Roaming\WBPU-TTL.DAT
2013-10-13 14:28 - 2013-10-13 14:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Elisa Rossi\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-13 13:47 - 2013-10-13 13:47 - 00014738 _____ C:\Users\Elisa Rossi\Downloads\Addition.txt
2013-10-13 13:45 - 2013-11-02 15:52 - 00000000 ____D C:\FRST
2013-10-13 13:45 - 2013-10-13 13:45 - 01954124 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64.exe
2013-10-13 13:37 - 2013-10-13 13:37 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\0D0S1L2Z1P1B
2013-10-12 21:05 - 2013-10-20 10:00 - 00202752 ___SH C:\Users\Elisa Rossi\Downloads\Thumbs.db
2013-10-12 19:52 - 2013-10-12 21:10 - 00000000 ____D C:\Users\Elisa Rossi\Downloads\PS22 chorus
2013-10-12 19:43 - 2013-10-12 19:43 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Easy MP3 Recorder
2013-10-12 19:19 - 2013-10-12 19:19 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\TFP
2013-10-12 19:19 - 2013-10-12 19:19 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\MusicNet
2013-10-12 19:19 - 2012-05-11 14:47 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX
2013-10-12 19:19 - 2012-05-11 14:47 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCFR.DLL
2013-10-12 19:19 - 2012-05-11 14:47 - 00119568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6FR.DLL
2013-10-12 19:19 - 2012-05-11 14:47 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGFR.DLL
2013-10-12 19:18 - 2013-10-13 11:31 - 00000000 ____D C:\Program Files (x86)\Shareaza Applications
2013-10-12 19:16 - 2013-10-12 19:16 - 01334960 _____ (Bandoo Media Inc) C:\Users\Elisa Rossi\Downloads\ShareazaSetup-r116-n-bf.exe
2013-10-11 20:47 - 2013-06-10 07:27 - 00003211 _____ C:\Users\Elisa Rossi\Desktop\Apps beramí.zip
2013-10-10 22:01 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-10 22:01 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-10 22:01 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-10 22:01 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 22:01 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 22:01 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-10 22:01 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 22:01 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-10 22:01 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 22:01 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-10 22:01 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 22:01 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-10 14:56 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 14:56 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-10 14:56 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-10 14:56 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 14:56 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-10 14:56 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-10 14:56 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-10 14:56 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-10 14:56 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-10 14:56 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-10 14:56 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-10 14:56 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 14:56 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-10 14:56 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-10 14:56 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-10 14:56 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 14:56 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-10 14:56 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-10 14:56 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-10 14:56 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 14:56 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-10 14:56 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-10 14:55 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-10 14:55 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-10 14:55 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-10 14:55 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-10 14:55 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-10 14:55 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-10 14:55 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-10 14:55 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-10 14:55 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-10 14:55 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-10 14:55 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-10 14:55 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-10 14:55 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-10 14:55 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-10 14:55 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-10 14:55 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-10 14:55 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-10 14:55 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-10 14:55 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-10 14:55 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 14:55 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-10 14:55 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 14:55 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 14:55 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 19:37 - 2013-10-09 19:37 - 00007039 _____ C:\Users\Elisa Rossi\Downloads\smime.p7s
2013-10-09 19:07 - 2013-10-09 19:07 - 17813896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
==================== One Month Modified Files and Folders =======
2013-11-04 22:31 - 2012-09-11 21:26 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Skype
2013-11-04 22:30 - 2009-07-14 05:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-04 22:30 - 2009-07-14 05:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-04 22:29 - 2012-09-12 12:04 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
2013-11-04 22:29 - 2012-09-11 08:21 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-04 22:27 - 2012-09-10 22:50 - 00669360 _____ C:\Windows\system32\perfh007.dat
2013-11-04 22:27 - 2012-09-10 22:50 - 00135040 _____ C:\Windows\system32\perfc007.dat
2013-11-04 22:27 - 2009-07-14 06:13 - 01538262 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-04 22:23 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-04 22:23 - 2009-07-14 05:51 - 00058215 _____ C:\Windows\setupact.log
2013-11-04 22:22 - 2012-09-10 12:55 - 01088702 _____ C:\Windows\WindowsUpdate.log
2013-11-04 22:13 - 2013-01-25 15:40 - 00001144 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1758444941-3103609682-2941356913-1000UA.job
2013-11-04 22:04 - 2012-09-11 08:21 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-04 21:53 - 2013-10-13 15:53 - 00001844 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk
2013-11-04 21:47 - 2012-09-11 13:04 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-04 20:30 - 2013-01-25 15:40 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1758444941-3103609682-2941356913-1000Core.job
2013-11-04 12:44 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2013-11-02 15:52 - 2013-11-02 15:52 - 01957098 _____ (Farbar) C:\Users\Elisa Rossi\Desktop\FRST64.exe
2013-11-02 15:52 - 2013-10-13 13:45 - 00000000 ____D C:\FRST
2013-11-02 15:46 - 2013-11-02 15:46 - 00001206 _____ C:\Users\Elisa Rossi\Desktop\FRST64(2) - Verknüpfung ().lnk
2013-11-02 15:45 - 2013-11-02 15:45 - 00001206 _____ C:\Users\Elisa Rossi\Desktop\FRST64(1) - Verknüpfung.lnk
2013-11-02 15:42 - 2013-11-02 15:42 - 01957098 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(5).exe
2013-11-02 15:42 - 2013-11-02 15:42 - 00001535 _____ C:\Users\Elisa Rossi\Desktop\FRST64(5) - Verknüpfung.lnk
2013-11-02 15:27 - 2013-11-02 15:27 - 00001506 _____ C:\Users\Elisa Rossi\Desktop\TFC(3) - Verknüpfung.lnk
2013-11-02 15:25 - 2013-11-02 15:25 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(3).exe
2013-11-02 15:24 - 2013-11-02 15:24 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(2).exe
2013-10-28 17:07 - 2013-10-13 15:49 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-10-28 17:07 - 2010-11-21 04:47 - 00736348 _____ C:\Windows\PFRO.log
2013-10-27 20:49 - 2012-09-10 16:52 - 00000000 ____D C:\Users\Elisa Rossi\Documents\soldi
2013-10-27 18:08 - 2013-10-27 18:08 - 01956160 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(4).exe
2013-10-25 13:55 - 2013-10-25 13:55 - 00050857 _____ C:\Users\Elisa Rossi\Downloads\FRST.txt
2013-10-25 13:40 - 2013-10-25 13:40 - 01955412 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(3).exe
2013-10-25 13:12 - 2013-10-25 13:12 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC(1).exe
2013-10-25 13:10 - 2013-10-25 13:11 - 00448512 _____ (OldTimer Tools) C:\Users\Elisa Rossi\Downloads\TFC.exe
2013-10-25 12:14 - 2013-04-06 17:50 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Mozilla
2013-10-20 10:00 - 2013-10-12 21:05 - 00202752 ___SH C:\Users\Elisa Rossi\Downloads\Thumbs.db
2013-10-20 09:39 - 2013-10-20 09:39 - 03607431 _____ C:\Users\Elisa Rossi\Downloads\PS22-Chorus-ROLLING-IN-THE-DEEP-Adele(1).mp3.part
2013-10-19 21:50 - 2013-10-19 21:50 - 01954548 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64(2).exe
2013-10-19 21:49 - 2013-10-19 21:49 - 00001150 _____ C:\Users\Elisa Rossi\Downloads\checkup.txt
2013-10-19 21:43 - 2013-10-19 21:43 - 00891167 _____ C:\Users\Elisa Rossi\Downloads\SecurityCheck.exe
2013-10-18 22:23 - 2013-10-18 22:22 - 00000000 ____D C:\Windows\system32\MRT
2013-10-18 15:07 - 2013-10-18 14:47 - 00000000 ____D C:\Users\Elisa Rossi\Desktop\ANNEXE Naima
2013-10-18 08:05 - 2012-09-11 08:21 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-18 07:12 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-10-17 21:59 - 2013-05-31 17:54 - 00002088 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-10-17 21:48 - 2013-10-17 21:48 - 00003211 _____ C:\Users\Elisa Rossi\Desktop\JRT.txt
2013-10-17 21:35 - 2013-10-17 21:35 - 00000000 ____D C:\Windows\ERUNT
2013-10-17 21:34 - 2013-10-17 21:35 - 01033335 _____ (Thisisu) C:\Users\Elisa Rossi\Downloads\JRT(1).exe
2013-10-17 21:34 - 2013-10-17 21:34 - 01033335 _____ (Thisisu) C:\Users\Elisa Rossi\Downloads\JRT.exe
2013-10-17 20:37 - 2013-10-13 15:32 - 00000000 ____D C:\Program Files\Common Files\McAfee
2013-10-15 19:50 - 2013-10-15 19:46 - 00000000 ____D C:\AdwCleaner
2013-10-15 19:50 - 2013-04-10 13:43 - 00001053 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-10-15 19:50 - 2012-09-10 13:01 - 00001007 _____ C:\Users\Elisa Rossi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-15 19:50 - 2012-09-10 13:00 - 00000000 ___RD C:\Users\Elisa Rossi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-15 19:45 - 2013-10-15 19:45 - 01048960 _____ C:\Users\Elisa Rossi\Downloads\adwcleaner.exe
2013-10-15 19:41 - 2013-10-15 19:41 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-10-15 19:40 - 2013-10-15 19:40 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.4964.dll
2013-10-15 17:30 - 2013-10-15 17:30 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Malwarebytes
2013-10-15 17:27 - 2013-10-15 17:27 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-10-15 17:27 - 2013-10-15 17:27 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-15 17:27 - 2013-10-15 17:27 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-15 17:26 - 2013-10-15 17:26 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Elisa Rossi\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-10-14 22:04 - 2013-10-14 22:04 - 01558672 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-14 22:04 - 2013-10-14 22:04 - 00035886 _____ C:\Users\Elisa Rossi\Downloads\combifx t.txt
2013-10-14 21:57 - 2013-10-14 20:07 - 00000000 ____D C:\Qoobox
2013-10-14 21:55 - 2013-10-14 21:55 - 00035886 _____ C:\ComboFix.txt
2013-10-14 21:47 - 2013-10-14 20:06 - 00000000 ____D C:\Windows\erdnt
2013-10-14 21:29 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2013-10-14 20:04 - 2013-10-14 20:04 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-14 20:03 - 2013-10-14 20:03 - 00001197 _____ C:\Users\Elisa Rossi\Desktop\ComboFix - Verknüpfung.lnk
2013-10-14 20:02 - 2013-10-14 20:02 - 05132614 ____R (Swearware) C:\Users\Elisa Rossi\Downloads\ComboFix.exe
2013-10-14 19:33 - 2013-10-13 15:05 - 00000090 _____ C:\Users\Elisa Rossi\AppData\Roaming\WB.CFG
2013-10-14 19:33 - 2013-10-13 15:05 - 00000006 _____ C:\Users\Elisa Rossi\AppData\Roaming\WBPU-TTL.DAT
2013-10-14 17:21 - 2013-10-13 15:36 - 00002872 _____ C:\Windows\system32\TmInstall.log
2013-10-13 20:31 - 2013-05-31 17:54 - 00000000 ____D C:\ProgramData\McAfee
2013-10-13 16:46 - 2012-09-10 16:52 - 00000000 ____D C:\Users\Elisa Rossi\Documents\Elisa
2013-10-13 15:52 - 2013-10-13 15:52 - 00000000 ____D C:\Program Files (x86)\McAfeeMOBK
2013-10-13 15:52 - 2013-10-13 15:52 - 00000000 ____D C:\Program Files (x86)\McAfee Online Backup
2013-10-13 15:52 - 2013-10-13 15:49 - 00000000 ____D C:\Program Files\McAfee
2013-10-13 15:51 - 2013-10-13 15:51 - 00000000 ____D C:\Program Files (x86)\McAfee.com
2013-10-13 15:49 - 2013-10-13 15:49 - 00000000 ____D C:\Program Files\McAfee.com
2013-10-13 15:36 - 2013-10-13 15:36 - 00004280 _____ C:\Windows\SysWOW64\TmInstall.log
2013-10-13 15:36 - 2012-09-11 21:38 - 00000000 ____D C:\ProgramData\Trend Micro
2013-10-13 15:32 - 2013-10-13 15:32 - 05128728 _____ (McAfee, Inc.) C:\Users\Elisa Rossi\Downloads\McAfeeSetup.exe
2013-10-13 14:28 - 2013-10-13 14:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Elisa Rossi\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-13 14:21 - 2012-09-10 18:19 - 00000000 ____D C:\Dell
2013-10-13 13:47 - 2013-10-13 13:47 - 00014738 _____ C:\Users\Elisa Rossi\Downloads\Addition.txt
2013-10-13 13:45 - 2013-10-13 13:45 - 01954124 _____ (Farbar) C:\Users\Elisa Rossi\Downloads\FRST64.exe
2013-10-13 13:37 - 2013-10-13 13:37 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\0D0S1L2Z1P1B
2013-10-13 11:31 - 2013-10-12 19:18 - 00000000 ____D C:\Program Files (x86)\Shareaza Applications
2013-10-12 21:10 - 2013-10-12 19:52 - 00000000 ____D C:\Users\Elisa Rossi\Downloads\PS22 chorus
2013-10-12 19:43 - 2013-10-12 19:43 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\Easy MP3 Recorder
2013-10-12 19:19 - 2013-10-12 19:19 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\TFP
2013-10-12 19:19 - 2013-10-12 19:19 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Roaming\MusicNet
2013-10-12 19:16 - 2013-10-12 19:16 - 01334960 _____ (Bandoo Media Inc) C:\Users\Elisa Rossi\Downloads\ShareazaSetup-r116-n-bf.exe
2013-10-11 13:14 - 2012-09-20 11:32 - 00000000 ____D C:\Users\Elisa Rossi\Documents\BKK
2013-10-11 07:54 - 2012-09-12 12:08 - 00000344 _____ C:\Windows\lgfwup.ini
2013-10-11 07:54 - 2012-09-12 12:08 - 00000000 ____D C:\Program Files (x86)\lg_fwupdate
2013-10-11 07:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-11 06:59 - 2012-09-11 08:21 - 00004116 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-11 06:59 - 2012-09-11 08:21 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-11 06:55 - 2009-07-14 05:45 - 00421408 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-10 22:03 - 2012-09-10 16:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-10 22:00 - 2013-03-13 21:51 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 22:00 - 2013-03-13 21:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 17:54 - 2012-09-11 08:21 - 00000000 ____D C:\Users\Elisa Rossi\AppData\Local\Google
2013-10-10 14:53 - 2012-09-11 21:25 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-10-10 14:53 - 2012-09-11 21:25 - 00000000 ____D C:\ProgramData\Skype
2013-10-09 19:37 - 2013-10-09 19:37 - 00007039 _____ C:\Users\Elisa Rossi\Downloads\smime.p7s
2013-10-09 19:08 - 2013-01-25 15:40 - 00004126 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1758444941-3103609682-2941356913-1000UA
2013-10-09 19:08 - 2013-01-25 15:40 - 00003730 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1758444941-3103609682-2941356913-1000Core
2013-10-09 19:07 - 2013-10-09 19:07 - 17813896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-10-09 19:07 - 2012-09-11 13:04 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 19:07 - 2012-09-11 13:04 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-09 19:07 - 2012-09-11 13:04 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.4964.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-31 11:55
==================== End Of Log ============================