|
Plagegeister aller Art und deren Bekämpfung: YTBookMark Chrome Extension, hartnäckig im SystemWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
06.01.2014, 13:34 | #1 |
| YTBookMark Chrome Extension, hartnäckig im System Hallo zusammen! Seit gut 2 Tagen habe ich im Chrome Browser eine Erweiterung die ich niemals installiert habe und die sich auch nicht löschen lässt. Selbst Google scheint sie (noch) nicht zu kennen: YTBookMark 1.1 (Rechte: - Auf Ihre Daten auf allen Websites zugreifen - Auf Ihre Tabs und Browseraktivitäten zugreifen - Apps, Erweiterungen und Designs verwalten) Wenn ich es deaktiviere oder lösche, ist es beim nächsten Chromestart wieder da. Was ich bisher versucht habe:
Durch AVG wurde ich auf die Dateien YTBMK. aufmerksam, kann ich nicht mehr an die Endungen erinnern, sind aber jetzt auch alle in Quarantäne, bzw. gelöscht. Hijackthis erkannte mehrere Einträge, die gefixt wurden und jetzt nicht mehr auftauchen. Alles in Allem: Sämtliche o.g. Software kann keinerlei Einträge mehr erkennen oder fixen. Trotzdem werde ich das YTBookMark nicht los. Kann jemand helfen? |
06.01.2014, 14:30 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | YTBookMark Chrome Extension, hartnäckig im System Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
06.01.2014, 14:56 | #3 |
| YTBookMark Chrome Extension, hartnäckig im System Alte Logs habe ich leider nicht mehr, bin erst später auf das Trojaner-Board aufmerksam geworden.. Hier die FarbarLogs:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014 Ran by mm (administrator) on EILO on 06-01-2014 14:46:08 Running from C:\Users\mm\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe (Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Box, Inc.) C:\Program Files\Box Sync\BoxSyncHelper.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (FileZilla Project) C:\Program Files (x86)\FileZilla Server\FileZilla server.exe () C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\extensions\startup.service@mozilla.com\svc.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe ( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe (CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe (CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Box, Inc.) C:\Program Files\Box Sync\BoxSync.exe (Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe (Dropbox, Inc.) C:\Users\mm\AppData\Roaming\Dropbox\bin\Dropbox.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe () C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe (Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqgpc01.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (FileZilla Project) C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [444904 2012-09-20] (Adobe Systems Incorporated) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM\...\Run: [BoxSyncHelper] - C:\Program Files\Box Sync\BoxSyncHelper.exe [393216 2013-02-21] (Box, Inc.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM-x32\...\Run: [HPCam_Menu] - C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.) HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard) HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-09-11] (DivX, LLC) HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\Hp\Digital Imaging\bin\HpqSRmon.exe [150528 2008-07-22] (Hewlett-Packard) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] () HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe [3478392 2013-09-05] (Adobe Systems Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [HOSTS Anti-Adware_PUPs] - C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware_main.exe HKCU\...\Run: [D72BA4079F02367E5EFB3850EE47A8C26F90BD3F._service_run] - C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe [863184 2013-12-04] (Google Inc.) MountPoints2: {2b0bd61c-5f4d-11e0-b393-00158316161f} - I:\LaunchU3.exe MountPoints2: {592f9489-56af-11df-8c3c-00158316161f} - H:\LaunchU3.exe -a MountPoints2: {5985248d-5637-11df-88bd-00158316161f} - G:\data\start.exe HKU\Gast\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-08-16] (Hewlett-Packard Company) HKU\Gast\...\Policies\system: [DisableLockWorkstation] 0 HKU\Gast\...\Policies\system: [DisableChangePassword] 0 AppInit_DLLs: C:\Program Files (x86)\GS-Enabler\Assistant_x64.dll [2759168 2014-01-03] () Startup: C:\Users\mm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\mm\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) BootExecute: autocheck autochk * ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.msn.com/?ocid=OIE9MSE&PC=UP09 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {51B4919D-2C23-4C33-98F8-74F051C2D01E} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {AE066C9D-2F9A-4609-9728-D2DDF053D666} URL = BHO: SNT - {78919CD5-C81D-2C34-F86F-BA7B7F344B53} - C:\Program Files (x86)\SNT\4Hd.x64.dll () BHO: greatesuaveR - {8FB178F6-9E0D-EA1F-4FC2-EA472B8977DA} - C:\Program Files (x86)\greatesuaveR\x.x64.dll () BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\Hp\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\Hp\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=1.1.9 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\mm\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\mm\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\mm\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\mm\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\mm\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: SNT - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\aj-gjsq@f-q.co.uk FF Extension: gReiatsaver - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\jttm3iya@eooo-zv.co.uk FF Extension: NetVideoHunter - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\netvideohunter@netvideohunter.com FF Extension: startup.service - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\startup.service@mozilla.com FF Extension: YoutubeAdblocker - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\yoaa9kk8@jtbmeeiaeoai.org FF Extension: FireShot - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} FF Extension: HP Detect - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2} FF Extension: Bitdefender QuickScan - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} FF Extension: Page Speed - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{e3f6c2cc-d8db-498c-af6c-499fb211db97} FF Extension: CMS Backend Opener - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\cmsbackendopener@andreas-ratke.de.xpi FF Extension: Firebug - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\firebug@software.joehewitt.com.xpi FF Extension: Joomla! Admin - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\joomla-admin@mozilla.org.xpi FF Extension: RSS Icon In Awesombar - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\rssicon@jasnapaka.com.xpi FF Extension: SEO For Firefox - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\seo4firefox@seobook.com.xpi FF Extension: YSlow - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\yslow@yahoo-inc.com.xpi FF Extension: Screengrab - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{02450954-cdd9-410f-b1da-db804e18c671}.xpi FF Extension: Google Cache Tool - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{3869b071-0fae-4c75-948a-60d9c56ea02b}.xpi FF Extension: FireFTP - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}.xpi FF Extension: Web Developer - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi FF Extension: Adblock Plus - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: BetterPrivacy - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi FF Extension: Download Statusbar - C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi FF Extension: Modul zur Link-Untersuchung - C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2 FF Extension: Skype extension - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA} FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 Chrome: ======= CHR HomePage: hxxp://www.google.de/ig?hl=de&source=iglk CHR RestoreOnStartup: "hxxp://www.google.de/" CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.374_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft\u00AE Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation) CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll No File CHR Plugin: (2007 Microsoft Office system) - C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Microsoft SharedView Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\npsharedview.dll ( ) CHR Plugin: (Google Talk Plugin) - C:\Users\mm\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) CHR Plugin: (Google Talk Plugin Video Accelerator) - C:\Users\mm\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (VLC Multimedia Plug-in) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) CHR Plugin: (WildTangent Games App Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll No File CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Extension: (Google Drive) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Firebug Lite for Google Chrome\u2122) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench\1.4.0.11967_0 CHR Extension: (Pushbullet) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd\12_0 CHR Extension: (Webpage Screenshot Bar) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki\13.6_0 CHR Extension: (Google Search) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (YTBookMarK) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\dedecafcifgbfmboppgcpoplonbjoffa\1.1 CHR Extension: (Adobe Acrobat - Create PDF) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj\11.0.3.37_0 CHR Extension: (AdBlock) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0 CHR Extension: (Google Keep) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki\2.0.13513.1396_0 CHR Extension: (colorPicker 0.9) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\jegimleidpfmpepbfajjlielaheedkdo\0.9.90_0 CHR Extension: ( "name": "YSlow") - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ninejjcohidippngpapiilnmkgllmakh\3.1.2_0 CHR Extension: (Google Wallet) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0 CHR Extension: (AT_JonKlassen) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ongpanemeecnjkgjcheffafbglnpgood\2_0 CHR Extension: (Gmail) - C:\Users\mm\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx CHR HKLM-x32\...\Chrome\Extension: [mnmkabhkheikmcfieenfbfhikpigjldi] - C:\Users\mm\AppData\Local\Social Anywhere\Chrome\Social Anywhere.crx CHR StartMenuInternet: Google Chrome - C:\Users\mm\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1358944 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 e81a9dc1; C:\Windows\system32\rundll32.exe [45568 2009-07-14] (Microsoft Corporation) R2 e81a9dc1; C:\Windows\SysWow64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) R2 FileZilla Server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [742912 2010-10-17] (FileZilla Project) R2 Firefox Service; C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Profiles\ljyqtve0.default\extensions\startup.service@mozilla.com\svc.exe [83456 2011-03-10] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [80896 2011-03-31] () R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] () R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.) R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x] S2 HOSTS Anti-PUPs; C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe -update [x] ==================== Drivers (Whitelisted) ==================== R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.) R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17088 2013-12-23] (Glarysoft Ltd) S4 LMIRfsClientNP; No ImagePath R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) S3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [31744 2009-01-09] (Research in Motion Ltd) S3 StarOpen; No ImagePath R2 {55662437-DA8C-40c0-AADA-2C816A897A49}; c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl [146928 2009-10-16] (CyberLink Corp.) S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [x] S3 BlueletSCOAudio; system32\DRIVERS\BlueletSCOAudio.sys [x] S3 BT; system32\DRIVERS\btnetdrv.sys [x] S3 Btcsrusb; System32\Drivers\btcusb.sys [x] S0 BTHidEnum; System32\Drivers\vbtenum.sys [x] S0 BTHidMgr; System32\Drivers\BTHidMgr.sys [x] S2 LMIInfo; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [x] S3 LVPr2M64; system32\DRIVERS\LVPr2M64.sys [x] S3 VComm; system32\DRIVERS\VComm.sys [x] S3 VcommMgr; System32\Drivers\VcommMgr.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-06 14:46 - 2014-01-06 14:47 - 00034923 _____ C:\Users\mm\Downloads\FRST.txt 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\FRST 2014-01-06 14:45 - 2014-01-06 14:45 - 01931762 _____ (Farbar) C:\Users\mm\Downloads\FRST64.exe 2014-01-06 14:27 - 2014-01-06 14:29 - 00000000 ____D C:\Users\mm\Downloads\joomla321 2014-01-06 14:26 - 2014-01-06 14:27 - 09782558 _____ C:\Users\mm\Downloads\Joomla_3.2.1-Stable-Full_Package_German.zip 2014-01-06 12:53 - 2014-01-06 12:53 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2014-01-06 12:26 - 2014-01-06 12:59 - 00000000 ____D C:\AdwCleaner 2014-01-06 12:26 - 2014-01-06 12:26 - 01233962 _____ C:\Users\mm\Downloads\adwcleaner.exe 2014-01-05 21:56 - 2014-01-05 21:56 - 04645232 _____ (Piriform Ltd) C:\Users\mm\Downloads\ccsetup409.exe 2014-01-05 19:53 - 2014-01-05 22:24 - 00039475 _____ C:\Users\mm\Documents\FLB1_14.nlgp 2014-01-04 07:18 - 2014-01-04 07:19 - 01376768 _____ C:\Users\mm\Downloads\7_Zip_(64bit)_v9.20.msi 2014-01-04 07:13 - 2014-01-06 12:44 - 00000328 _____ C:\Windows\Tasks\GlaryInitialize 4.job 2014-01-04 07:13 - 2014-01-04 07:13 - 00002610 _____ C:\Windows\System32\Tasks\GlaryInitialize 4 2014-01-04 07:13 - 2014-01-04 07:13 - 00001040 _____ C:\Users\Public\Desktop\Glary Utilities 4.lnk 2014-01-04 07:13 - 2014-01-04 07:13 - 00000000 ____D C:\ProgramData\GlarySoft 2014-01-04 07:13 - 2013-12-24 03:06 - 00117024 _____ (Glarysoft Ltd) C:\Windows\system32\BootDefrag.exe 2014-01-04 07:13 - 2013-12-23 05:01 - 00017088 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\BootDefragDriver.sys 2014-01-04 07:12 - 2014-01-06 12:52 - 00000000 ____D C:\Program Files (x86)\Glary Utilities 4 2014-01-04 07:12 - 2014-01-04 07:12 - 11946800 _____ C:\Users\mm\Downloads\gu4setup.exe 2014-01-04 07:09 - 2014-01-04 07:09 - 00000000 __SHD C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-01-04 07:07 - 2014-01-04 07:08 - 78388136 _____ (AVG) C:\Users\mm\Downloads\avg_tuh_stf_all_2014_204_24c4.exe 2014-01-03 23:51 - 2014-01-03 23:51 - 00000000 ____D C:\Users\mm\AppData\Roaming\AVG2014 2014-01-03 23:50 - 2014-01-03 23:50 - 00000941 _____ C:\Users\Public\Desktop\AVG 2014.lnk 2014-01-03 23:50 - 2014-01-03 23:50 - 00000000 ____D C:\Users\mm\AppData\Roaming\TuneUp Software 2014-01-03 23:49 - 2014-01-03 23:51 - 00000000 ____D C:\ProgramData\AVG2014 2014-01-03 23:49 - 2014-01-03 23:49 - 00000000 ___HD C:\$AVG 2014-01-03 23:49 - 2014-01-03 23:49 - 00000000 ____D C:\Program Files (x86)\AVG 2014-01-03 23:41 - 2014-01-06 13:56 - 00000000 ____D C:\ProgramData\MFAData 2014-01-03 23:41 - 2014-01-03 23:53 - 00000000 ____D C:\Users\mm\AppData\Local\Avg2014 2014-01-03 23:41 - 2014-01-03 23:41 - 04436952 _____ (AVG Technologies) C:\Users\mm\Downloads\avg_isct_stb_all_2014_4259.exe 2014-01-03 23:41 - 2014-01-03 23:41 - 00000000 ____D C:\Users\mm\AppData\Local\MFAData 2014-01-03 21:31 - 2014-01-03 21:31 - 00011596 _____ C:\Users\mm\Downloads\de-de_joomcareer (1).zip 2014-01-03 20:52 - 2014-01-03 20:52 - 00020626 _____ C:\Users\mm\Downloads\Download (3) 2014-01-03 20:52 - 2014-01-03 20:52 - 00020626 _____ C:\Users\mm\Downloads\Download (2) 2014-01-03 20:48 - 2014-01-04 01:20 - 00000000 ____D C:\ProgramData\SNT 2014-01-03 20:48 - 2014-01-04 01:01 - 00000000 ____D C:\Program Files (x86)\SNT 2014-01-03 20:47 - 2014-01-06 12:42 - 00000434 ____H C:\Windows\Tasks\GS-Enabler-S-960308484.job 2014-01-03 20:47 - 2014-01-03 20:47 - 00002680 _____ C:\Windows\System32\Tasks\GS-Enabler-S-960308484 2014-01-03 20:46 - 2014-01-03 20:46 - 00000000 ____D C:\Program Files (x86)\GS-Enabler 2014-01-03 20:45 - 2014-01-04 01:15 - 00000000 ____D C:\ProgramData\greatesuaveR 2014-01-03 20:45 - 2014-01-04 00:49 - 00000000 ____D C:\Program Files (x86)\greatesuaveR 2014-01-03 20:45 - 2014-01-03 20:48 - 00000000 ____D C:\ProgramData\83ca9e87cfa0a61b 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\mm\AppData\Local\Packages 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\mm\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator 2014-01-03 20:44 - 2014-01-03 20:44 - 00020626 _____ C:\Users\mm\Downloads\Download (1) 2014-01-03 20:10 - 2014-01-03 20:10 - 00355699 _____ C:\Users\mm\Downloads\com_joomcareer_1.2.zip 2014-01-03 07:59 - 2014-01-03 20:48 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-03 07:58 - 2014-01-03 07:58 - 00020626 _____ C:\Users\mm\Downloads\Download 2013-12-31 21:04 - 2013-12-31 22:54 - 00009387 _____ C:\Users\mm\Desktop\Pellets 2013.xlsx 2013-12-29 21:41 - 2013-12-30 19:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-29 13:36 - 2013-12-29 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-21 20:48 - 2013-12-21 20:48 - 00001456 _____ C:\Users\mm\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2013-12-16 12:18 - 2014-01-05 21:28 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2013-12-16 12:18 - 2013-12-16 12:18 - 10251544 _____ (BlueStack Systems Inc.) C:\Users\mm\Downloads\BlueStacks-SplitInstaller_native_0.8.3.exe 2013-12-11 12:44 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 12:44 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 12:44 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 12:44 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 12:42 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-11 12:42 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-11 12:42 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-11 12:42 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-11 12:42 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-11 12:42 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-11 12:42 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-11 12:42 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-11 12:42 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-11 12:42 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-11 12:42 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-11 12:42 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-11 12:42 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-11 12:42 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-11 12:42 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-11 12:42 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-11 12:42 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-11 12:42 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-11 12:42 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-11 12:42 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-11 12:42 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-11 12:42 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-11 12:42 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-11 12:42 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-11 12:42 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-11 12:42 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-11 12:42 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-11 12:42 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-11 12:42 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-11 12:42 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-11 12:42 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 11:54 - 2013-12-11 11:54 - 00000000 ____D C:\Users\mm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Star Finanz 2013-12-11 11:54 - 2013-12-11 11:54 - 00000000 ____D C:\Program Files (x86)\SEPA Account Converter 2013-12-11 11:53 - 2013-12-11 11:54 - 02732544 _____ C:\Users\mm\Downloads\SEPA_Account_Converter.msi 2013-12-11 11:48 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 11:48 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 11:48 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 11:48 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 11:48 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 11:48 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 11:48 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 11:48 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 11:48 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 11:47 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 11:47 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 11:47 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 11:47 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 11:47 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 11:47 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 11:47 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 11:47 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 11:47 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 11:47 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys ==================== One Month Modified Files and Folders ======= 2014-01-06 14:47 - 2014-01-06 14:46 - 00034923 _____ C:\Users\mm\Downloads\FRST.txt 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\FRST 2014-01-06 14:45 - 2014-01-06 14:45 - 01931762 _____ (Farbar) C:\Users\mm\Downloads\FRST64.exe 2014-01-06 14:44 - 2010-11-05 19:05 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000UA.job 2014-01-06 14:44 - 2010-11-05 19:05 - 00001056 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000Core.job 2014-01-06 14:40 - 2012-04-26 11:52 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-06 14:32 - 2010-05-17 06:44 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-06 14:29 - 2014-01-06 14:27 - 00000000 ____D C:\Users\mm\Downloads\joomla321 2014-01-06 14:27 - 2014-01-06 14:26 - 09782558 _____ C:\Users\mm\Downloads\Joomla_3.2.1-Stable-Full_Package_German.zip 2014-01-06 14:27 - 2010-04-15 19:33 - 00000000 ____D C:\Users\mm\AppData\Roaming\FileZilla 2014-01-06 14:04 - 2010-11-15 01:18 - 00003902 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{1C46645B-DFB4-489D-ABC1-E62B212BEDAF} 2014-01-06 14:01 - 2011-03-24 10:38 - 01613861 _____ C:\Windows\WindowsUpdate.log 2014-01-06 13:56 - 2014-01-03 23:41 - 00000000 ____D C:\ProgramData\MFAData 2014-01-06 13:32 - 2010-05-17 06:44 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-06 12:59 - 2014-01-06 12:26 - 00000000 ____D C:\AdwCleaner 2014-01-06 12:54 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2014-01-06 12:54 - 2009-07-14 05:45 - 00023024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-06 12:54 - 2009-07-14 05:45 - 00023024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-06 12:53 - 2014-01-06 12:53 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2014-01-06 12:52 - 2014-01-04 07:12 - 00000000 ____D C:\Program Files (x86)\Glary Utilities 4 2014-01-06 12:49 - 2013-02-10 22:49 - 00000000 ____D C:\Users\mm\AppData\Roaming\Box Sync 2014-01-06 12:46 - 2011-03-25 22:33 - 00000000 ____D C:\Users\mm\AppData\Roaming\Dropbox 2014-01-06 12:45 - 2011-03-25 22:35 - 00000000 ___RD C:\Users\mm\Downloads\Dropbox 2014-01-06 12:44 - 2014-01-04 07:13 - 00000328 _____ C:\Windows\Tasks\GlaryInitialize 4.job 2014-01-06 12:42 - 2014-01-03 20:47 - 00000434 ____H C:\Windows\Tasks\GS-Enabler-S-960308484.job 2014-01-06 12:42 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-06 12:32 - 2011-09-18 17:17 - 01590272 ___SH C:\Users\mm\Desktop\Thumbs.db 2014-01-06 12:28 - 2013-01-10 08:31 - 00000000 ____D C:\ProgramData\Uniblue 2014-01-06 12:28 - 2010-06-17 23:36 - 00000000 ____D C:\ProgramData\ICQ 2014-01-06 12:26 - 2014-01-06 12:26 - 01233962 _____ C:\Users\mm\Downloads\adwcleaner.exe 2014-01-05 22:30 - 2013-11-23 14:57 - 00000000 ____D C:\Users\mm\Tracing 2014-01-05 22:30 - 2012-11-11 20:52 - 00000000 ____D C:\Users\mm\AppData\Roaming\inkscape 2014-01-05 22:30 - 2012-07-14 19:43 - 00000000 ____D C:\Users\mm\AppData\Roaming\Winamp 2014-01-05 22:29 - 2010-04-18 10:19 - 00000000 ____D C:\Users\mm\AppData\Local\CrashDumps 2014-01-05 22:24 - 2014-01-05 19:53 - 00039475 _____ C:\Users\mm\Documents\FLB1_14.nlgp 2014-01-05 21:56 - 2014-01-05 21:56 - 04645232 _____ (Piriform Ltd) C:\Users\mm\Downloads\ccsetup409.exe 2014-01-05 21:54 - 2013-11-22 20:25 - 00000000 ____D C:\Users\mm\Documents\officemailer 2014-01-05 21:49 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-05 21:28 - 2013-12-16 12:18 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2014-01-05 21:09 - 2013-11-29 09:02 - 00000000 ____D C:\Users\mm\Desktop\FLB 2014-01-04 07:20 - 2010-04-14 20:54 - 00000000 ____D C:\Program Files (x86)\7-Zip 2014-01-04 07:19 - 2014-01-04 07:18 - 01376768 _____ C:\Users\mm\Downloads\7_Zip_(64bit)_v9.20.msi 2014-01-04 07:17 - 2011-03-25 22:33 - 00000000 ____D C:\Users\mm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-01-04 07:17 - 2010-11-21 14:58 - 00000000 ____D C:\Users\mm\Desktop\Thorsten 2014-01-04 07:17 - 2009-09-07 02:57 - 00000000 ____D C:\Windows\Panther 2014-01-04 07:13 - 2014-01-04 07:13 - 00002610 _____ C:\Windows\System32\Tasks\GlaryInitialize 4 2014-01-04 07:13 - 2014-01-04 07:13 - 00001040 _____ C:\Users\Public\Desktop\Glary Utilities 4.lnk 2014-01-04 07:13 - 2014-01-04 07:13 - 00000000 ____D C:\ProgramData\GlarySoft 2014-01-04 07:13 - 2010-11-13 01:29 - 00000000 ____D C:\Users\mm\AppData\Roaming\GlarySoft 2014-01-04 07:12 - 2014-01-04 07:12 - 11946800 _____ C:\Users\mm\Downloads\gu4setup.exe 2014-01-04 07:09 - 2014-01-04 07:09 - 00000000 __SHD C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-01-04 07:08 - 2014-01-04 07:07 - 78388136 _____ (AVG) C:\Users\mm\Downloads\avg_tuh_stf_all_2014_204_24c4.exe 2014-01-04 01:20 - 2014-01-03 20:48 - 00000000 ____D C:\ProgramData\SNT 2014-01-04 01:15 - 2014-01-03 20:45 - 00000000 ____D C:\ProgramData\greatesuaveR 2014-01-04 01:01 - 2014-01-03 20:48 - 00000000 ____D C:\Program Files (x86)\SNT 2014-01-04 00:49 - 2014-01-03 20:45 - 00000000 ____D C:\Program Files (x86)\greatesuaveR 2014-01-03 23:53 - 2014-01-03 23:41 - 00000000 ____D C:\Users\mm\AppData\Local\Avg2014 2014-01-03 23:51 - 2014-01-03 23:51 - 00000000 ____D C:\Users\mm\AppData\Roaming\AVG2014 2014-01-03 23:51 - 2014-01-03 23:49 - 00000000 ____D C:\ProgramData\AVG2014 2014-01-03 23:50 - 2014-01-03 23:50 - 00000941 _____ C:\Users\Public\Desktop\AVG 2014.lnk 2014-01-03 23:50 - 2014-01-03 23:50 - 00000000 ____D C:\Users\mm\AppData\Roaming\TuneUp Software 2014-01-03 23:49 - 2014-01-03 23:49 - 00000000 ___HD C:\$AVG 2014-01-03 23:49 - 2014-01-03 23:49 - 00000000 ____D C:\Program Files (x86)\AVG 2014-01-03 23:41 - 2014-01-03 23:41 - 04436952 _____ (AVG Technologies) C:\Users\mm\Downloads\avg_isct_stb_all_2014_4259.exe 2014-01-03 23:41 - 2014-01-03 23:41 - 00000000 ____D C:\Users\mm\AppData\Local\MFAData 2014-01-03 21:31 - 2014-01-03 21:31 - 00011596 _____ C:\Users\mm\Downloads\de-de_joomcareer (1).zip 2014-01-03 20:52 - 2014-01-03 20:52 - 00020626 _____ C:\Users\mm\Downloads\Download (3) 2014-01-03 20:52 - 2014-01-03 20:52 - 00020626 _____ C:\Users\mm\Downloads\Download (2) 2014-01-03 20:48 - 2014-01-03 20:45 - 00000000 ____D C:\ProgramData\83ca9e87cfa0a61b 2014-01-03 20:48 - 2014-01-03 07:59 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-03 20:47 - 2014-01-03 20:47 - 00002680 _____ C:\Windows\System32\Tasks\GS-Enabler-S-960308484 2014-01-03 20:46 - 2014-01-03 20:46 - 00000000 ____D C:\Program Files (x86)\GS-Enabler 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\mm\AppData\Local\Packages 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\mm\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\ASPNET 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-03 20:45 - 2014-01-03 20:45 - 00000000 ____D C:\Users\Administrator 2014-01-03 20:45 - 2010-04-15 16:53 - 00000000 ____D C:\Users\mm\AppData\Local\Google 2014-01-03 20:44 - 2014-01-03 20:44 - 00020626 _____ C:\Users\mm\Downloads\Download (1) 2014-01-03 20:10 - 2014-01-03 20:10 - 00355699 _____ C:\Users\mm\Downloads\com_joomcareer_1.2.zip 2014-01-03 14:47 - 2010-01-09 07:37 - 00708020 _____ C:\Windows\system32\perfh007.dat 2014-01-03 14:47 - 2010-01-09 07:37 - 00153474 _____ C:\Windows\system32\perfc007.dat 2014-01-03 14:47 - 2009-07-14 06:13 - 01643814 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-03 07:58 - 2014-01-03 07:58 - 00020626 _____ C:\Users\mm\Downloads\Download 2014-01-02 08:36 - 2012-04-24 20:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-31 22:54 - 2013-12-31 21:04 - 00009387 _____ C:\Users\mm\Desktop\Pellets 2013.xlsx 2013-12-31 18:58 - 2010-04-16 23:11 - 00000000 ____D C:\Users\mm\AppData\Roaming\foobar2000 2013-12-30 19:38 - 2013-12-29 21:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-29 13:36 - 2013-12-29 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-27 20:03 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-12-24 03:06 - 2014-01-04 07:13 - 00117024 _____ (Glarysoft Ltd) C:\Windows\system32\BootDefrag.exe 2013-12-23 05:01 - 2014-01-04 07:13 - 00017088 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\BootDefragDriver.sys 2013-12-22 18:20 - 2010-12-30 23:18 - 00000000 ____D C:\Users\mm\AppData\Roaming\vlc 2013-12-21 21:08 - 2013-10-12 20:24 - 00000000 ____D C:\Users\mm\Desktop\Profi-Bilder 2013-12-21 20:48 - 2013-12-21 20:48 - 00001456 _____ C:\Users\mm\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2013-12-21 14:55 - 2013-11-15 21:46 - 00000000 ____D C:\Users\mm\Desktop\jcareer 2013-12-19 06:58 - 2010-04-18 11:55 - 00000000 ____D C:\Users\mm\AppData\Local\Corel 2013-12-19 06:56 - 2010-04-18 11:54 - 00000848 ___SH C:\ProgramData\KGyGaAvL.sys 2013-12-19 06:55 - 2010-04-18 11:54 - 00000000 ____D C:\Users\mm\Documents\My PSP Files 2013-12-16 12:20 - 2011-10-12 22:35 - 00000000 ____D C:\Windows\System32\Tasks\BlueStacks 2013-12-16 12:18 - 2013-12-16 12:18 - 10251544 _____ (BlueStack Systems Inc.) C:\Users\mm\Downloads\BlueStacks-SplitInstaller_native_0.8.3.exe 2013-12-15 03:04 - 2013-08-01 07:17 - 00000000 ____D C:\Windows\system32\MRT 2013-12-15 03:00 - 2010-04-16 23:22 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-12 14:04 - 2011-04-13 11:10 - 00000000 ____D C:\Users\mm\Documents\Bewerbung 2013-12-12 13:41 - 2011-07-20 22:09 - 00000000 ____D C:\Users\mm\Desktop\Steuer 2010 2013-12-12 13:35 - 2013-03-13 21:31 - 00221115 _____ C:\Windows\hpoins30.dat 2013-12-12 13:35 - 2010-05-27 21:17 - 00014931 _____ C:\ProgramData\hpzinstall.log 2013-12-12 13:35 - 2009-07-14 03:34 - 00000506 _____ C:\Windows\win.ini 2013-12-12 11:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-12 09:33 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-12 09:32 - 2009-07-14 05:45 - 05236432 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-11 12:44 - 2010-01-08 23:57 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-11 12:40 - 2012-04-26 11:52 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 12:40 - 2012-04-26 11:52 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 12:40 - 2011-06-14 21:38 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 11:54 - 2013-12-11 11:54 - 00000000 ____D C:\Users\mm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Star Finanz 2013-12-11 11:54 - 2013-12-11 11:54 - 00000000 ____D C:\Program Files (x86)\SEPA Account Converter 2013-12-11 11:54 - 2013-12-11 11:53 - 02732544 _____ C:\Users\mm\Downloads\SEPA_Account_Converter.msi 2013-12-11 11:35 - 2010-04-15 16:53 - 00000000 ____D C:\Program Files (x86)\Google 2013-12-07 13:27 - 2010-05-17 06:44 - 00004098 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-07 13:27 - 2010-05-17 06:44 - 00003846 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore Some content of TEMP: ==================== C:\Users\mm\AppData\Local\Temp\Install_HOSTS_Anti-Adware.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-30 00:34 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-01-2014 Ran by mm at 2014-01-06 14:48:49 Running from C:\Users\mm\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG Internet Security 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG Internet Security 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2} ==================== Installed Programs ====================== Update for Microsoft Office 2007 (KB2508958) (x32 Version: - Microsoft) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 4.65 (x32 Version: - ) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat XI Pro (x32 Version: 11.0.05 - Adobe Systems) Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Hidden Adobe Anchor Service CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden Adobe CMaps CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Community Help (x32 Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe CSI CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Default Language CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Device Central CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Download Assistant (x32 Version: 1.2 - Adobe Systems Incorporated) Adobe Download Assistant (x32 Version: 1.2 - Adobe Systems Incorporated) Hidden Adobe Dreamweaver CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Adobe Dreamweaver CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe ExtendScript Toolkit CS4 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Extension Manager CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Fireworks CS5 (x32 Version: 11.0 - Adobe Systems Incorporated) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe InDesign CS5 (x32 Version: 7.0 - Adobe Systems Incorporated) Adobe Media Player (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (x32 Version: 1.1 - Adobe Systems Incorporated) Adobe Output Module (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS6 (x32 Version: 13.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 8.0 (x32 Version: 8.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 8.0 (x32 Version: 8.0 - Adobe Systems Incorporated) Hidden Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8 - Adobe Systems Incorporated) Adobe Search for Help (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Service Manager Extension (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Setup (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Shockwave Player (x32 Version: 11.5.1.601 - Adobe Systems, Inc.) Adobe Shockwave Player 11.5 (x32 Version: 11.5.7.609 - Adobe Systems, Inc.) Adobe Type Support CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Update Manager CS4 (x32 Version: 6.0.0 - Adobe Systems Incorporated) Hidden Adobe XMP Panels CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Apple Application Support (x32 Version: 1.5.1 - Apple Inc.) Apple Mobile Device Support (Version: 3.4.0.25 - Apple Inc.) Artisteer 4 (x32 Version: 4.0 - Extensoft) Assassin's Creed (x32 Version: 1.02 - Ubisoft) AudibleManager (x32 Version: 2002664686.48.56.40504554 - Audible, Inc.) AVG 2014 (Version: 14.0.3658 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4259 - AVG Technologies) Hidden AVG 2014 (Version: 2014.0.4259 - AVG Technologies) Balsamiq Mockups For Desktop (x32 Version: 1.8.12 - Balsamiq, SRL) Balsamiq Mockups For Desktop (x32 Version: 1.8.12 - Balsamiq, SRL) Hidden Box Sync (64 bit) (Version: 3.4.20.0 - Box, Inc) Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.41 - Broadcom Corporation) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden C4500 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden CCleaner (Version: 4.03 - Piriform) CDBurnerXP (x32 Version: 4.5.1.4003 - CDBurnerXP) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden Corel Paint Shop Pro Photo X2 (x32 Version: 12.50.0001 - Corel Corporation) Corel VideoStudio 12 (x32 Version: 12.0.0.0000 - Corel Corporation) CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DivX-Setup (x32 Version: 2.6.1.87 - DivX, LLC) Dropbox (HKCU Version: 2.0.22 - Dropbox, Inc.) DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden ElsterFormular (x32 Version: 13.2.0.8623p - Landesfinanzdirektion Thüringen) ENE CIR Receiver Driver (Version: 2.7.4.0 - ENE) ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard) FileZilla Client 3.5.3 (x32 Version: 3.5.3 - FileZilla Project) FileZilla Server (remove only) (x32 Version: - ) foobar2000 v1.0.2.1 (x32 Version: 1.0.2.1 - Peter Pawlowski) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden GIMP 2.6.10 (x32 Version: 2.6.10 - The GIMP Team) Glary Utilities 4.3 (x32 Version: 4.3.0.80 - Glarysoft Ltd) Google Chrome (HKCU Version: 31.0.1650.63 - Google Inc.) Google Drive (x32 Version: 1.13.5782.599 - Google, Inc.) Google Earth Plug-in (x32 Version: 7.1.2.2041 - Google) Google Talk Plugin (x32 Version: 4.9.1.16010 - Google) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden GS-Supporter 1.80 (x32 Version: - Verified Publisher) <==== ATTENTION Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HijackThis 2.0.2 (x32 Version: 2.0.2 - TrendMicro) HP 3D DriveGuard (Version: 4.0.3.1 - Hewlett-Packard) HP Customer Experience Enhancements (x32 Version: 6.0.1.3 - Hewlett-Packard) Hidden HP Customer Participation Program 13.0 (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (Version: 13.0 - HP) HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) Hidden HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) Hidden HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) Hidden HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) Hidden HP MediaSmart SmartMenu (Version: 3.1.0.1 - Hewlett-Packard) HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) Hidden HP Photosmart C4500 All-In-One Driver Software 13.0 Rel. 4 (Version: 13.0 - HP) HP Photosmart Essential 3.5 (Version: 3.5 - HP) HP Product Detection (x32 Version: 11.14.0001 - HP) HP Quick Launch Buttons (x32 Version: 6.50.7.1 - Hewlett-Packard) HP Setup (x32 Version: 1.2.3560.3170 - Hewlett-Packard) HP Smart Web Printing 4.51 (Version: 4.51 - HP) HP Solution Center 13.0 (Version: 13.0 - HP) HP Support Assistant (x32 Version: 4.3.1.2 - Hewlett-Packard) Hidden HP Update (x32 Version: 5.003.001.001 - Hewlett-Packard) HP User Guides 0154 (x32 Version: 1.01.0001 - Hewlett-Packard) HP Wireless Assistant (x32 Version: 3.50.9.1 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HTC BMP USB Driver (x32 Version: 1.0.5375 - HTC) HTC Driver Installer (x32 Version: 3.0.0.007 - HTC Corporation) HTC Sync (x32 Version: 3.0.5481 - HTC) IDT Audio (x32 Version: 1.0.6249.0 - IDT) IETester v0.4.8 (remove only) (x32 Version: 0.4.8 - Core Services) Inkscape 0.48.3.1 (x32 Version: 0.48.3.1 - ) Intel® Matrix Storage Manager (Version: - Intel Corporation) Internet-TV für Windows Media Center (x32 Version: 4.2.2.0 - Microsoft Corporation) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 15 (64-bit) (Version: 6.0.150 - Sun Microsystems, Inc.) Java(TM) SE Development Kit 6 Update 15 (64-bit) (Version: 1.6.0.150 - Sun Microsystems, Inc.) Java(TM) SE Development Kit 6 Update 20 (x32 Version: 1.6.0.200 - Sun Microsystems, Inc.) JMicron Flash Media Controller Driver (x32 Version: 1.0.32.1 - JMicron Technology Corp.) Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) Hidden LameACM (x32 Version: - ) LightScribe Applications (x32 Version: 1.18.15.1 - LightScribe) LightScribe System Software (x32 Version: 1.18.18.1 - LightScribe) LightScribe Template Designs - Bonus Pack 1 (x32 Version: 1.17.0.0 - LightScribe) LightScribe Template Designs - Music Pack 1 (x32 Version: 1.15.0.0 - LightScribe) LightScribe Template Designs - Tattoo Pack 1 (x32 Version: 1.13.0.0 - LightScribe) LightScribe Template Labeler (x32 Version: 1.18.15.1 - LightScribe) LogoMaker 4.0 (x32 Version: - Avanquest) Luminance HDR 2.3.0 (Version: - Luminance HDR Dev Team) MAGIX Web Designer 7 Premium Download-Version (x32 Version: 7.0.4.16646 - MAGIX AG) MAGIX Web Designer 7 Premium Download-Version (x32 Version: 7.0.4.16646 - MAGIX AG) Hidden MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Standard 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Standard 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Search Enhancement Pack (x32 Version: 3.0.133.0 - Microsoft Corporation) Hidden Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation) Microsoft SharedView (x32 Version: 8.0.5725.0 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SkyDrive (HKCU Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 English (x32 Version: 3.5.5692.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 x64 English (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (x32 Version: - ) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Microsoft XML Parser (x32 Version: 8.0.7820.0 - Microsoft Corporation) Hidden Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Monkey Island 2 LeChucks Revenge Special Edition (x32 Version: - ) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 24.2.0 - Mozilla) Mozilla Thunderbird 24.2.0 (x86 de) (x32 Version: 24.2.0 - Mozilla) MSI to redistribute MS VS2005 CRT libraries (x32 Version: 8.0.50727.42 - The Firebird Project) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (x32 Version: 4.30.2107.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) Music Manager (HKCU Version: - Google, Inc.) NetObjects Fusion 11.0 (x32 Version: 11 German - ) Network64 (Version: 130.0.572.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden Newsletter Genius 3.22 (x32 Version: - Viktor Wedel Software Design) Notepad++ (x32 Version: 5.6.8 - ) NVIDIA GeForce Experience 1.5 (Version: 1.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 320.49 (Version: 320.49 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.24.2 (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.124.810 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Systemsteuerung 320.49 (Version: 320.49 - NVIDIA Corporation) Hidden NVIDIA Update 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 4.11.9 - NVIDIA Corporation) Hidden OpenAL (x32 Version: - ) P7S Viewer (x32 Version: 4.0 - Secure Soft) Paint.NET v3.5.10 (Version: 3.60.0 - dotPDN LLC) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Perfect Effects 3 Free (x32 Version: 3.0.2 - onOne Software) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PhotoNow! (x32 Version: 1.1.6622 - CyberLink Corp.) PhotoNow! (x32 Version: 1.1.6622 - CyberLink Corp.) Hidden Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Picasa 3 (x32 Version: 3.9 - Google, Inc.) Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Hidden PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) Hidden PS_AIO_04_C4500_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden QuickTime (x32 Version: 7.69.80.9 - Apple Inc.) Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0010 - Realtek) Recovery Manager (x32 Version: 5.5.2214 - CyberLink Corp.) Hidden Renoise 2.0.0 (x32 Version: 2.0.0 - Renoise) Safari (x32 Version: 5.33.21.1 - Apple Inc.) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden ScummVM 1.5.0 (x32 Version: - The ScummVM Team) SendBlaster 3 (x32 Version: 003.001.00000 - eDisplay srl) SEPA Account Converter (x32 Version: 1.22.1 - Star Finanz GmbH) Skype Toolbars (x32 Version: 5.3.7555 - Skype Technologies S.A.) Skype™ 6.3 (x32 Version: 6.3.105 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Spotify (HKCU Version: 0.9.1.57.ge7405149 - Spotify AB) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Synaptics Pointing Device Driver (Version: 15.3.29.0 - Synaptics Incorporated) t@x 2012 (x32 Version: 19.05.7368 - Buhl Data Service GmbH) t@x 2013 (x32 Version: 20.04.8223 - Buhl Data Service GmbH) TeamViewer 8 (x32 Version: 8.0.18051 - TeamViewer) The Book Of Unwritten Tales Version 1.02 (x32 Version: 1.02 - Crimson Cow GmbH) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden Ubisoft Game Launcher (x32 Version: 1.0.0.0 - UBISOFT) UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2850085) 32-Bit Edition (x32 Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (x32 Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft) V2C54 (x32 Version: - ) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VideoStudio (x32 Version: 12.0.0.0000 - Corel Corporation) Hidden VirtualCloneDrive (x32 Version: - Elaborate Bytes) Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (x32 Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player 1.1.9 (x32 Version: 1.1.9 - VideoLAN) VueScan x32 (x32 Version: - ) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Winamp (x32 Version: 5.63 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation) Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Media Encoder 9 Series (x32 Version: - ) Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp) Windows Mobile-Gerätecenter (Version: 6.1.6965.0 - Microsoft Corporation) XBMC (HKCU Version: - Team XBMC) ==================== Restore Points ========================= 22-12-2013 00:58:43 Windows Update 26-12-2013 23:07:42 Windows Update 30-12-2013 11:27:13 Windows Update 03-01-2014 07:47:43 Windows Update 03-01-2014 22:48:35 Installed AVG 2014 03-01-2014 22:49:11 Installed AVG 2014 04-01-2014 06:19:30 Installed 7-Zip 9.20 (x64 edition) 05-01-2014 20:46:40 Removed BlueStacks Notification Center 05-01-2014 20:54:39 Removed SendBlaster 3 06-01-2014 11:54:48 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2010-11-28 17:58 - 00000886 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com ==================== Scheduled Tasks (whitelisted) ============= Task: {00C0AB32-E7B4-42CA-ADF8-A8CCAC2C7FC9} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2010-10-28] () Task: {011233C8-7B13-4A4A-8A27-19F2979FCC6C} - System32\Tasks\CapUninst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-10-06] (CL) Task: {0B7CDE67-A718-49B8-A43F-C65EE19EF05A} - System32\Tasks\CapSchedInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-10-06] (CL) Task: {184539D6-0C5E-4859-98CF-A5265706E3F1} - System32\Tasks\Go for FilesUpdate => C:\Program Files (x86)\GoforFiles\GFFUpdater.exe <==== ATTENTION Task: {2B9AF54F-F5CE-4E44-B75F-90597B4206F5} - System32\Tasks\{5AFCEA0E-C57C-42FF-99D6-49EB7910FF13} => C:\Program Files (x86)\Rockstar Games\Max Payne 2\MaxPayne2.exe Task: {3A01E843-3EA0-4146-8AAE-3F9E032AE7E6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-17] (Google Inc.) Task: {404A34C1-6793-4071-B1F4-EBE7CEDD61A7} - System32\Tasks\GS-Enabler-S-960308484 => c:\programdata\quickset\gs-enabler\GS-Enabler.exe <==== ATTENTION Task: {40BB86BB-DBD8-4BA8-98A7-9481BF54F521} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000UA => C:\Users\mm\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-19] (Google Inc.) Task: {4B6AC7C7-DE71-464F-8F15-53D6A84F37EA} - System32\Tasks\{57B3CB31-DB25-4F2E-AA4F-E6C6DE63F746} => C:\Users\mm\Downloads\Portable SWiSH Max 2.0 build date 2008.08.12\Portable SWiSH Max 2.0 build date 2008.08.12.exe Task: {52AF28D4-43AC-407C-9D1D-7B55EDFC34B2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {5B3F0487-7D16-472D-8A75-714FEF729982} - System32\Tasks\{E9227A39-B1CF-4A8D-BB9B-36B69C551B06} => C:\Users\mm\Downloads\Portable SWiSH Max 2.0 build date 2008.08.12\Portable SWiSH Max 2.0 build date 2008.08.12.exe Task: {76712C21-D25A-4615-8D26-6EF61128268B} - System32\Tasks\{1399B351-F787-4D4F-8564-C80B71A2F2ED} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-03-01] (Skype Technologies S.A.) Task: {8493EB81-D2F2-49F9-A90B-FEDA09B47C03} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-17] (Google Inc.) Task: {89277D9F-B452-478A-83E6-A8CF8200BD11} - System32\Tasks\{350F1385-3D50-4B71-B3A4-D03EF524FEA2} => C:\Program Files (x86)\Rockstar Games\Max Payne 2\MaxPayne2.exe Task: {8F218510-9474-40E1-B651-8E98C7AA92B0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files (x86)\CCleaner\CCleaner.exe [2013-06-19] (Piriform Ltd) Task: {98D3EE08-3CCD-4E41-9B61-0FB4F64F9AA9} - System32\Tasks\TVAgent => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-10-06] (CyberLink Corp.) Task: {9AD2C7A2-A4F5-4986-9BEB-77214080C3B0} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe Task: {AC98747F-9A05-4D2A-B1E2-2F46C6250E80} - System32\Tasks\{D8020795-0D0D-4CC4-8DC8-4FC9DA6FE653} => C:\Users\mm\Downloads\Portable SWiSH Max 2.0 build date 2008.08.12\Portable SWiSH Max 2.0 build date 2008.08.12.exe Task: {ADF50FDF-02AF-4F1C-BD47-363C1E3347EF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000Core => C:\Users\mm\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-19] (Google Inc.) Task: {BA624EF8-2E45-41A1-B4CF-9613C318EB5D} - System32\Tasks\CapSvcInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-10-06] (CL) Task: {D87C9E0B-4F4E-46AC-A87A-EED8DF70806E} - System32\Tasks\Hewlett-Packard\HP Assistant\HP Total Care Tune-Up => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe [2009-10-15] (Hewlett-Packard Company) Task: {E26673B3-557D-4872-9207-45439D176424} - System32\Tasks\{0637D79A-DE9B-4C79-BE06-97356ECB8618} => C:\Users\mm\Downloads\Portable SWiSH Max 2.0 build date 2008.08.12\Portable SWiSH Max 2.0 build date 2008.08.12.exe Task: {E8E3BEA4-D9BA-4943-983E-F05FDE011BA3} - System32\Tasks\GlaryInitialize 4 => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe [2013-12-24] (Glarysoft Ltd) Task: {EDE64B73-B704-4330-ABED-1CDB35480FCA} - System32\Tasks\CLMLSvc => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-05] (CyberLink) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GlaryInitialize 4.job => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000Core.job => C:\Users\mm\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-337842299-3019464096-1243316627-1000UA.job => C:\Users\mm\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GS-Enabler-S-960308484.job => c:\programdata\quickset\gs-enabler\GS-Enabler.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2009-11-25 00:36 - 2009-11-25 00:36 - 00125440 _____ () C:\Program Files (x86)\Notepad++\NppShell_01.dll 2013-07-12 03:00 - 2013-07-12 03:00 - 00537600 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_64\Python.Runtime\f08e82ee2db2af735c14823ad8695ac7\Python.Runtime.ni.dll 2013-01-03 17:12 - 2013-01-03 17:12 - 00471552 _____ () C:\Program Files\Box Sync\_hashlib.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00046080 _____ () C:\Program Files\Box Sync\_socket.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 01167360 _____ () C:\Program Files\Box Sync\_ssl.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00689664 _____ () C:\Program Files\Box Sync\unicodedata.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00166912 _____ () C:\Program Files\Box Sync\_elementtree.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00164352 _____ () C:\Program Files\Box Sync\pyexpat.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00111616 _____ () C:\Program Files\Box Sync\_ctypes.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00127488 _____ () C:\Program Files\Box Sync\win32api.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00136704 _____ () C:\Program Files\Box Sync\pywintypes27.dll 2013-01-03 17:12 - 2013-01-03 17:12 - 00058368 _____ () C:\Program Files\Box Sync\_sqlite3.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00535040 _____ () C:\Program Files\Box Sync\sqlite3.dll 2013-01-03 17:12 - 2013-01-03 17:12 - 00037888 _____ () C:\Program Files\Box Sync\_testcapi.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00135168 _____ () C:\Program Files\Box Sync\win32security.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00007168 _____ () C:\Program Files\Box Sync\_win32sysloader.pyd 2013-01-03 17:12 - 2013-01-03 17:12 - 00138752 _____ () C:\Program Files\Box Sync\win32file.pyd 2014-01-03 20:46 - 2014-01-03 20:46 - 00146768 _____ () C:\Program Files (x86)\GS-Enabler\AssistantSvc.dll 2014-01-03 20:46 - 2014-01-03 20:46 - 03041792 _____ () C:\Program Files (x86)\GS-Enabler\Assistant.dll 2009-10-05 23:08 - 2009-10-05 23:08 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll 2013-08-29 01:25 - 2013-08-29 01:25 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2012-09-23 19:43 - 2012-09-23 19:43 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu 2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\mm\AppData\Roaming\Dropbox\bin\libcef.dll 2012-01-08 14:41 - 2012-01-08 14:41 - 00093696 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2013-12-05 21:46 - 2013-12-04 03:47 - 00702416 _____ () C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll 2013-12-05 21:46 - 2013-12-04 03:47 - 00099792 _____ () C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll 2013-12-05 21:46 - 2013-12-04 03:48 - 04055504 _____ () C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll 2013-12-05 21:46 - 2013-12-04 03:48 - 00399312 _____ () C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll 2013-12-05 21:46 - 2013-12-04 03:47 - 01619408 _____ () C:\Users\mm\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll 2010-01-02 15:42 - 2010-01-02 15:42 - 00018207 _____ () C:\Program Files (x86)\FileZilla FTP Client\mingwm10.dll 2013-12-29 13:36 - 2013-12-29 13:36 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\mm:zylomtest AlternateDataStreams: C:\Users\mm:zylomtr{000HQ7FF-AD7A-3FG5-2RU1-26ST3MUECVVO} ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Faulty Device Manager Devices ============= Name: Photosmart C4500 series Description: Photosmart C4500 series Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: LogMeIn Kernel Information Provider Description: LogMeIn Kernel Information Provider Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: LMIInfo Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Microsoft eHome-Infrarottransceiver Description: Microsoft eHome-Infrarottransceiver Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da} Manufacturer: Microsoft Service: HidIr Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (01/05/2014 09:29:13 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/05/2014 09:22:44 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: StikyNot.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bca01 Name des fehlerhaften Moduls: ole32.dll, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7c92c Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000029fa6 ID des fehlerhaften Prozesses: 0xfdc Startzeit der fehlerhaften Anwendung: 0xStikyNot.exe0 Pfad der fehlerhaften Anwendung: StikyNot.exe1 Pfad des fehlerhaften Moduls: StikyNot.exe2 Berichtskennung: StikyNot.exe3 Error: (01/02/2014 08:38:44 AM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/30/2013 00:15:51 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/29/2013 01:08:26 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/28/2013 07:49:55 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/27/2013 08:05:03 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/27/2013 09:51:52 AM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/27/2013 08:28:07 AM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/26/2013 11:57:45 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) System errors: ============= Error: (01/06/2014 00:53:53 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "HOSTS Anti-PUPs" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/06/2014 00:44:46 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: BTHidMgr Error: (01/06/2014 00:42:57 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Kernel Information Provider" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (01/06/2014 00:33:55 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: BTHidMgr Error: (01/06/2014 00:32:00 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Kernel Information Provider" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (01/06/2014 00:31:49 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "FileZilla Server FTP server" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/06/2014 00:31:49 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst FileZilla Server FTP server erreicht. Error: (01/05/2014 10:11:35 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: BTHidMgr Error: (01/05/2014 10:09:03 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Kernel Information Provider" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (01/05/2014 09:30:05 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: BTHidMgr Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 73% Total physical RAM: 4022.87 MB Available physical RAM: 1085.66 MB Total Pagefile: 8043.91 MB Available Pagefile: 4493.94 MB Total Virtual: 8192 MB Available Virtual: 8191.78 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:281.06 GB) (Free:11.17 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:16.74 GB) (Free:2.73 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32 Drive i: (INTENSO) (Removable) (Total:7.2 GB) (Free:2.09 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 298 GB) (Disk ID: 5BCB4368) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=281 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ======================================================== Disk: 1 (Size: 7 GB) (Disk ID: 00000000) Partition 1: (Not Active) - (Size=7 GB) - (Type=0B) ==================== End Of Log ============================ |
06.01.2014, 16:07 | #4 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | YTBookMark Chrome Extension, hartnäckig im SystemZitat:
Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html Es geht weiter wenn du alles Illegale entfernt hast. Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu YTBookMark Chrome Extension, hartnäckig im System |
avg, browser, chrome extension, dateien, daten, einträge, erkennen, erweiterung, extension, google, hallo zusammen, hartnäckig, hijack, installiert, löschen, nicht löschen, nicht mehr, niemals, quarantäne, rechte, resistent, software, system, sämtliche, versucht, websites, ytbmk, ytbookmark, zusammen |