|
Log-Analyse und Auswertung: Pc Performer deinstallierenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
11.12.2013, 15:25 | #1 |
| Pc Performer deinstallieren Hallo Leute! Ich habe ein großes Problem. Ich habe mir ausversehen Pc Performer runtergeladen und somit auch einen Virus. ich möchte dieses Programm jetzt deinstallieren, es funktioniert aber nicht... ich kenn mich leider überhaupt nicht aus und brauch dringend die Hilfe von einem Fachmann/Frau. Bitte, Bitte helft mir! Liebe Grüße Nina |
11.12.2013, 16:07 | #2 |
/// the machine /// TB-Ausbilder | Pc Performer deinstallieren hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
11.12.2013, 21:23 | #3 |
| Pc Performer deinstallierenFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-12-2013 Ran by Nele (administrator) on NELE-PC on 11-12-2013 21:18:35 Running from C:\Users\Nele\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (BonanzaDeals) C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Windows\PLFSetI.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe () C:\Windows\vsnpstd3.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIFBE.EXE (Macrovision Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Somoto) C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe () C:\Users\Nele\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE () C:\Users\Nele\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe (Updater) C:\ProgramData\Updater\updater.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Facebook) C:\Users\Nele\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Visicom Media Inc. (Powered by Panda Security)) C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe () C:\Windows\FixCamera.exe () C:\Windows\tsnpstd3.exe (Sony Corporation) C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (WatchDog) C:\ProgramData\RHelpers\IeHelper\IeHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (WatchDog) C:\ProgramData\RHelpers\FirefoxHelper\FirefoxHelper.exe (WatchDog) C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (UpdaterResponse) C:\Users\Nele\AppData\Local\Temp\setup{6E916354-71AC-4404-BB73-71E0FEFEAD16}.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1890088 2009-12-10] (Synaptics Incorporated) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11444840 2010-09-21] (Realtek Semiconductor) HKLM\...\Run: [PLFSetI] - C:\Windows\PLFSetI.exe [200704 2007-10-23] () HKLM\...\Run: [Acer ePower Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [861216 2010-06-11] (Acer Incorporated) HKLM\...\Run: [snpstd3] - C:\Windows\vsnpstd3.exe [835584 2007-05-10] () HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [EA Core] - "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent HKCU\...\Run: [EPSON SX110 Series] - C:\Users\Nele\AppData\Local\Temp\E_S5F43.tmp [126 2013-09-09] () HKCU\...\Run: [ISUSPM] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-05-16] (Macrovision Corporation) HKCU\...\Run: [Facebook Update] - C:\Users\Nele\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-08-04] (Facebook Inc.) HKCU\...\Run: [SDP] - C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe [201808 2013-01-31] (Somoto) HKCU\...\Run: [FLV Player] - C:\Users\Nele\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [202752 2012-10-26] () HKCU\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION) HKCU\...\Run: [AppsHat] - C:\Users\Nele\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe [202752 2012-10-26] () HKCU\...\Run: [Apps Hat] - C:\Users\Nele\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe [202752 2012-10-26] () HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [481656 2013-11-21] (Updater) HKCU\...\Run: [SpeedItupFree] - "C:\Program Files (x86)\SpeedItup Free\speeditupfree.exe" MountPoints2: {08455c0b-8bcb-11e0-9e66-1c75082dd695} - E:\pushinst.exe MountPoints2: {30206949-f095-11df-947a-806e6f6e6963} - D:\Autorun.exe MountPoints2: {5bb5f1a2-4e27-11e2-b4ce-1c75082dd695} - F:\Startme.exe HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-04-13] (Intel Corporation) HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [265984 2010-06-28] (NewTech Infosystems, Inc.) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [975952 2010-08-10] (Dritek System Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [ApnUpdater] - C:\Program Files (x86)\Ask.com\Updater\Updater.exe [887976 2011-07-29] (Ask) HKLM-x32\...\Run: [Anti-phishing Domain Advisor] - C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe [232616 2012-01-17] (Visicom Media Inc. (Powered by Panda Security)) HKLM-x32\...\Run: [FixCamera] - C:\Windows\FixCamera.exe [20480 2007-07-11] () HKLM-x32\...\Run: [snpstd3] - C:\Windows\vsnpstd3.exe [835584 2007-05-10] () HKLM-x32\...\Run: [tsnpstd3] - C:\Windows\tsnpstd3.exe [270336 2007-04-21] () HKLM-x32\...\Run: [Reader Application Helper] - C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe [898952 2012-11-08] (Sony Corporation) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\avastui.exe [3567800 2013-10-26] (AVAST Software) HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\d2d6f388-b436-42ab-8bfc-9e2a3eca817b.exe [180184 2013-11-25] (AVAST Software) HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [481656 2013-11-21] (Updater) HKU\Andi\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [481656 2013-11-21] (Updater) HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () AppInit_DLLs: C:\ProgramData\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\loader.dll [1958880 2013-11-18] () Startup: C:\Users\Nele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk ShortcutTarget: Facebook Messenger.lnk -> C:\Users\Nele\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.babylon.com/?affID=119816&tt=gc_&babsrc=HP_ss_din2g&mntrId=0C8818F46A7571F6 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com URLSearchHook: HKLM-x32 - DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) URLSearchHook: HKCU - DVD Video Soft Toolbar - {cd8812d4-e5b8-41c6-94d4-59872a484bf1} - C:\Program Files (x86)\dvdvideosofttoolbar\dvdvideosofttoolbarX.dll () URLSearchHook: HKCU - DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) URLSearchHook: HKCU - UsProvider Class - {539F76FD-084E-4858-86D5-62F02F54AE86} - C:\Program Files (x86)\Minibar\Minibar.dll (KangoExtensions) SearchScopes: HKLM-x32 - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.delta-search.com/?q={searchTerms}&affID=119816&tt=gc_&babsrc=SP_ss&mntrId=0C8818F46A7571F6 SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://blekko.com/?source=c3348dd4&tbp=rbox&toolbarid=blekkotb&u=201205210695438591CF2EA4C0ECA979&q={searchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKCU - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} URL = hxxp://eu.ask.com/web?l=dis&o=APN10020&gct=sb&qsrc=2869&apn_dtid=^YYYYYY^YY^DE&apn_ptnrs=^A4G &apn_uid=3104014203544420&p2=^A4G ^YYYYYY^YY^DE&q={searchTerms} SearchScopes: HKCU - {E15A1449-D650-4D48-8B08-68951E41BB75} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=DVS2&o=1586&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=^AAA&apn_dtid=^YYYYYY^YY^DE&apn_uid=2854E6C5-6AF0-4934-B897-8C25206E9686&apn_sauid=FA4F2FD5-D65A-43A2-AFB4-A87AB5F55182 BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) BHO-x32: DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Updater For Spam Free Search Bar - {20a0be68-8fd9-4539-8712-ce3d1c1fdfc6} - C:\Program Files (x86)\blekkotb\auxi\blekkoAu.dll (Visicom Media) BHO-x32: Spam Free Search Bar - {26c9e18c-3717-4be1-a225-04e4471f5b6e} - C:\Program Files (x86)\blekkotb\blekkoDx.dll () BHO-x32: Tube Dimmer - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} - C:\ProgramData\TubeDimmer\IE\common.dll (Creative Island Media, LLC) BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: MinibarBHO - {AA74D58F-ACD0-450D-A85E-6C04B171C044} - C:\Program Files (x86)\Minibar\Minibar.dll (KangoExtensions) BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO-x32: DVD Video Soft Toolbar - {cd8812d4-e5b8-41c6-94d4-59872a484bf1} - C:\Program Files (x86)\dvdvideosofttoolbar\dvdvideosofttoolbarX.dll () BHO-x32: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) BHO-x32: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC) BHO-x32: BonanzaDeals - {fe063412-bea4-4d76-8ed3-183be6220d17} - C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE.dll (BonanzaDeals) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - DVD Video Soft Toolbar - {cd8812d4-e5b8-41c6-94d4-59872a484bf1} - C:\Program Files (x86)\dvdvideosofttoolbar\dvdvideosofttoolbarX.dll () Toolbar: HKLM-x32 - Spam Free Search Bar - {26c9e18c-3717-4be1-a225-04e4471f5b6e} - C:\Program Files (x86)\blekkotb\blekkoDx.dll () Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - DVDVideoSoftTB DE Toolbar - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - C:\Program Files (x86)\DVDVideoSoftTB_DE\prxtbDVDV.dll (Conduit Ltd.) Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default FF user.js: detected! => C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\user.js FF NewTab: chrome://unitedtb/content/newtab/newtab-page.xhtml FF DefaultSearchEngine: appbarioDE 1.1 Customized Web Search FF SelectedSearchEngine: appbarioDE 1.1 Customized Web Search FF Keyword.URL: hxxp://blekko.com/ws/?source=c3348dd4&tbp=url&toolbarid=blekkotb&u=___userid___&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @Nero.com/KM - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin-x32: @sony.com/ReaderDesktop - C:\Program Files (x86)\Sony\ReaderDesktop\npreaderdetectmoz.dll (Sony Corporation) FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\Nele\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\11-suche.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\askcom.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\BitGuard.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\conduit.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\delta.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\englische-ergebnisse.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\gmx-suche.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\lastminute.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\metaCrawler.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\SweetIM Search.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\sweetim.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\webde-suche-1.xml FF SearchPlugin: C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\ask.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\blekkotb.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Yontoo - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\plugin@yontoo.com FF Extension: PricePeep - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\pricepeep@getpricepeep.com FF Extension: No Name - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\staged FF Extension: Tube Dimmer - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\support@tubedimmerapp.com FF Extension: Ask Toolbar - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\toolbar@ask.com FF Extension: WEB.DE MailCheck - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\toolbar@web.de FF Extension: DVDVideoSoftTB DE - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} FF Extension: Spam Free Search Bar - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{00f12770-e60e-4dc6-9105-425bface7c73} FF Extension: AppsHat - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{97A78363-B868-4B48-AC91-A783A31215AF} FF Extension: Proxify Toolbar - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{9cfdd5db-2841-4970-acbc-b812ac1092e8} FF Extension: DVD Video Soft Toolbar - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{cd8812d4-e5b8-41c6-94d4-59872a484bf1} FF Extension: Greasemonkey - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} FF Extension: appbarioDE 1.1 - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{ef03e721-f564-4333-a331-d4062cee6f2b} FF Extension: BonanzaDeals - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{f9d03c26-0575-497e-821d-f7956d23e0ca} FF Extension: plugin - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\plugin@yontoo.com.xpi FF Extension: pricepeep - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\pricepeep@getpricepeep.com.xpi FF Extension: toolbar - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\toolbar@web.de.xpi FF Extension: preferences - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{9cfdd5db-2841-4970-acbc-b812ac1092e8}.xpi FF Extension: DVDVideoSoft Menu - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi FF Extension: greasemonkey - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi FF Extension: No Name - C:\Users\Nele\AppData\Roaming\Mozilla\Firefox\Profiles\pb3g1hgx.default\Extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF HKCU\...\Firefox\Extensions: [lrcspal@xinghao.net] - C:\Program Files (x86)\XingHaoLyrics\FF\ FF Extension: LyricsPal - C:\Program Files (x86)\XingHaoLyrics\FF\ Chrome: ======= CHR HomePage: hxxp://search.babylon.com/?affID=119816&tt=gc_&babsrc=HP_ss_din2g&mntrId=0C8818F46A7571F6 CHR RestoreOnStartup: "hxxp://search.babylon.com/?affID=119816&tt=gc_&babsrc=HP_ss_din2g&mntrId=0C8818F46A7571F6", "hxxp://www.delta-search.com/?affID=119816&tt=gc_&babsrc=HP_ss&mntrId=0C8818F46A7571F6" CHR DefaultSearchKeyword: babylon.com CHR DefaultSearchProvider: Babylon CHR DefaultSearchURL: hxxp://search.babylon.com/?q={searchTerms}&affID=119816&tt=gc_&babsrc=SP_ss_din2g&mntrId=0C8818F46A7571F6 CHR Extension: (Ask Toolbar) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaakfopmidbfddimafofbdngbkidf\7.13.0.0_0 CHR Extension: (avast! WebRep) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1451_0 CHR Extension: (BonanzaDeals) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj\3.5.0.0_0 CHR Extension: () - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.49 CHR Extension: (PricePeep) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb\2.2.0.1_0 CHR Extension: (Skype Click to Call) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0 CHR Extension: (LyricsPal) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmiopbgcekanlhpjkonogoljpfmhpkhf\1.111 CHR Extension: (Minibar ) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpcknfcdcgpffjddjeceioobdelceffo\2.0.1_0 CHR Extension: (Yontoo) - C:\Users\Nele\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.1_0 CHR HKLM-x32\...\Chrome\Extension: [aaaaaakfopmidbfddimafofbdngbkidf] - C:\Users\Nele\AppData\Local\APN\GoogleCRXs\aaaaaakfopmidbfddimafofbdngbkidf_7.13.0.0.crx CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Nele\AppData\Roaming\BabSolution\CR\Delta.crx CHR HKLM-x32\...\Chrome\Extension: [igjjkeeamkpihpncmmbgdkhdnjpcfmfb] - C:\ProgramData\TubeDimmer\Chrome\common.crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx CHR HKLM-x32\...\Chrome\Extension: [mmiopbgcekanlhpjkonogoljpfmhpkhf] - C:\Program Files (x86)\XingHaoLyrics\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Users\Nele\AppData\Local\Temp\YontooLayers.crx CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-10-21] (AVAST Software) S2 bonanzadealslive; C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-27] (BonanzaDeals) S3 bonanzadealslivem; C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-27] (BonanzaDeals) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-11] (Seiko Epson Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640 2010-01-30] (Acer Incorporated) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-10-21] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-10-21] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-21] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-21] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-10-21] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-11-08] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-10-21] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-10-21] () S3 SNPSTD3; C:\Windows\System32\DRIVERS\snpstd3.sys [10693120 2007-10-16] (Sonix Co. Ltd.) S3 SNPSTD3; C:\Windows\SysWow64\DRIVERS\snpstd3.sys [10376576 2007-10-16] (Sonix Co. Ltd.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-11 20:58 - 2013-12-11 21:01 - 00076236 _____ C:\Users\Nele\Downloads\FRST.txt 2013-12-11 20:57 - 2013-12-11 20:57 - 00000000 ____D C:\Users\Nele\Downloads\FRST-OlderVersion 2013-12-11 20:51 - 2013-12-11 21:18 - 00030135 _____ C:\Users\Nele\Desktop\FRST.txt 2013-12-11 20:47 - 2013-12-11 20:48 - 01926944 _____ (Farbar) C:\Users\Nele\Desktop\FRST64.exe 2013-12-11 15:00 - 2013-12-11 15:00 - 00013169 _____ C:\Users\Nele\Desktop\FRST64 - Verknüpfung.lnk 2013-12-11 14:57 - 2013-12-11 20:57 - 00000000 ____D C:\FRST 2013-12-11 14:56 - 2013-12-11 20:57 - 01926944 _____ (Farbar) C:\Users\Nele\Downloads\FRST64.exe 2013-12-11 14:32 - 2013-12-11 14:32 - 00000004 _____ C:\Windows\SysWOW64\test.dat 2013-12-11 14:15 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 14:15 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 14:15 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 14:15 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 14:13 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-11 14:13 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-11 14:13 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-11 14:13 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-11 14:13 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-11 14:13 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-11 14:13 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-11 14:13 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-11 14:13 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-11 14:13 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-11 14:13 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-11 14:13 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-11 14:13 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-11 14:13 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-11 14:13 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-11 14:13 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-11 14:13 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-11 14:13 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-11 14:13 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-11 14:13 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-11 14:13 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-11 14:13 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-11 14:13 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-11 14:13 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-11 14:13 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-11 14:13 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-11 14:13 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-11 14:13 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-11 14:13 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-11 14:13 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-11 14:13 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 14:07 - 2013-12-11 14:07 - 00000000 ____D C:\Program Files (x86)\Yontoo 2013-12-11 12:43 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 12:43 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 12:43 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 12:43 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 12:43 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 12:43 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 12:43 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 12:43 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 12:43 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 12:43 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 12:43 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 12:40 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 12:40 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 12:40 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 12:40 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 12:40 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 12:40 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 12:40 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 12:40 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-09 21:51 - 2013-12-09 21:51 - 00000000 ____D C:\Users\Nele\AppData\Local\IsolatedStorage 2013-12-09 21:47 - 2013-12-09 21:47 - 00002304 _____ C:\Users\Public\Desktop\Die Sims™ 3 Erstelle eine Welt-Tool - Beta.lnk 2013-12-03 12:59 - 2013-12-03 12:59 - 00000000 ____D C:\Users\Andi\AppData\Roaming\PerformerSoft 2013-12-01 17:37 - 2013-12-11 14:40 - 00000412 _____ C:\Windows\Tasks\PC Optimizer Pro64 startups.job 2013-12-01 17:37 - 2013-12-01 17:37 - 00002834 _____ C:\Windows\System32\Tasks\PC Optimizer Pro64 startups 2013-12-01 17:37 - 2013-12-01 17:37 - 00000000 ____D C:\ProgramData\PC Optimizer Pro 2013-12-01 17:07 - 2013-12-09 13:21 - 00000000 ____D C:\Program Files\PC Optimizer Pro 2013-12-01 17:04 - 2013-12-05 20:53 - 00000000 ____D C:\Program Files (x86)\SpeedItup Free 2013-12-01 17:04 - 2013-12-01 17:04 - 00000000 _____ C:\ProgramData\spds90.txt 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\Updater 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\TubeDimmer 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\RHelpers 2013-12-01 15:17 - 2008-05-21 10:54 - 00000000 ____D C:\Users\Nele\Downloads\11_Camera_Suyin 2013-12-01 15:15 - 2013-12-01 15:15 - 00000000 ____D C:\Program Files\WinRAR 2013-12-01 15:14 - 2013-12-01 15:15 - 00000000 ____D C:\Users\Nele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-12-01 15:14 - 2013-12-01 15:14 - 00000000 ____D C:\Users\Nele\AppData\Roaming\WinRAR 2013-12-01 15:14 - 2013-12-01 15:14 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-12-01 14:57 - 2013-12-11 15:02 - 00000274 _____ C:\Windows\Tasks\PC Performer_DEFAULT.job 2013-12-01 14:57 - 2013-12-11 15:01 - 00003118 _____ C:\Windows\System32\Tasks\PC Performer 2013-12-01 14:57 - 2013-12-11 14:57 - 00000282 _____ C:\Windows\Tasks\PC Performer_UPDATES.job 2013-12-01 14:57 - 2013-12-01 14:57 - 00003020 _____ C:\Windows\System32\Tasks\PC Performer_UPDATES 2013-12-01 14:57 - 2013-12-01 14:57 - 00002864 _____ C:\Windows\System32\Tasks\PC Performer_DEFAULT 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Users\Nele\AppData\Roaming\speedtest4354 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Users\Nele\AppData\Roaming\PerformerSoft 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Program Files (x86)\UnZIPExpress 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Program Files (x86)\PC Performer 2013-12-01 14:57 - 2013-06-19 14:58 - 00019456 _____ (PerformerSoft LLC) C:\Windows\system32\roboot64.exe 2013-12-01 14:56 - 2013-12-01 14:56 - 00000000 ____D C:\Users\Nele\AppData\Roaming\freegames4357 2013-11-19 23:05 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-11-19 23:00 - 2013-11-19 23:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 23:00 - 2013-11-19 23:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 23:00 - 2013-11-19 23:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 23:00 - 2013-11-19 23:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 23:00 - 2013-11-19 23:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 23:00 - 2013-11-19 23:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 23:00 - 2013-11-19 23:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 22:57 - 2013-11-19 23:06 - 00011300 _____ C:\Windows\IE11_main.log 2013-11-18 17:25 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-18 17:25 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-18 17:25 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-18 17:25 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-18 17:25 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-18 17:25 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-18 17:25 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-18 17:25 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-18 17:25 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-18 17:25 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-18 17:25 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-18 17:25 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-18 17:25 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-18 17:25 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-18 17:25 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-18 17:25 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-18 17:25 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-18 17:25 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-18 17:25 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-18 17:25 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-18 17:25 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-18 17:25 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-18 17:25 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-18 17:25 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-18 17:25 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-18 17:25 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-18 17:25 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-18 17:25 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-18 17:25 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-18 17:25 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-13 21:40 - 2013-11-13 21:40 - 00005040 _____ C:\Users\Andi\Documents\Kündigung.odt 2013-11-13 20:49 - 2013-11-13 21:41 - 00000000 ____D C:\Users\Andi\AppData\Roaming\SoftGrid Client 2013-11-13 20:49 - 2013-11-13 20:49 - 00000000 ____D C:\Users\Andi\AppData\Local\SoftGrid Client 2013-11-13 20:48 - 2013-11-13 20:48 - 00000000 ____D C:\Users\Andi\AppData\Roaming\OpenOffice ==================== One Month Modified Files and Folders ======= 2013-12-11 21:18 - 2013-12-11 20:51 - 00030135 _____ C:\Users\Nele\Desktop\FRST.txt 2013-12-11 21:14 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-11 21:14 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-11 21:06 - 2011-07-10 12:55 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-11 21:01 - 2013-12-11 20:58 - 00076236 _____ C:\Users\Nele\Downloads\FRST.txt 2013-12-11 20:58 - 2011-07-10 12:55 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-11 20:57 - 2013-12-11 20:57 - 00000000 ____D C:\Users\Nele\Downloads\FRST-OlderVersion 2013-12-11 20:57 - 2013-12-11 14:57 - 00000000 ____D C:\FRST 2013-12-11 20:57 - 2013-12-11 14:56 - 01926944 _____ (Farbar) C:\Users\Nele\Downloads\FRST64.exe 2013-12-11 20:51 - 2010-11-15 18:42 - 00654852 _____ C:\Windows\system32\perfh007.dat 2013-12-11 20:51 - 2010-11-15 18:42 - 00130434 _____ C:\Windows\system32\perfc007.dat 2013-12-11 20:51 - 2009-07-14 06:13 - 01500358 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-11 20:48 - 2013-12-11 20:47 - 01926944 _____ (Farbar) C:\Users\Nele\Desktop\FRST64.exe 2013-12-11 20:46 - 2013-10-27 20:38 - 00000922 _____ C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job 2013-12-11 20:46 - 2013-10-27 20:38 - 00000918 _____ C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2013-12-11 20:46 - 2013-10-27 20:35 - 00000288 _____ C:\Windows\Tasks\DigitalSite.job 2013-12-11 20:46 - 2012-08-04 11:39 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-993839078-2241481912-678163044-1000UA.job 2013-12-11 20:46 - 2012-04-11 00:09 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-11 20:46 - 2010-11-15 09:52 - 01755135 _____ C:\Windows\WindowsUpdate.log 2013-12-11 15:02 - 2013-12-01 14:57 - 00000274 _____ C:\Windows\Tasks\PC Performer_DEFAULT.job 2013-12-11 15:01 - 2013-12-01 14:57 - 00003118 _____ C:\Windows\System32\Tasks\PC Performer 2013-12-11 15:00 - 2013-12-11 15:00 - 00013169 _____ C:\Users\Nele\Desktop\FRST64 - Verknüpfung.lnk 2013-12-11 14:57 - 2013-12-01 14:57 - 00000282 _____ C:\Windows\Tasks\PC Performer_UPDATES.job 2013-12-11 14:44 - 2013-10-27 21:07 - 00000000 ____D C:\Program Files (x86)\MyPC Backup 2013-12-11 14:44 - 2011-05-31 00:12 - 00000000 ___RD C:\Users\Nele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-11 14:41 - 2012-05-21 20:41 - 00000000 ____D C:\ProgramData\Anti-phishing Domain Advisor 2013-12-11 14:40 - 2013-12-01 17:37 - 00000412 _____ C:\Windows\Tasks\PC Optimizer Pro64 startups.job 2013-12-11 14:40 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-11 14:40 - 2009-07-14 05:51 - 00144590 _____ C:\Windows\setupact.log 2013-12-11 14:35 - 2012-09-22 14:32 - 00000009 _____ C:\END 2013-12-11 14:32 - 2013-12-11 14:32 - 00000004 _____ C:\Windows\SysWOW64\test.dat 2013-12-11 14:24 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-11 14:22 - 2009-07-14 05:45 - 00320992 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-11 14:10 - 2011-06-01 18:03 - 00000000 ____D C:\Users\Nele\AppData\Roaming\Skype 2013-12-11 14:07 - 2013-12-11 14:07 - 00000000 ____D C:\Program Files (x86)\Yontoo 2013-12-11 13:53 - 2012-04-11 00:09 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 13:52 - 2012-04-11 00:09 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 13:52 - 2011-06-02 12:43 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 12:53 - 2013-11-04 17:38 - 00000091 _____ C:\Users\Nele\AppData\Roaming\WB.CFG 2013-12-11 12:53 - 2013-11-04 17:38 - 00000006 _____ C:\Users\Nele\AppData\Roaming\WBPU-TTL.DAT 2013-12-11 12:44 - 2012-08-04 11:39 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-993839078-2241481912-678163044-1000Core.job 2013-12-11 12:28 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-12-11 12:26 - 2012-01-23 01:26 - 00003922 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{EB8B34ED-B444-40C1-B708-C419F2C84997} 2013-12-09 21:51 - 2013-12-09 21:51 - 00000000 ____D C:\Users\Nele\AppData\Local\IsolatedStorage 2013-12-09 21:47 - 2013-12-09 21:47 - 00002304 _____ C:\Users\Public\Desktop\Die Sims™ 3 Erstelle eine Welt-Tool - Beta.lnk 2013-12-09 21:47 - 2011-07-29 20:05 - 00000000 ____D C:\Users\Nele\Documents\Electronic Arts 2013-12-09 21:46 - 2011-05-31 23:09 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-12-09 21:46 - 2010-09-24 10:46 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-12-09 20:22 - 2012-07-12 16:31 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-12-09 20:18 - 2011-05-31 08:59 - 00000000 ____D C:\Users\Nele\AppData\Roaming\SoftGrid Client 2013-12-09 13:21 - 2013-12-01 17:07 - 00000000 ____D C:\Program Files\PC Optimizer Pro 2013-12-09 13:21 - 2010-11-15 09:49 - 00125538 _____ C:\Windows\PFRO.log 2013-12-05 20:53 - 2013-12-01 17:04 - 00000000 ____D C:\Program Files (x86)\SpeedItup Free 2013-12-03 12:59 - 2013-12-03 12:59 - 00000000 ____D C:\Users\Andi\AppData\Roaming\PerformerSoft 2013-12-01 17:37 - 2013-12-01 17:37 - 00002834 _____ C:\Windows\System32\Tasks\PC Optimizer Pro64 startups 2013-12-01 17:37 - 2013-12-01 17:37 - 00000000 ____D C:\ProgramData\PC Optimizer Pro 2013-12-01 17:04 - 2013-12-01 17:04 - 00000000 _____ C:\ProgramData\spds90.txt 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\Updater 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\TubeDimmer 2013-12-01 17:02 - 2013-12-01 17:02 - 00000000 ____D C:\ProgramData\RHelpers 2013-12-01 15:15 - 2013-12-01 15:15 - 00000000 ____D C:\Program Files\WinRAR 2013-12-01 15:15 - 2013-12-01 15:14 - 00000000 ____D C:\Users\Nele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-12-01 15:14 - 2013-12-01 15:14 - 00000000 ____D C:\Users\Nele\AppData\Roaming\WinRAR 2013-12-01 15:14 - 2013-12-01 15:14 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-12-01 14:57 - 2013-12-01 14:57 - 00003020 _____ C:\Windows\System32\Tasks\PC Performer_UPDATES 2013-12-01 14:57 - 2013-12-01 14:57 - 00002864 _____ C:\Windows\System32\Tasks\PC Performer_DEFAULT 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Users\Nele\AppData\Roaming\speedtest4354 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Users\Nele\AppData\Roaming\PerformerSoft 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Program Files (x86)\UnZIPExpress 2013-12-01 14:57 - 2013-12-01 14:57 - 00000000 ____D C:\Program Files (x86)\PC Performer 2013-12-01 14:56 - 2013-12-01 14:56 - 00000000 ____D C:\Users\Nele\AppData\Roaming\freegames4357 2013-12-01 13:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-29 23:28 - 2011-10-20 19:22 - 00000000 ____D C:\Users\Nele\AppData\Local\Nero 2013-11-26 12:54 - 2013-12-11 14:13 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-11 14:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-11 14:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-11 14:13 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-11 14:13 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-11 14:13 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-11 14:13 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-11 14:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-11 14:13 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-11 14:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-11 14:13 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-11 14:13 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-11 14:13 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-11 14:13 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-11 14:13 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-11 14:13 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-11 14:13 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-11 14:13 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-11 14:13 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-11 14:13 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-11 14:13 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-11 14:13 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-11 14:13 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-11 14:13 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-11 14:13 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-11 14:13 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-11 14:13 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-11 14:13 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-11 14:13 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-11 14:13 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-11 14:13 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-23 19:26 - 2013-12-11 12:43 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-11 12:43 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-23 00:32 - 2013-07-08 21:55 - 00001425 _____ C:\Users\Andi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-22 19:48 - 2013-09-15 12:09 - 00000000 ____D C:\ProgramData\BitGuard 2013-11-22 19:48 - 2012-04-26 09:46 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-21 19:46 - 2013-05-26 21:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-21 19:09 - 2011-05-31 00:12 - 00001425 _____ C:\Users\Nele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-21 19:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-11-19 23:06 - 2013-11-19 22:57 - 00011300 _____ C:\Windows\IE11_main.log 2013-11-19 23:00 - 2013-11-19 23:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 23:00 - 2013-11-19 23:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 23:00 - 2013-11-19 23:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 23:00 - 2013-11-19 23:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 23:00 - 2013-11-19 23:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 23:00 - 2013-11-19 23:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 23:00 - 2013-11-19 23:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 23:00 - 2013-11-19 23:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 23:00 - 2013-11-19 23:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 19:17 - 2011-06-15 23:38 - 00000000 ____D C:\Users\Nele\AppData\Local\Adobe 2013-11-18 19:38 - 2013-08-06 23:51 - 00000000 ____D C:\Windows\system32\MRT 2013-11-18 19:35 - 2012-02-05 12:16 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-13 21:41 - 2013-11-13 20:49 - 00000000 ____D C:\Users\Andi\AppData\Roaming\SoftGrid Client 2013-11-13 21:40 - 2013-11-13 21:40 - 00005040 _____ C:\Users\Andi\Documents\Kündigung.odt 2013-11-13 20:49 - 2013-11-13 20:49 - 00000000 ____D C:\Users\Andi\AppData\Local\SoftGrid Client 2013-11-13 20:48 - 2013-11-13 20:48 - 00000000 ____D C:\Users\Andi\AppData\Roaming\OpenOffice 2013-11-12 03:23 - 2013-12-11 12:43 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-11-12 03:07 - 2013-12-11 12:43 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-11-11 05:50 - 2011-05-31 05:06 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe Some content of TEMP: ==================== C:\Users\Andi\AppData\Local\Temp\setup{FC40EE8E-14C2-401A-A029-E86F728529EC}.exe C:\Users\Andi\AppData\Local\Temp\setup{FFBBD6EA-D418-4739-A253-F9A66CBEBB7D}.exe C:\Users\Nele\AppData\Local\Temp\48134uninstall.exe C:\Users\Nele\AppData\Local\Temp\7z920.exe C:\Users\Nele\AppData\Local\Temp\7za.exe C:\Users\Nele\AppData\Local\Temp\appshat-distribution.exe C:\Users\Nele\AppData\Local\Temp\BackupSetup.exe C:\Users\Nele\AppData\Local\Temp\DeltaTB.exe C:\Users\Nele\AppData\Local\Temp\dp.exe C:\Users\Nele\AppData\Local\Temp\FLVPlayerSetup.exe C:\Users\Nele\AppData\Local\Temp\FLVPlayerUpdate_downloader_by_FLVPlayerUpdate.exe C:\Users\Nele\AppData\Local\Temp\GoogleChromeInstaller.exe C:\Users\Nele\AppData\Local\Temp\IminentSetup.exe C:\Users\Nele\AppData\Local\Temp\install_helper.exe C:\Users\Nele\AppData\Local\Temp\LyricsPal.exe C:\Users\Nele\AppData\Local\Temp\MSN8400.exe C:\Users\Nele\AppData\Local\Temp\OptChrome.exe C:\Users\Nele\AppData\Local\Temp\OptimizerPro.exe C:\Users\Nele\AppData\Local\Temp\PCPerformerSetup.exe C:\Users\Nele\AppData\Local\Temp\pricepeep_130001_0101.exe C:\Users\Nele\AppData\Local\Temp\run.exe C:\Users\Nele\AppData\Local\Temp\setup_fsu_cid.exe C:\Users\Nele\AppData\Local\Temp\setup{6E916354-71AC-4404-BB73-71E0FEFEAD16}.exe C:\Users\Nele\AppData\Local\Temp\setup{BAE66CC6-3285-40B5-9E47-2C9D24AE0727}.exe C:\Users\Nele\AppData\Local\Temp\setup{CD41B5D0-5283-4F2E-817C-59F540BEA71C}.exe C:\Users\Nele\AppData\Local\Temp\SkypeSetup.exe C:\Users\Nele\AppData\Local\Temp\Sqlite3.dll C:\Users\Nele\AppData\Local\Temp\sqlite3.exe C:\Users\Nele\AppData\Local\Temp\uninst1.exe C:\Users\Nele\AppData\Local\Temp\UninstallEADM.dll C:\Users\Nele\AppData\Local\Temp\UpdateCheckerSetup.exe C:\Users\Nele\AppData\Local\Temp\YontooIEClient.dll C:\Users\Nele\AppData\Local\Temp\YontooSetup-Silent.exe C:\Users\Nele\AppData\Local\Temp\{32FD4CA3-951C-456A-B47B-1886C8AFB6A5}-26.0.1410.64_26.0.1410.43_chrome_updater.exe C:\Users\Nele\AppData\Local\Temp\{97CF7BF1-1F24-4424-B9E4-6577A39C50E6}-28.0.1500.71_27.0.1453.116_chrome_updater.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-01 13:16 ==================== End Of Log ============================ Code:
ATTFilter ==================== Memory info =========================== Percentage of memory in use: 52% Total physical RAM: 4025.97 MB Available physical RAM: 1902.97 MB Total Pagefile: 8050.13 MB Available Pagefile: 5708.5 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:452.66 GB) (Free:314.32 GB) NTFS Drive d: (Sims3EP10) (CDROM) (Total:4.37 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 73713781) Partition 1: (Not Active) - (Size=13 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=453 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
12.12.2013, 11:53 | #4 |
/// the machine /// TB-Ausbilder | Pc Performer deinstallieren hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.12.2013, 15:30 | #5 |
| Pc Performer deinstallieren Hm...eigentlich habe ich alle antivirensoftware deaktiviert aber wenn ich das programm ausführen will kommt immer NSIS ERROR. |
13.12.2013, 14:15 | #6 |
/// the machine /// TB-Ausbilder | Pc Performer deinstallieren Combofix löschen und neu laden, AV Software zur Not vorher deinstallieren.
__________________ --> Pc Performer deinstallieren |
Themen zu Pc Performer deinstallieren |
brauch, deinstalliere, deinstallieren, dringend, funktionier, funktioniert, großes, helft, hilfe, leute, pc performer, performer, programm, runtergeladen, überhaupt |