|
Plagegeister aller Art und deren Bekämpfung: PlusHD.8 lässt sich nicht deinstallierenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.01.2014, 11:49 | #1 |
| PlusHD.8 lässt sich nicht deinstallieren Hallo zusammen, ich nutze aktuell den Firefox 26.0 und Windows 7 64 Bit. Seit ein paar Tagen habe ich nun jedes Mal am Seitenrand ein Kästchen, wo im unteren Rand " PlusHD.8" steht. Spyware Terminator und Spybot bringen leider keinen Erfolg. In den Eigenschaften habe ich auch mal alle - mir komisch vorkommenden - Programme deinstalliert und in den Add on Einstellungen bei Firefox alles mir merkwürdige deinstalliert. Jedoch bringt dich ebenso nichts. Was kann ich noch versuchen? Danke! Hat sich schon erledigt. Dank Browser Clean up läuft es wieder reibungslos. Geändert von SVV (05.01.2014 um 11:42 Uhr) |
05.01.2014, 12:01 | #2 |
/// the machine /// TB-Ausbilder | PlusHD.8 lässt sich nicht deinstallieren hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
05.01.2014, 14:23 | #3 |
| PlusHD.8 lässt sich nicht deinstallieren Soooo,
__________________also Firefox ist jetzt komischerweise relativ langsam. Öffne ich einen neuen Tab, kommt: "https://www.google.de/?gws_rd=cr&ei=31vJUqa6IMHYswbsh4C4Bg" obwohl ich in der Starteinstellung eine ganz andere Seite eingestellt habe. Hier nun das FRST.txt Code:
ATTFilter (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\ccsvchst.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\ccsvchst.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe (TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe (Microsoft Corporation) C:\Users\Patrick\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe () C:\Windows\system\cm106eye.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ICQ, LLC.) C:\Program Files (x86)\ICQ7M\ICQ.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files\Sony\VAIO Care\VCPerfService.exe () C:\Program Files\Sony\VAIO Care\listener.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1016992 2012-01-19] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2012-01-19] (Atheros Commnucations) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2870032 2012-03-15] (Synaptics Incorporated) HKLM\...\Run: [Cm106Sound] - C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd HKLM\...\Run: [SpywareTerminatorShield] - C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2777736 2013-04-03] (Crawler.com) HKLM\...\Run: [SpywareTerminatorUpdater] - C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3684488 2013-04-03] (Crawler.com) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [ccleaner] - C:\Program Files\CCleaner\CCleaner64.exe [5312352 2012-07-24] (Piriform Ltd) HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3713032 2012-11-13] (Safer-Networking Ltd.) HKCU\...\Run: [TrueCrypt] - C:\Program Files\TrueCrypt\TrueCrypt.exe [1516496 2012-10-13] (TrueCrypt Foundation) HKCU\...\Run: [SkyDrive] - C:\Users\Patrick\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-17] (Microsoft Corporation) MountPoints2: {3705970a-14fb-11e2-b860-5453ed24f0ad} - D:\SETUP.EXE MountPoints2: {bb0bd5be-ea00-11e1-970f-5453ed24f0ad} - D:\SETUP.EXE IFEO: [Debugger] "C:\PROGRAM FILES (X86)\TUNEUP UTILITIES 2013\TUAutoReactivator64.EXE" BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {B1CAC608-CFB5-4E3D-AAD7-DA3A5A185B81} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms} BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\coieplg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\coieplg.dll (Symantec Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default FF NewTab: www.google.com FF SearchEngineOrder.1: Google FF SelectedSearchEngine: Google FF Homepage: www.google.de FF Keyword.URL: https://www.google.com/search FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\searchplugins\englische-ergebnisse.xml FF SearchPlugin: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\searchplugins\gmx-suche.xml FF SearchPlugin: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\searchplugins\lastminute.xml FF SearchPlugin: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DHL Packstation Bestellhelfer - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\Extensions\{b8cbd8e0-e642-11dd-ba2f-0800200c9a66} FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: Hide My Ass Proxy Extension - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\Extensions\extension@hidemyass.com.xpi FF Extension: Malware Search - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\Extensions\{27c60876-b5c9-4335-b4f3-52b26782220c}.xpi FF Extension: Adblock Plus - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\sh6x2hne.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Anti-Banner - C:\Program Files (x86)\Mozilla Firefox\extensions\KavAntiBanner@kaspersky.ru_bak2 FF Extension: Modul zur Link-Untersuchung - C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2 FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\IPSFF FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Patrick\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\Exts\Chrome.crx ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) S3 DCDhcpService; C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [112256 2012-03-21] (Atheros Communication Inc.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [121344 2012-02-07] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-07] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostServiceSony; C:\Program Files (x86)\Sony\MSS\3.0.271\McCHSvc.exe [237328 2012-03-30] (McAfee, Inc.) R2 N360; C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1369624 2012-11-13] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [168384 2012-11-13] (Safer-Networking Ltd.) R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1149104 2013-04-03] (Crawler.com) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-10-10] (soft Xpansion) R2 TuneUp.UtilitiesSvc; C:\PROGRAM FILES (X86)\TUNEUP UTILITIES 2013\TUNEUPUTILITIESSERVICE64.EXE [2409272 2013-12-10] (TuneUp Software) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.) S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation) R3 VUAgent; C:\PROGRAM FILES\SONY\VAIO UPDATE\VUAGENT.EXE [1368624 2013-08-01] (Sony Corporation) R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2012-01-19] (Atheros) ==================== Drivers (Whitelisted) ==================== S3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20131203.001\BHDrvx64.sys [1526488 2013-12-03] (Symantec Corporation) R3 BTATH_VDP; C:\Windows\System32\drivers\btath_vdp.sys [421664 2012-01-19] (Atheros) R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-11-22] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-22] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20140103.001\IDSvia64.sys [521944 2013-12-13] (Symantec Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20140104.006\ENG64.SYS [126040 2013-08-29] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20140104.006\EX64.SYS [2099288 2013-08-29] (Symantec Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [868848 2012-08-19] () R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2013-06-24] (Windows (R) Win 7 DDK provider) R3 SRTSP; C:\Windows\System32\Drivers\N360x64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\N360x64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\N360x64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-07-06] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\N360x64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) R3 TuneUpUtilitiesDrv; C:\PROGRAM FILES (X86)\TUNEUP UTILITIES 2013\TuneUpUtilitiesDriver64.sys [11880 2012-09-19] (TuneUp Software) S3 TVICHW64; C:\Windows\system32\DRIVERS\TVICHW64.SYS [21200 2012-12-14] (EnTech Taiwan) R3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2009-10-20] (C-Media Electronics Inc) U3 a1zxu9mh; C:\Windows\System32\Drivers\a1zxu9mh.sys [0 ] (Microsoft Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-05 14:15 - 2014-01-05 14:15 - 00023711 _____ C:\Users\Patrick\Downloads\FRST.txt 2014-01-05 14:15 - 2014-01-05 14:15 - 00000000 ____D C:\FRST 2014-01-05 14:14 - 2014-01-05 14:14 - 01931368 _____ (Farbar) C:\Users\Patrick\Downloads\FRST64.exe 2014-01-05 13:49 - 2014-01-05 13:51 - 00011512 _____ C:\Windows\WindowsUpdate.log 2014-01-05 13:48 - 2014-01-05 13:48 - 00000000 ___RD C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2014-01-05 12:14 - 2014-01-05 12:14 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-01-05 12:13 - 2014-01-05 12:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-05 12:13 - 2014-01-05 12:13 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-05 12:13 - 2014-01-05 12:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-05 12:13 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-05 12:12 - 2014-01-05 12:13 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Patrick\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-05 11:44 - 2014-01-05 11:44 - 02800104 _____ (AVAST Software) C:\Users\Patrick\Downloads\avast-browser-cleanup_9.0.0.184.exe 2014-01-05 11:31 - 2014-01-05 11:32 - 01233962 _____ C:\Users\Patrick\Downloads\AdwCleaner(2).exe 2014-01-04 14:15 - 2014-01-05 11:33 - 00000000 ____D C:\AdwCleaner 2014-01-04 14:14 - 2014-01-04 14:15 - 01233962 _____ C:\Users\Patrick\Downloads\adwcleaner(1).exe 2014-01-04 13:50 - 2014-01-04 14:05 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP 2014-01-04 13:47 - 2014-01-04 13:47 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Patrick\Downloads\SpyHunter-Installer(1).exe 2014-01-04 13:40 - 2014-01-04 13:40 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\Patrick\Downloads\rkill.exe 2014-01-04 13:40 - 2014-01-04 13:40 - 01059064 _____ (Bleeping Computer, LLC) C:\Users\Patrick\Downloads\rkill64.exe 2013-12-22 21:54 - 2013-12-22 21:54 - 00000000 ____D C:\Users\Patrick\AppData\Local\PDF24 2013-12-22 21:53 - 2013-12-22 21:54 - 16189768 _____ (Geek Software GmbH ) C:\Users\Patrick\Downloads\pdf24-creator-6.2.0.exe 2013-12-20 20:25 - 2013-12-10 18:43 - 00038200 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-12-20 20:25 - 2013-12-10 18:43 - 00026936 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-12-20 20:25 - 2013-12-10 18:43 - 00022328 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2013-12-16 19:15 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-16 19:15 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-16 19:15 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-16 19:15 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-16 19:15 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-16 19:15 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-16 19:15 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-16 19:15 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-16 19:15 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-16 19:15 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-16 19:15 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-16 19:15 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-16 19:15 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-16 19:15 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-16 19:15 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-16 19:15 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-16 19:15 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-16 19:15 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-16 19:15 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-16 19:15 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-16 19:15 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-16 19:15 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-16 19:15 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-16 19:15 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-16 19:15 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-16 19:15 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-16 19:15 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-16 19:15 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-16 19:15 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-16 19:15 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-16 19:15 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-13 19:08 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-13 19:08 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-13 19:08 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-13 19:08 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-13 18:56 - 2013-12-13 18:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-13 18:56 - 2013-12-13 18:56 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-13 18:55 - 2013-12-13 18:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-13 18:55 - 2013-12-13 18:55 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-13 18:55 - 2013-12-13 18:55 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-13 18:55 - 2013-12-13 18:55 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-13 18:55 - 2013-12-13 18:55 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-13 18:55 - 2013-12-13 18:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-12 19:01 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 19:01 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 19:01 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 19:01 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 19:01 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 19:01 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 19:01 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 19:00 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 19:00 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 19:00 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 19:00 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 19:00 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 19:00 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 19:00 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 19:00 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 19:00 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 19:00 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 19:00 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 19:00 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-06 18:04 - 2013-12-06 18:04 - 00003074 _____ C:\Windows\System32\Tasks\{0AB8F4DD-73B7-4F83-B9DA-0D0C74CCCD74} ==================== One Month Modified Files and Folders ======= 2014-01-05 14:15 - 2014-01-05 14:15 - 00023711 _____ C:\Users\Patrick\Downloads\FRST.txt 2014-01-05 14:15 - 2014-01-05 14:15 - 00000000 ____D C:\FRST 2014-01-05 14:14 - 2014-01-05 14:14 - 01931368 _____ (Farbar) C:\Users\Patrick\Downloads\FRST64.exe 2014-01-05 14:08 - 2013-08-19 16:23 - 00005142 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Patrick-VAIO-Patrick Patrick-VAIO 2014-01-05 13:54 - 2009-07-14 05:45 - 00020992 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-05 13:54 - 2009-07-14 05:45 - 00020992 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-05 13:51 - 2014-01-05 13:49 - 00011512 _____ C:\Windows\WindowsUpdate.log 2014-01-05 13:49 - 2012-08-19 14:13 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\ICQ 2014-01-05 13:48 - 2014-01-05 13:48 - 00000000 ___RD C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2014-01-05 13:48 - 2012-10-22 18:29 - 00000000 ___RD C:\Users\Patrick\SkyDrive 2014-01-05 13:47 - 2013-06-24 20:37 - 00000000 ____D C:\ProgramData\Spyware Terminator 2014-01-05 13:47 - 2012-12-26 13:54 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-05 13:47 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-05 13:42 - 2012-06-05 17:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-05 13:30 - 2012-12-26 13:54 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-05 13:16 - 2012-10-14 09:39 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\Skype 2014-01-05 12:14 - 2014-01-05 12:14 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-01-05 12:13 - 2014-01-05 12:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-05 12:13 - 2014-01-05 12:13 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-05 12:13 - 2014-01-05 12:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-05 12:13 - 2014-01-05 12:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Patrick\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-05 11:44 - 2014-01-05 11:44 - 02800104 _____ (AVAST Software) C:\Users\Patrick\Downloads\avast-browser-cleanup_9.0.0.184.exe 2014-01-05 11:33 - 2014-01-04 14:15 - 00000000 ____D C:\AdwCleaner 2014-01-05 11:32 - 2014-01-05 11:31 - 01233962 _____ C:\Users\Patrick\Downloads\AdwCleaner(2).exe 2014-01-05 09:53 - 2012-10-13 09:03 - 00000000 ____D C:\Users\Patrick\AppData\Local\CrashDumps 2014-01-05 09:53 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2014-01-04 16:41 - 2013-09-30 11:11 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\vlc 2014-01-04 14:15 - 2014-01-04 14:14 - 01233962 _____ C:\Users\Patrick\Downloads\adwcleaner(1).exe 2014-01-04 14:05 - 2014-01-04 13:50 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP 2014-01-04 13:47 - 2014-01-04 13:47 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Patrick\Downloads\SpyHunter-Installer(1).exe 2014-01-04 13:40 - 2014-01-04 13:40 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\Patrick\Downloads\rkill.exe 2014-01-04 13:40 - 2014-01-04 13:40 - 01059064 _____ (Bleeping Computer, LLC) C:\Users\Patrick\Downloads\rkill64.exe 2014-01-02 13:12 - 2012-08-19 12:27 - 00000000 ____D C:\Users\Patrick\AppData\Roaming\UseNeXT 2014-01-02 12:59 - 2012-08-19 12:27 - 00000000 ___HD C:\Users\Patrick\Documents\UseNeXT 2013-12-28 11:23 - 2012-10-26 20:13 - 00000000 ____D C:\Windows\System32\Tasks\Games 2013-12-27 21:52 - 2013-11-15 19:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-24 18:28 - 2012-10-13 17:19 - 00000000 ___HD C:\Users\Patrick\Documents\WORD DOKUMENTE 2013-12-22 21:54 - 2013-12-22 21:54 - 00000000 ____D C:\Users\Patrick\AppData\Local\PDF24 2013-12-22 21:54 - 2013-12-22 21:53 - 16189768 _____ (Geek Software GmbH ) C:\Users\Patrick\Downloads\pdf24-creator-6.2.0.exe 2013-12-22 12:04 - 2013-12-04 18:33 - 00000000 ____D C:\Users\Patrick\Desktop\Neuer Ordner 2013-12-22 08:44 - 2012-08-19 10:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-20 20:25 - 2012-10-31 19:21 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-12-20 17:32 - 2012-12-26 13:54 - 00000000 ____D C:\Program Files (x86)\Google 2013-12-16 19:14 - 2013-08-15 20:55 - 00000000 ____D C:\Windows\system32\MRT 2013-12-16 19:04 - 2012-10-30 20:42 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-13 21:06 - 2012-06-05 17:30 - 00707816 _____ C:\Windows\system32\perfh007.dat 2013-12-13 21:06 - 2012-06-05 17:30 - 00151524 _____ C:\Windows\system32\perfc007.dat 2013-12-13 21:06 - 2009-07-14 06:13 - 01639292 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-13 21:05 - 2011-02-10 23:48 - 00000000 ____D C:\Windows\Panther 2013-12-13 21:02 - 2012-08-19 09:05 - 00001329 _____ C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-13 21:00 - 2009-07-14 05:45 - 00451792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-13 20:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-13 19:31 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-13 19:06 - 2012-08-19 14:34 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-13 18:56 - 2013-12-13 18:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-13 18:56 - 2013-12-13 18:56 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-13 18:55 - 2013-12-13 18:55 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-13 18:55 - 2013-12-13 18:55 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-13 18:55 - 2013-12-13 18:55 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-13 18:55 - 2013-12-13 18:55 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-13 18:55 - 2013-12-13 18:55 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-13 18:55 - 2013-12-13 18:55 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-13 18:55 - 2013-12-13 18:55 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-13 18:55 - 2013-12-13 18:55 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-12 19:43 - 2012-06-05 17:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-12 19:42 - 2012-06-05 17:31 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-12 19:42 - 2012-06-05 17:31 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-10 18:43 - 2013-12-20 20:25 - 00038200 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-12-10 18:43 - 2013-12-20 20:25 - 00026936 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-12-10 18:43 - 2013-12-20 20:25 - 00022328 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2013-12-10 18:43 - 2013-10-17 19:57 - 00030520 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2013-12-10 18:43 - 2012-10-31 19:22 - 00035640 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-12-06 19:11 - 2013-09-23 18:21 - 00003072 _____ C:\Windows\System32\Tasks\{BE1D1E0F-50BA-433F-866A-7B4C22057587} 2013-12-06 19:11 - 2013-08-31 23:33 - 00003072 _____ C:\Windows\System32\Tasks\{1E174EE4-A9AE-44F5-A7BC-246A6B64862B} 2013-12-06 18:04 - 2013-12-06 18:04 - 00003074 _____ C:\Windows\System32\Tasks\{0AB8F4DD-73B7-4F83-B9DA-0D0C74CCCD74} 2013-12-06 17:46 - 2012-08-19 09:01 - 00000000 ____D C:\Users\Patrick Some content of TEMP: ==================== C:\Users\Patrick\AppData\Local\Temp\Quarantine.exe C:\Users\Patrick\AppData\Local\Temp\SHSetup.exe C:\Users\Patrick\AppData\Local\Temp\SkypeSetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-04 11:06 ==================== End Of Log ============================ Und hier Addition.txt Code:
ATTFilter ==================== Security Center ======================== AV: Norton 360 Online (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: Norton 360 Online (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202} FW: Norton 360 Online (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} ==================== Installed Programs ====================== Adobe AIR (x32 Version: 2.7.0.19460 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 2.7.0.19460 - Adobe Systems Incorporated) Hidden Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.1.161 - ArcSoft) ArcSoft WebCam Companion 4 (x32 Version: 4.0.21.457 - ArcSoft) Ashampoo Burning Studio 2012 CBE v.11.0.4 (x32 Version: 11.0.4 - Ashampoo GmbH & Co. KG) Atheros Bluetooth Suite (64) (Version: 7.4.0.120 - Atheros) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Build-a-lot 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden CCleaner (Version: 3.21 - Piriform) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Content Manager 2 (x32 Version: 2.2.1.9986 - Harman Becker Automotive Systems) CyberLink PowerDVD (x32 Version: 9.0.5009.52 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 9.0.5009.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition (Version: - Microsoft) Druckerdeinstallation für EPSON BX300F Series (Version: - SEIKO EPSON Corporation) EPSON Scan (x32 Version: - ) FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalleri (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalleriet (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Foxit PDF Editor (x32 Version: 2.2.1.1119 - Foxit Corporation) Free YouTube Download version 3.1.41.1201 (x32 Version: 3.1.41.1201 - DVDVideoSoft Ltd.) Galeria de Fotografias (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerie foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden GIMP 2.8.10 (Version: 2.8.10 - The GIMP Team) Google Earth Plug-in (x32 Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden ICQ7M (x32 Version: 7.8 - ICQ) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.0.2.1410 - Intel Corporation) Intel(R) OpenCL CPU Runtime (x32 Version: - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 8.15.10.2626 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 11.0.0.1032 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.6.245 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.23.605.1 - Intel Corporation) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java 7 Update 9 (64-bit) (Version: 7.0.90 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden KUx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Media Gallery (Version: 2.1.0.13300 - Sony Corporation) Media Go (x32 Version: 2.0.317 - Sony) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Access MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft DCF MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Excel MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Groove MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft InfoPath MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Lync MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office OSM UX MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared 32-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft OneNote MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Outlook MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft PowerPoint MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Publisher MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SkyDrive (HKCU Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Word MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden Naviextras Toolbox Prerequesities (x32 Version: 1.0.0 - Nav N Go Ltd.) No23 Recorder (x32 Version: 2.1.0.3 - No23) Norton 360 (x32 Version: 20.4.0.40 - Symantec Corporation) Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden PDF Architect (x32 Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (x32 Version: 1.7.2 - pdfforge) Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PlayMemories Home/PMB VAIO Edition Plug-in 3D Theme Data (x32 Version: 1.0.00.16130 - Sony Corporation) Hidden PlayMemories Home/PMB VAIO Edition Plug-in Ver.2.2 Upgrade Program (x32 Version: 2.2.00.18250 - Sony Corporation) Hidden Poczta usługi Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Putzi 4 Win 1.6.007 (x32 Version: - ) PYV_x86 (x32 Version: 1.0.0 - Sony Corporation) Hidden Qualcomm Atheros Direct Connect (x32 Version: 3.1 - Qualcomm Atheros) Hidden Qualcomm Atheros WiFi Driver Installation (x32 Version: 3.0 - Qualcomm Atheros) Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (x32 Version: 6.0.1.6570 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (x32 Version: 6.1.7601.92 - Realtek Semiconductor Corp.) Remote Keyboard (x32 Version: 1.2.0.09270 - Sony Corporation) Hidden Remote Play with PlayStation(R)3 (x32 Version: 1.1.0.21090 - Sony Corporation) Hidden Revo Uninstaller 1.95 (x32 Version: 1.95 - VS Revo Group) SDExplorer 3.1 (Version: 3.1 - CloudStorageExplorer.com) Skype™ 6.5 (x32 Version: 6.5.158 - Skype Technologies S.A.) Spybot - Search & Destroy (x32 Version: 2.0.12 - Safer-Networking Ltd.) Spyware Terminator 2012 (x32 Version: 3.0.0.82 - Crawler.com) SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden Synaptics Pointing Device Driver (Version: 15.3.45.0 - Synaptics Incorporated) TeamViewer 8 (x32 Version: 8.0.20935 - TeamViewer) The Hidden Object Game Show (x32 Version: 2.2.0.97 - WildTangent) Hidden Tipard MKV Video Converter 6.1.26 (x32 Version: - ) TrackID(TM) with BRAVIA (x32 Version: 1.2.0.09270 - Sony Corportaion) Hidden TrueCrypt (x32 Version: 7.1a - TrueCrypt Foundation) TuneUp Utilities 2013 (x32 Version: 13.0.4000.179 - TuneUp Software) TuneUp Utilities 2013 (x32 Version: 13.0.4000.179 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.179 - TuneUp Software) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft Access 2013 (KB2768008) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Access 2013 (KB2827233) 64-Bit Edition (Version: - Microsoft) Update for Microsoft InfoPath 2013 (KB2837648) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2817678) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726954) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760539) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760553) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817314) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817316) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 64-Bit Edition (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 64-Bit Edition (Version: - Microsoft) Update for Microsoft PowerPoint 2013 (KB2767850) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Publisher 2013 (KB2837635) 64-Bit Edition (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 64-Bit Edition (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Visio 2013 (KB2817306) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Word 2013 (KB2837647) 64-Bit Edition (Version: - Microsoft) Update for Microsoft Word 2013 (KB2850060) 64-Bit Edition (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden USB Multi-Channel Audio Device (Version: - ) UseNeXT by Tangysoft (x32 Version: - Tangysoft Ltd.) VAIO - Microsoft Visual C++ 2010 SP1 Runtime 10.0.40219.325 (Version: 1.0.00.01300 - Sony Corporation) VAIO - PlayMemories Home Plug-in (Version: 2.0.01.03310 - Sony Corporation) VAIO - PlayMemories Home Plug-in (x32 Version: 2.2.00.18250 - Sony Corporation) VAIO - Remote Play mit PlayStation®3 (x32 Version: 1.1.0.21090 - Sony Corporation) VAIO - Remote-Tastatur (x32 Version: 1.2.0.09270 - Sony Corporation) VAIO - Remote-Tastatur mit PlayStation®3 (x32 Version: 1.2.0.09210 - Sony Corporation) VAIO - TrackID™ mit BRAVIA (x32 Version: 1.2.0.09270 - Sony Corporation) VAIO Care (Version: 8.1.0.10120 - Sony Corporation) VAIO Control Center (x32 Version: 5.2.1.15070 - Sony Corporation) VAIO Data Restore Tool (x32 Version: 1.9.0.13190 - Sony Corporation) Hidden VAIO Easy Connect (x32 Version: 1.1.2.01120 - Sony Corporation) VAIO Easy Connect (x32 Version: 1.1.2.01120 - Sony Corporation) Hidden VAIO Gate (x32 Version: 2.4.1.09230 - Sony Corporation) Hidden VAIO Gate (x32 Version: 2.4.2.02200 - Sony Corporation) VAIO Gate Default (x32 Version: 2.5.2.02090 - Sony Corporation) VAIO Gesture Control (x32 Version: 1.0.0.12300 - Sony Corporation) VAIO Gesture Control (x32 Version: 1.0.0.12300 - Sony Corporation) Hidden VAIO Improvement (x32 Version: 1.3.0.12280 - Sony Corporation) VAIO Improvement Validation (Version: 1.0.4.01190 - Sony Corporation) VAIO Sample Contents (x32 Version: 1.4.2.09010 - Sony Corporation) VAIO Smart Network (x32 Version: 3.14.1.07010 - Sony Corporation) VAIO Transfer Support (x32 Version: 1.7.1.06040 - Sony Corporation) VAIO Update (x32 Version: 6.3.0.08010 - Sony Corporation) VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200 - Sony Corporation) VAIO-Handbuch (x32 Version: 2.3.0.12300 - Sony Corporation) Valokuvavalikoima (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VGClientX64 (Version: 1.0.0 - Sony Corporation) Hidden VGClientX86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VHD (x32 Version: 1.0.0 - Microsoft) Hidden Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VIx64 (Version: 1.0.0 - Sony Corporation) Hidden VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VLC media player 2.0.2 (Version: 2.0.2 - VideoLAN) VLC media player 2.0.8 (x32 Version: 2.0.8 - VideoLAN) VMLx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSNx64 (Version: 1.0.0 - Sony Corporation) Hidden VSNx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VSSTx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden WildTangent Games App (x32 Version: 4.0.5.36 - WildTangent) Hidden WildTangent-Spiele (x32 Version: 1.0.2.5 - WildTangent) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3505.0912 - společnost Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3505.0912 - Корпорація Майкрософт) Hidden Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Liven peruspaketti (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Liven sähköposti (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137 - Buhl Data Service GmbH) Συλλογή φωτογραφιών (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Основи Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 16.4.3505.0912 - Корпорация Майкрософт) Hidden Фотоальбом (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотогалерия (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотоколекція (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 07-12-2013 23:35:13 Windows Update 10-12-2013 18:56:14 Windows Update 13-12-2013 17:29:42 Windows Update 16-12-2013 18:02:58 Windows Update 24-12-2013 10:35:10 Geplanter Prüfpunkt 04-01-2014 10:11:25 Geplanter Prüfpunkt 04-01-2014 12:15:45 Removed PDF Split And Merge Basic 04-01-2014 12:50:42 Installed SpyHunter 04-01-2014 13:05:01 Removed SpyHunter ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {02C86FF4-2F2E-4E66-975B-DB856F70020B} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-08-01] (Sony Corporation) Task: {088806A1-B124-4C9B-9243-67030B462EAD} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {0A9BC05B-9B36-4B99-8D5A-9208B5AC2A35} - \Desk 365 RunAsStdUser No Task File Task: {0E2D9836-649F-48DA-9AB5-0F3CFF20A33C} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {10FC0811-D4E4-4CB8-84A3-9BEC729A62DD} - \Omiga Plus RunAsStdUser No Task File Task: {12135B4C-CEB8-4927-A955-6CE442BD8A36} - System32\Tasks\Sony Corporation\VAIO Care\VAU => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: {1CAC0253-505C-437E-888A-C4603FF26194} - System32\Tasks\Sony Corporation\VAIO Improvement Validation\VAIO Improvement Validation => C:\Program Files\Sony\VAIO Improvement Validation\viv.exe [2011-01-20] (Sony Corporation) Task: {1DDFE875-BBEE-434C-87B0-EB216E2C179F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-26] (Google Inc.) Task: {20F99578-2E56-4636-9CAB-3036C8B89705} - System32\Tasks\Sony Corporation\VAIO Update\VUSU Trigger Task => C:\Program Files\Sony\VAIO Update\VUSUTrigger.exe [2013-08-01] (Sony Corporation) Task: {23446172-8AEF-4E0D-944B-A74839D40E0B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {259744E2-9779-455D-A8AD-4DDF866C826D} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {2D6CE8F4-4BDD-4CF3-B9EC-DC11CD25BC70} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-03-07] (Sony Corporation) Task: {34CA5A23-BE16-4F98-ADE6-00CCFF9943E0} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\symerr.exe [2013-06-04] (Symantec Corporation) Task: {3525570B-3B7C-411C-B572-CB799E767A98} - System32\Tasks\{1E174EE4-A9AE-44F5-A7BC-246A6B64862B} => Firefox.exe hxxp://ui.skype.com/ui/0/6.6.0.106/de/abandoninstall?page=tsMain Task: {359F8D4A-154C-48A4-8C94-DAD1BA22F99E} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-02-20] (Sony Corporation) Task: {49382740-DD94-4481-88EE-19AC61467B4D} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\wscstub.exe [2013-06-04] (Symantec Corporation) Task: {4A17D8AF-9466-41C2-A14E-4E1BB7C66906} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-07-24] (Piriform Ltd) Task: {50924485-340E-45E7-A9D4-64281A90986F} - System32\Tasks\Sony Corporation\VAIO Smart Network\VSN Logon Start => net Task: {51F059F1-9650-43A4-9EF4-08202A1BB6B3} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {52C81152-43A8-40AA-8E8F-2FBBE992811C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12] (Adobe Systems Incorporated) Task: {59CCB333-B1B7-4CD3-9EA5-741C7816B3CB} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-02-24] (Sony Corporation) Task: {5C6D5AC6-57C1-4C07-8D37-95707260006A} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-08-01] (Sony Corporation) Task: {5C8D69BA-D739-4830-AE4B-42E9EAB9A598} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-26] (Google Inc.) Task: {5DB2CDAC-7AEE-48A4-AA35-1F40C5C04853} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-03-29] (Sony Corporation) Task: {5FC400FE-F86C-41CA-9B4D-83A5CB20BA3E} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3052664640-68266929-2489296270-1001 Task: {6125E6CC-B572-4D29-A438-6750824C1DED} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: {62AAD2EF-35CD-4DF8-847F-6AA7E469605F} - System32\Tasks\Sony Corporation\VAIO Gate\StartExecuteProxy => C:\Program Files\Sony\VAIO Gate\ExecutionProxy.exe [2012-02-20] (Sony Corporation) Task: {68C16224-E343-4EE0-9A40-2A04AB6A2DF1} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-03-07] (Sony Corporation) Task: {8155ECB6-7806-4DBB-A498-7C160C758E67} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\symerr.exe [2013-06-04] (Symantec Corporation) Task: {84B1E480-6608-4541-8F5F-4E3EAC0EB306} - System32\Tasks\{0AB8F4DD-73B7-4F83-B9DA-0D0C74CCCD74} => Firefox.exe hxxp://ui.skype.com/ui/0/6.11.0.102/de/abandoninstall?page=tsMain Task: {85772EF9-6676-4072-A186-D3CD06FC66FA} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: {91012388-6E9F-4D64-8931-4F7DA86475D1} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate Restart => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-02-20] (Sony Corporation) Task: {A0D579D1-CD93-407A-97D7-EE88BB1A0621} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: {AE3BAFD7-912D-4D44-A9BC-C354E22B45C2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {B0528894-8359-4262-815C-DD5827696596} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2011-12-27] (Sony Corporation) Task: {B3997132-4CAA-4DCE-99DF-7F26D51E2FD4} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2011-12-27] (Sony Corporation) Task: {B54D7BF7-3026-4EEA-BCC9-F3277B755CF6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {BAF8EC40-87DE-456B-B762-B13C3C75C9F4} - System32\Tasks\{BE1D1E0F-50BA-433F-866A-7B4C22057587} => Firefox.exe hxxp://ui.skype.com/ui/0/6.7.0.102/de/abandoninstall?page=tsMain Task: {BED45290-88DF-4E42-BFE7-14DD12F16919} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-03-29] (Sony Corporation) Task: {C1DA45B7-865A-4F61-B304-D6261189AC98} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {C2566AFD-DFC7-4434-ACCA-8F96EA7252CC} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [2013-12-10] (TuneUp Software) Task: {C78B10FC-E33E-4FE5-A607-3E4E59321AC4} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Patrick-VAIO-Patrick Patrick-VAIO => C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE [2013-09-10] (Microsoft Corporation) Task: {E6A879FA-CF41-444B-8BBD-467776BFC1CF} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: {EC6D2B07-02BE-4D64-8B4A-15E492AE9E25} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-10-12] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-03-15 20:57 - 2012-03-14 09:36 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-12-02 13:38 - 2012-11-13 14:06 - 00108960 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2012-12-02 13:38 - 2012-11-13 14:06 - 00416160 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2012-12-02 13:38 - 2012-11-13 14:06 - 00158624 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2012-12-02 13:38 - 2012-08-23 09:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2012-12-02 13:38 - 2012-11-13 14:06 - 00528288 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\JSDialogPack150.bpl 2012-06-05 17:22 - 2012-03-07 17:57 - 00021128 _____ () C:\Program Files (x86)\Sony\VAIO Control Center\VESBasePS.dll 2013-07-06 07:58 - 2012-05-30 07:51 - 00699280 ____R () C:\PROGRAM FILES (X86)\NORTON 360\ENGINE\20.4.0.40\wincfi39.dll 2012-12-02 13:38 - 2012-11-13 14:06 - 00554400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl 2012-10-31 10:45 - 2009-10-20 10:03 - 00491520 _____ () C:\Windows\system\CmAu106.dll 2013-11-15 19:10 - 2013-12-21 08:28 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-07-06 07:58 - 2012-05-30 07:51 - 00699280 ____R () C:\Program Files (x86)\Norton 360\Engine\20.4.0.40\wincfi39.dll 2013-08-18 19:16 - 2013-08-18 19:16 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\991a8d378a3e64b31c0f4770ba9ae071\IsdiInterop.ni.dll 2012-06-05 16:56 - 2011-11-29 19:00 - 00059392 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2012-06-05 16:54 - 2012-02-07 16:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Patrick\Downloads\GoogleEarthPluginSetup.exe:BDU AlternateDataStreams: C:\Users\Patrick\Downloads\ICQ_7.8_Build__6800_Banner_Remover_1.0_Setup.exe:BDU ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= Name: USB2.0 Camera Description: USB-Videogerät Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Microsoft Service: usbvideo Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/05/2014 01:47:35 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/05/2014 00:06:17 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (01/05/2014 00:06:17 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (01/05/2014 11:36:00 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/05/2014 09:53:25 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 04:45:47 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: DLLHOST.EXE, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bca54 Name des fehlerhaften Moduls: igdumd64.dll, Version: 8.15.10.2626, Zeitstempel: 0x4f177ec1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000030d136 ID des fehlerhaften Prozesses: 0x1c6c Startzeit der fehlerhaften Anwendung: 0xDLLHOST.EXE0 Pfad der fehlerhaften Anwendung: DLLHOST.EXE1 Pfad des fehlerhaften Moduls: DLLHOST.EXE2 Berichtskennung: DLLHOST.EXE3 Error: (01/04/2014 02:20:31 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 00:29:15 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: vlc.exe, Version: 2.0.8.0, Zeitstempel: 0x51f83c55 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc0000374 Fehleroffset: 0x000ce753 ID des fehlerhaften Prozesses: 0xe9c Startzeit der fehlerhaften Anwendung: 0xvlc.exe0 Pfad der fehlerhaften Anwendung: vlc.exe1 Pfad des fehlerhaften Moduls: vlc.exe2 Berichtskennung: vlc.exe3 Error: (01/04/2014 09:26:34 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/02/2014 11:57:43 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (01/05/2014 01:45:01 PM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (01/05/2014 00:36:28 PM) (Source: VDS Basic Provider) (User: ) Description: Unerwarteter Fehler. Fehlercode: 490@01010004 Error: (01/05/2014 10:53:39 AM) (Source: VDS Basic Provider) (User: ) Description: Unerwarteter Fehler. Fehlercode: 490@01010004 Error: (01/04/2014 08:32:44 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (01/04/2014 03:20:37 PM) (Source: VDS Basic Provider) (User: ) Description: Unerwarteter Fehler. Fehlercode: 490@01010004 Error: (01/04/2014 02:18:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%109 Error: (01/04/2014 02:18:42 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Virtueller Datenträger" ist vom Dienst "Plug & Play" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1062 Error: (01/04/2014 02:18:42 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%109 Error: (01/04/2014 02:18:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\AthIhvWlanExt.dll Error: (01/04/2014 02:18:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\AthIhvWlanExt.dll Microsoft Office Sessions: ========================= Error: (10/14/2012 05:58:50 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6423.1000, Microsoft Office Version: 12.0.6425.1000. This session lasted 845 seconds with 720 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-01-30 21:36:09.231 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00176_006\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-30 21:25:20.400 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00176_006\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-30 21:16:02.008 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00176_006\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-30 20:12:04.468 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00176_006\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-30 19:59:25.709 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00176_006\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-30 19:39:22.324 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00175_005\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-29 21:23:01.671 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00175_005\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-29 21:09:31.844 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00175_005\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-29 21:00:13.330 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00175_005\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-01-29 20:45:29.456 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender 2013\active virus control\Avc3_00175_005\avcuf64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 59% Total physical RAM: 3996.33 MB Available physical RAM: 1599.21 MB Total Pagefile: 7990.84 MB Available Pagefile: 5142.9 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:448.63 GB) (Free:317.57 GB) NTFS Drive z: () (Fixed) (Total:931.51 GB) (Free:772.96 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: 2377D4D3) Partition 1: (Not Active) - (Size=17 GB) - (Type=27) Partition 2: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 932 GB) (Disk ID: E8900690) Partition 1: (Active) - (Size=932 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
06.01.2014, 12:37 | #4 | |
/// the machine /// TB-Ausbilder | PlusHD.8 lässt sich nicht deinstallierenCombofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu PlusHD.8 lässt sich nicht deinstallieren |
aktuell, antispy, deinstalliere, deinstallieren, deinstalliert, eigenschaften, einstellungen, firefox, gestartet, hallo zusammen, komisch, leere, merkwürdige, nutze, programm, programme, seite, spybot, spyware, tagen, versuche, werbung, windows, windows 7, zusammen |