|
Log-Analyse und Auswertung: Trojan.Fake MS gefundenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
09.02.2014, 17:57 | #1 |
| Trojan.Fake MS gefunden Hallo, leider habe ich vor ein Tagen bemerkt, dass mein PC sehr langsam geworden ist(Auch das Internet, falls es keine Einbildung ist) . Daraufhin habe ich ein Antimalware-Bytes durchlaufen lassen, der einen "TROJANER.FAKEMS" gefunden hat. Ich habe mir einige Threads zu dem Thema durchgelesen, aber ich habe auch gelesen, dass jeder virus "individuell" ist und nicht immer der gleiche Weg der richtige ist. Würde mich natürlich freuen, wenn wir zusammen den Virus loswerden könnten. Ich schicke euch anbei die Logfiles. Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.02.06.07 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Paul :: PAUL-HP [Administrator] 09.02.2014 14:31:43 mbam-log-2014-02-09 (14-31-43).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|Q:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 528152 Laufzeit: 1 Stunde(n), 35 Minute(n), 39 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 1 C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 9 C:\$Recycle.Bin\S-1-5-21-1086640771-1515786111-1324639581-1000\$RWWSWMP\Die.Fugger.2.Portable.(PC-Game.1996).part18.rar (Trojan.FakeMS) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\$Recycle.Bin\S-1-5-21-1086640771-1515786111-1324639581-1000\$RWWSWMP\Die.Fugger.2.Portable.(PC-Game.1996)\Die Fugger 2 Portable\DOSBox-Verzeichnis in Windows Explorer öffnen.exe (Trojan.FakeMS) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\$Recycle.Bin\S-1-5-21-1086640771-1515786111-1324639581-1000\$RWWSWMP\Die.Fugger.2.Portable.(PC-Game.1996)\Die Fugger 2 Portable\Installationsverzeichnis in Windows Explorer öffnen.exe (Trojan.FakeMS) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\UpdateTask.exe (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\config.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\info.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\prod.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\STTL.DAT (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Paul\AppData\Roaming\DigitalSites\UpdateProc\TTL.DAT (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) |
09.02.2014, 18:09 | #2 |
/// the machine /// TB-Ausbilder | Trojan.Fake MS gefunden hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
09.02.2014, 19:12 | #3 |
| Trojan.Fake MS gefunden Vielen Dank für deine schnelle Antwort. Werde aufgrund der maximalen Länge zweimal posten.
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-02-2014 02 Ran by Paul (administrator) on PAUL-HP on 09-02-2014 18:57:54 Running from C:\Users\Paul\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AMD) C:\Windows\system32\atieclxx.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Spotify Ltd) C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-06-07] (IDT, Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-05-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-04-29] (Intel Corporation) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-28] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-05-17] (EasyBits Software AS) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [577408 2012-02-15] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [ROC_roc_ssl_v12] - "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12 HKLM-x32\...\Run: [G Data AntiVirus Tray Application] - C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe HKLM-x32\...\Run: [GDFirewallTray] - C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-09] (AVAST Software) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17148552 2012-02-29] (Skype Technologies S.A.) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Spotify Web Helper] - C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-17] (Spotify Ltd) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {172648e2-11e5-11e2-9ef4-ec9a744579e9} - H:\aocsetup.exe /autorun HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {55b824f9-63e3-11e3-bc94-ec9a744579e9} - G:\aocsetup.exe /autorun ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 SearchScopes: HKLM - {42218EA0-A1A3-4FAE-BBF7-7482498E8022} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {42218EA0-A1A3-4FAE-BBF7-7482498E8022} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - {42218EA0-A1A3-4FAE-BBF7-7482498E8022} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-07-15] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{C2076005-C392-4D5B-8939-64D0275E4723}: [NameServer]192.168.178.22,192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default FF SelectedSearchEngine: Google FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-12-03] FF Extension: Adblock Plus - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-19] FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com [2014-02-07] FF HKLM-x32\...\Firefox\Extensions: [{F53C93F1-07D5-430c-86D4-C9531B27DFAF}] - C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\ FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-02-09] Chrome: ======= CHR Extension: (Google Docs) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-11] CHR Extension: (Google Drive) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-11] CHR Extension: (YouTube) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-11] CHR Extension: (Google-Suche) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-11] CHR Extension: (avast! Online Security) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-11] CHR Extension: (Google Wallet) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-11] CHR Extension: (Google Mail) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-11] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-02-09] CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-09] (AVAST Software) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-02-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-02-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-02-09] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-02-09] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-02-09] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-02-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-02-09] () S3 ElgatoGC658Y; C:\Windows\System32\Drivers\ElgatoGC658.sys [50288 2012-11-12] (UB658) S3 X6va006; \??\C:\Users\Paul\AppData\Local\Temp\0061110.tmp [X] S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X] S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-09 18:57 - 2014-02-09 18:58 - 00017340 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-09 18:57 - 2014-02-09 18:57 - 00000000 ____D () C:\FRST 2014-02-09 18:56 - 2014-02-09 18:56 - 02170880 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:28 - 2014-02-09 16:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-09 16:28 - 2014-02-09 16:28 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-02-09 16:28 - 2014-02-09 16:28 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-09 16:28 - 2014-02-09 16:27 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-02-09 16:28 - 2014-02-09 16:27 - 00207904 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-02-09 16:28 - 2014-02-09 16:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-02-09 16:27 - 2014-02-09 16:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-09 16:27 - 2014-02-09 16:27 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 12:17 - 2014-02-09 12:20 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:12 - 2014-02-09 12:13 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:04 - 2014-02-09 00:04 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:53 - 2014-02-08 23:58 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:43 - 2014-02-09 16:33 - 00000000 ____D () C:\AdwCleaner 2014-02-08 23:29 - 2014-02-09 18:31 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-08 23:29 - 2014-02-09 16:08 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-08 23:29 - 2014-02-08 23:31 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:40 - 2014-02-06 21:41 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 20:31 - 2014-02-06 21:35 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin 2014-02-06 20:29 - 2014-02-06 21:30 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:27 - 2014-02-06 20:29 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:24 - 2014-02-06 20:25 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-05 22:08 - 2014-02-05 22:08 - 00000000 ____D () C:\Users\Paul\AppData\Local\{FA225918-70AF-4609-A811-68E055EEE81B} 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:16 - 2014-01-20 14:40 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-20 14:06 - 2014-01-21 01:50 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 02:13 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 02:13 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-16 02:13 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-14 23:19 - 2014-01-14 23:22 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe ==================== One Month Modified Files and Folders ======= 2014-02-09 18:58 - 2014-02-09 18:57 - 00017340 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-09 18:57 - 2014-02-09 18:57 - 00000000 ____D () C:\FRST 2014-02-09 18:56 - 2014-02-09 18:56 - 02170880 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-09 18:52 - 2013-12-11 18:54 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-09 18:50 - 2012-04-02 15:49 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{980E7BE0-EA59-48D0-9195-D39DC2EC0B3A} 2014-02-09 18:31 - 2014-02-08 23:29 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-09 18:20 - 2011-09-23 00:37 - 01365932 _____ () C:\Windows\WindowsUpdate.log 2014-02-09 18:13 - 2012-04-02 16:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-09 17:20 - 2012-04-02 18:26 - 00000000 ____D () C:\Users\Paul\AppData\Local\Adobe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:10 - 2011-07-15 21:16 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 17:00 - 2012-04-02 16:10 - 00000000 ____D () C:\ProgramData\Skype 2014-02-09 16:47 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-09 16:47 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:43 - 2012-04-02 16:10 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Skype 2014-02-09 16:35 - 2013-12-11 18:54 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-09 16:34 - 2013-08-16 08:46 - 01248386 _____ () C:\Windows\PFRO.log 2014-02-09 16:34 - 2013-05-29 06:11 - 00018979 _____ () C:\Windows\setupact.log 2014-02-09 16:34 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-09 16:33 - 2014-02-08 23:43 - 00000000 ____D () C:\AdwCleaner 2014-02-09 16:28 - 2014-02-09 16:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-09 16:28 - 2014-02-09 16:28 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-02-09 16:28 - 2014-02-09 16:28 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-09 16:27 - 2014-02-09 16:28 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-02-09 16:27 - 2014-02-09 16:28 - 00207904 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-02-09 16:27 - 2014-02-09 16:28 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-02-09 16:27 - 2014-02-09 16:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-09 16:27 - 2014-02-09 16:27 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-09 16:26 - 2013-11-10 01:08 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 16:08 - 2014-02-08 23:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-09 12:20 - 2014-02-09 12:17 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:13 - 2014-02-09 12:12 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:04 - 2014-02-09 00:04 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:58 - 2014-02-08 23:53 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:31 - 2014-02-08 23:29 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-08 23:15 - 2012-04-02 15:44 - 00000000 ____D () C:\Users\Paul 2014-02-08 23:14 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-02-08 19:29 - 2012-04-03 17:15 - 00000000 ____D () C:\Users\Paul\AppData\Local\CrashDumps 2014-02-07 18:53 - 2012-04-24 20:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:44 - 2013-10-03 18:31 - 00000000 _____ () C:\dfu.log 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Users\Paul\Downloads\Gameforge Live 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Program Files (x86)\GameforgeLive 2014-02-06 21:41 - 2014-02-06 21:40 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 21:35 - 2014-02-06 20:31 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin 2014-02-06 21:30 - 2014-02-06 20:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:29 - 2014-02-06 20:27 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:25 - 2014-02-06 19:24 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 20:23 - 2014-01-06 23:31 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-02-06 20:23 - 2014-01-06 23:30 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:13 - 2012-04-02 16:33 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-06 19:13 - 2012-04-02 16:33 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-06 19:13 - 2011-07-15 21:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-06 16:28 - 2011-07-16 06:32 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-06 16:28 - 2011-07-16 06:32 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-06 16:28 - 2009-07-14 06:13 - 01614892 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-06 16:07 - 2012-10-09 17:10 - 00000000 ____D () C:\Program Files (x86)\Elaborate Bytes 2014-02-06 16:07 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\HP Games 2014-02-06 16:07 - 2011-07-15 20:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-02-06 16:06 - 2013-08-09 18:43 - 00000000 ____D () C:\Program Files (x86)\Zattoo4 2014-02-06 16:06 - 2012-05-28 14:39 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-02-06 16:06 - 2012-04-02 16:10 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-06 16:06 - 2011-07-15 21:20 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-06 16:06 - 2011-07-15 21:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-02-06 16:06 - 2011-07-15 21:12 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-06 16:06 - 2011-07-15 21:11 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\ProgramData\WildTangent 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2014-02-06 16:06 - 2011-07-15 21:03 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-02-06 16:06 - 2011-06-14 05:09 - 00000000 ____D () C:\Program Files\Hewlett-Packard 2014-02-06 16:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-06 00:22 - 2011-07-15 21:15 - 00000000 ____D () C:\Windows\de 2014-02-06 00:11 - 2012-12-02 20:31 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Ubisoft 2014-02-06 00:11 - 2011-07-15 21:10 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-02-06 00:10 - 2012-09-02 00:25 - 00000000 ____D () C:\Riot Games 2014-02-06 00:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-05 22:08 - 2014-02-05 22:08 - 00000000 ____D () C:\Users\Paul\AppData\Local\{FA225918-70AF-4609-A811-68E055EEE81B} 2014-02-03 20:55 - 2013-12-11 18:56 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-03 01:43 - 2012-12-19 13:40 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\SoftGrid Client 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-21 01:50 - 2014-01-20 14:06 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:40 - 2014-01-20 14:16 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 17:22 - 2009-07-14 05:45 - 00308824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-16 17:04 - 2013-08-25 00:10 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-16 17:00 - 2012-11-06 18:51 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 03:34 - 2012-05-08 21:21 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPaul 2014-01-15 03:34 - 2012-05-08 21:21 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPaul.job 2014-01-14 23:22 - 2014-01-14 23:19 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe Files to move or delete: ==================== C:\Users\Paul\AppData\Roaming\Camdata.ini C:\Users\Paul\AppData\Roaming\CamLayout.ini C:\Users\Paul\AppData\Roaming\CamShapes.ini Some content of TEMP: ==================== C:\Users\Paul\AppData\Local\Temp\8a17f42b187eedf1a91c3ce5aec8044d.dll C:\Users\Paul\AppData\Local\Temp\Quarantine.exe C:\Users\Paul\AppData\Local\Temp\swt-win32-3740.dll C:\Users\Paul\AppData\Local\Temp\Uninstall.exe C:\Users\Paul\AppData\Local\Temp\_is6173.exe C:\Users\Paul\AppData\Local\Temp\_isB6D3.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 05:08 ==================== End Of Log ============================ |
09.02.2014, 19:13 | #4 |
| Trojan.Fake MS gefunden Hier der zweite durchlauf. Hoffe keinen Fehler gemacht, da er etwas lang wurde =) ================= Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-02-2014 02 Ran by Paul at 2014-02-09 18:59:34 Running from C:\Users\Paul\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 7-Zip 9.20 (x32 Version: - ) Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620 - Adobe Systems, Inc.) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden AION Free-to-Play (x32 Version: - Gameforge) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) Assassin's Creed (x32 Version: 1.02 - Ubisoft) ATI Catalyst Install Manager (Version: 3.0.816.0 - ATI Technologies, Inc.) AuthenTec TrueAPI (Version: 1.3.0.111 - AuthenTec, Inc.) Hidden avast! Free Antivirus (x32 Version: 9.0.2013 - Avast Software) Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Blasterball 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Bounce Symphony (x32 Version: 2.2.0.97 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden Catalyst Control Center (x32 Version: 2011.0508.224.2391 - Ihr Firmenname) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0508.224.2391 - ATI) Hidden Catalyst Control Center InstallProxy (x32 Version: 2011.0508.224.2391 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2011.0508.224.2391 - ATI) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2011.0508.224.2391 - ATI) Hidden CCC Help Chinese Standard (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Chinese Traditional (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Czech (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Danish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Dutch (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help English (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Finnish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help French (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help German (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Greek (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Hungarian (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Italian (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Japanese (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Korean (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Norwegian (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Polish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Portuguese (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Russian (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Spanish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Swedish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Thai (x32 Version: 2011.0508.0223.2391 - ATI) Hidden CCC Help Turkish (x32 Version: 2011.0508.0223.2391 - ATI) Hidden ccc-utility64 (Version: 2011.0508.224.2391 - ATI) Hidden CCleaner (Version: 3.22 - Piriform) Chronicles of Albian (x32 Version: 2.2.0.95 - WildTangent) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Cradle of Rome 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Crossfire Europe (x32 Version: 1190 - SG INTERACTIVE) CyberLink YouCam (x32 Version: 3.5.1.4119 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.5.1.4119 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Empire Earth II (x32 Version: - ) Empire Earth II Gold Edition (x32 Version: - GOG.com) ESET Online Scanner v3 (x32 Version: - ) ESU for Microsoft Windows 7 SP1 (x32 Version: 2.1.1 - Hewlett-Packard) Evernote v. 4.2.3 (x32 Version: 4.2.3.22 - Evernote Corp.) Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden Gameforge Live 1.10.0 "Legend" (x32 Version: 1.10.0 - Gameforge) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Documentation (x32 Version: 1.1.0.0 - Hewlett-Packard) HP Games (x32 Version: 1.0.2.5 - WildTangent) HP Launch Box (Version: 1.0.11 - Hewlett-Packard Company) HP On Screen Display (x32 Version: 1.1.2 - Hewlett-Packard Company) HP Power Manager (x32 Version: 1.2.3 - Hewlett-Packard Company) HP Quick Launch (x32 Version: 2.6.3 - Hewlett-Packard Company) HP QuickWeb (x32 Version: 3.1.0.9742 - Hewlett-Packard Company) HP Setup (x32 Version: 8.7.4751.3798 - Hewlett-Packard Company) HP Setup Manager (x32 Version: 1.1.13476.3753 - Hewlett-Packard Company) HP SimplePass PE 2011 (x32 Version: 5.3.0.163 - Hewlett-Packard) HP Software Framework (x32 Version: 4.5.10.1 - Hewlett-Packard Company) IDT Audio (x32 Version: 1.0.6341.0 - IDT) Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (x32 Version: 6.14.00.3074 - Intel Corporation) Intel(R) Identity Protection Technology 1.1.2.0 (x32 Version: 1.1.2.0 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 7.0.0.1144 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 10.5.0.1026 - Intel Corporation) Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden League of Legends (x32 Version: 1.3 - Riot Games) Magic Desktop (x32 Version: 3.0 - EasyBits Software AS) Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Microsoft Age of Empires II (x32 Version: - ) Microsoft Age of Empires II: The Conquerors Expansion (x32 Version: - ) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation) Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation) Hidden Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.5128.5002 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Management Objects (x32 Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (x32 Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 DEU (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x32 Version: 10.50.1447.4 - Microsoft Corporation) Microsoft Visual Basic 2010 Express - DEU (x32 Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Basic 2010 Express - DEU (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (x32 Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 27.0 (x86 de) (x32 Version: 27.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 27.0 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) Mystery of Mortlake Mansion (x32 Version: 2.2.0.97 - WildTangent) Hidden Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden OpenOffice 4.0.1 (x32 Version: 4.01.9714 - Apache Software Foundation) Pando Media Booster (x32 Version: 2.6.0.8 - Pando Networks Inc.) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Ralink RT5390 802.11b/g/n WiFi Adapter (x32 Version: 3.02.01.0 - Ralink) Realtek Ethernet Controller Driver (x32 Version: 7.40.126.2011 - Realtek) Realtek PCIE Card Reader (x32 Version: 6.1.7600.77 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden S.K.I.L.L. - Special Force 2 (x32 Version: - ) Skype™ 5.8 (x32 Version: 5.8.158 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Spotify (HKCU Version: 0.9.6.81.gd359a796 - Spotify AB) Synaptics TouchPad Driver (Version: 15.3.11.0 - Synaptics Incorporated) Ubisoft Game Launcher (x32 Version: 1.0.0.0 - UBISOFT) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97 - WildTangent) Hidden VIP Access SDK (1.0.1.2) (x32 Version: 1.0.1.2 - Symantec Inc.) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden Visual Studio 2008 x64 Redistributables (x32 Version: 10.0.0.2 - AVG Technologies) Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (x32 Version: 4.0.8080.0 - Microsoft Corporation) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1 - AVG Technologies) Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (x32 Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WildTangent Games App (HP Games) (x32 Version: 4.0.5.2 - WildTangent) Hidden Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Zattoo4 4.0.5 (x32 Version: 4.0.5 - Zattoo Inc.) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Restore Points ========================= 06-02-2014 21:56:46 Windows Update 08-02-2014 16:09:01 Windows Update 08-02-2014 22:10:28 Wiederherstellungsvorgang 08-02-2014 22:19:37 Windows Update 08-02-2014 23:08:31 avast! antivirus system restore point 09-02-2014 15:26:20 avast! antivirus system restore point 09-02-2014 15:41:44 Windows Update 09-02-2014 15:44:41 Windows Update 09-02-2014 16:00:11 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {00286C65-AE0E-4463-910B-0A430ABE93C3} - System32\Tasks\{DEFF08C5-9DB0-4964-8D95-2DFD1BD7DD33} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {00CA12A0-8527-4F88-91CD-85DC82979E1A} - System32\Tasks\{DF0164B6-4FCD-45ED-919D-94A2987EE0C7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {01C96173-D2DF-4084-A3CF-EE8A002AFB71} - System32\Tasks\{7D8FEC95-608C-4682-A80A-C06E8454E02D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {024BBC92-F8B8-479B-926A-1514074B4536} - System32\Tasks\{3EBC70C1-C542-476A-96E3-847C80AA3BE6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {033B38F9-4164-49F4-B152-9886D4B50390} - System32\Tasks\{85853DE4-45CB-4BDF-8430-E5D97DFBB877} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {03C03866-2BB0-4B56-8857-66B856B613B3} - System32\Tasks\{C2970B2C-0D18-4047-A587-15BAF30928EB} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {04169C73-E16D-4C53-A31E-631BA9F8B8F7} - System32\Tasks\{0D388153-1817-4101-ADBF-437837E47915} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {051E9CB9-C7B9-4B7B-B450-E7270BC48241} - System32\Tasks\{B2DB87B2-3E56-4F2A-BFA1-6F71F6FC4EF1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {054CC299-E66B-44DD-BADF-3CD69323D183} - System32\Tasks\{F448EA8A-2ACF-4149-8C26-11E75F25B9EF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {069152E1-9FFD-45E2-9150-1E42C1274D2E} - System32\Tasks\HPCeeScheduleForPaul => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {06DE4DD0-155D-43C4-9CDC-8E0550FAD587} - System32\Tasks\{CACC843D-DFCB-413A-A646-2DAF58227BFE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {06EEAC66-C840-4C9A-A69C-5967FC634358} - System32\Tasks\{EB546593-1800-46E3-B80F-8B76F70C448A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0734E48E-47C7-4596-B847-EAABEE3B4B19} - System32\Tasks\{E44C674D-380D-4D3B-886E-C346425AA69A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {09F8B0A2-3A1A-4C92-A1F3-1935392F29B4} - System32\Tasks\{2D8B625E-3294-4FC1-8CA0-D4B4565DED87} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0A5D29B5-1EA9-455B-812D-AB168C205B9E} - System32\Tasks\{7C4417FF-088A-47A1-8060-0A7E777CE2EF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0AB202BA-8AC5-4F2C-8FF2-B5ED378A88BC} - System32\Tasks\{F4DE65CD-438E-4DDE-8779-ED9B3C312FB5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0BD52DD3-CDD5-4046-9596-39777849C547} - System32\Tasks\{F70DA479-A756-4E1F-87F7-3616B3E4295F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0DC6CEBF-4405-45C0-8587-A219D7789FAF} - System32\Tasks\{B0190D27-E991-45CA-BF2D-30C204724B46} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0ED27169-A8FD-4B0C-882F-671C87F6B9A8} - System32\Tasks\{60A4FB59-627C-40FA-BEA6-94FD015EE1BC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0F0B121C-1B83-405D-8E7A-BFAEE20D257F} - System32\Tasks\{323512F3-E7F7-4C46-85E3-9125D854034A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0F923704-2952-4DCB-AB17-6F6CE3967A93} - System32\Tasks\{07860A3A-182E-4E2F-B7D8-7E38E6882FC8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0FA45E39-F428-47C3-9DC1-AFD4A7394247} - System32\Tasks\{B2E1DC71-2558-46AC-8BDF-84B9CBA4D720} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {10508E57-BD26-4DAC-B8C4-41337E4D2279} - System32\Tasks\{7393853B-8BA6-423B-BA74-C64ABC98FD96} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {10D6891C-8C35-4B98-85E9-7C9EB702522D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-11] (Google Inc.) Task: {114C4D85-95B1-4736-B216-8181F4B21CD7} - System32\Tasks\{513C93FD-1573-4EE0-9A38-B6117AE100B6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {150B0C6B-8D0B-4B7B-937A-497692F8EB97} - System32\Tasks\{A6EFC830-AE64-4A5B-A6F2-C17F44ED8F52} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {15E79A9A-DCC2-42E7-8379-881864835654} - System32\Tasks\{3B80E7DA-AF41-456B-9010-DC2B123594AE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1655D6C8-787A-474A-B0C4-56C883E2AF23} - System32\Tasks\{368B72D2-7480-41D2-A849-79C8933BB7A5} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {16792823-BE9C-4791-A971-620748B4F474} - System32\Tasks\{D02779CE-7852-4531-A864-891C2D69E92E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {16E6C8B0-2A42-4900-8B12-A6A02C2F2377} - System32\Tasks\{6FE671E8-009E-492A-B4EB-150BC943BF29} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1873BAC5-CF25-4CFA-8A7B-A0CC4E78EF4F} - System32\Tasks\{88B9C6E7-286F-4E14-8C2A-F7467F02CE8A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1899A71C-CFE5-415D-974E-E7687B79D211} - System32\Tasks\{36D3A109-8C08-4F47-B91F-60BF8FBDBB88} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {19204D1D-4D95-4CE4-96A4-D426F0E1EF82} - System32\Tasks\{3D917BE4-C0F1-4227-A9A6-D047EAE6DB27} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {19EDB9CF-6CB1-478C-956F-23419E21F347} - System32\Tasks\{355A6745-ECE8-44B7-BE72-F8B4B4771269} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1A620273-A256-4434-B682-CEB588F43848} - System32\Tasks\{D0BC9D04-50C5-4FF1-82A8-B968E653D5CB} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1A790C18-0833-4F7F-89F1-7291FF7379E6} - System32\Tasks\{396B9DEE-3038-4127-9CA5-8426E191EA8D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1B777767-413F-4ACB-B13D-D879B64AE7A1} - System32\Tasks\{F6DA6D97-D723-4BD2-A057-7C9822AC392F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1B77D664-05CE-4886-84B5-E06EE380BBC5} - System32\Tasks\{97BB9C8E-2D22-4329-9133-2510AB986335} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1C00EFEB-8689-42F5-B367-E3A387CBBA5C} - System32\Tasks\{8D19BA7F-8BE5-4901-8E84-071D2919AE71} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1C6BFFD8-2D86-4908-8E09-BB36EBEC3F24} - System32\Tasks\{E0E712CE-4743-447B-B613-B1A558388368} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1D3BC481-A771-4D59-B629-2C954D990077} - System32\Tasks\{FE9253AB-5ADA-4868-A167-EA6FFC3F453E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1D88E2E7-7F9D-4EFD-825E-80B057E10850} - System32\Tasks\{70947AFE-74BE-47C2-B510-FD49C9DDD3E7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1DEB5A1E-A4B1-4B97-87C8-CAD4B68FE099} - System32\Tasks\{08F49857-5DCA-4702-95CB-F703EC686A22} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1EE71F34-F06F-4AEE-A3FF-F343D4483F28} - System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {20206E86-F3E7-42E0-8F3A-E00B1013F4DD} - System32\Tasks\{64853E68-DFCB-4FA2-A014-1AEBD518CF23} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {240392F9-9F44-4655-9230-F88F1F524A11} - System32\Tasks\{9D91B847-254D-4907-86BB-DEE4710C21F4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2407BCD2-2770-494E-BD6B-63B4CC7D1750} - System32\Tasks\{BE6AD2F4-CCD2-411B-BD0A-4AC2C5BBAE9F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {240BAE26-9EF4-4F99-AD84-3824BCD70E38} - System32\Tasks\{045F9498-C9E6-4F4A-803E-0B8B04E3DC18} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {246802D3-24CD-419A-8464-52ABF7FF3F42} - System32\Tasks\{175AC04B-9A79-4CE4-AE18-412A6C2829FC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2492B635-55D2-4D8D-8CEE-30BEBA6EBAC2} - System32\Tasks\{41325961-6696-40DC-AEE3-40B72AC62B8E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {268E84DF-DFF6-45A5-AE3A-42ADB5624E76} - System32\Tasks\{24EF2024-DFBF-402E-9879-739246CD7D79} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {26DBFFB5-9788-4712-8A1D-975ABDAC9FD9} - System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {277B0E73-E03B-4481-AE04-7B8C25D62972} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation) Task: {2791B04F-04FE-48C9-A918-5D07B9686CDA} - System32\Tasks\{14393D9A-A78E-469C-B9F2-CB623187DEE8} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {27BCB576-7632-4610-8A53-EB3385AEB53C} - System32\Tasks\{72113ECB-163D-401F-9F83-489A31D68204} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {27EA04E6-55DE-44EB-8AC5-6FDB7EB898CC} - System32\Tasks\{1CD53EC7-FE62-4DEC-872B-2CC839F6E244} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2820C74C-57F3-425B-86EF-B334A9F89680} - System32\Tasks\{F3770589-AA86-4785-9FFA-28B7BB7B23AC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {290BDDFF-BC25-4953-BE89-FCB28F705D99} - System32\Tasks\{9F0C155C-C961-40B5-A923-2FA6DE9D6031} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {298ACE04-2641-4A5E-8210-4B23B2869EE2} - System32\Tasks\{14D72B5E-BB16-4115-9551-079BB926CA12} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {29BBB48F-DF1F-4EBE-9C60-2061AC49E127} - System32\Tasks\{D7AF9355-2282-4BE6-927E-8B0491D84B18} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2A056EE8-D31D-4A90-8D2E-BEC6A7EC7B08} - System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2A7FE37B-1CC1-44AE-AB96-1824B8BC2C31} - System32\Tasks\{15617046-D610-4A31-85E8-A1E74FCE8A6E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2AA3D036-B51C-4BAD-A98C-FFF4150F5C8C} - System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2D289790-40C0-49C7-B478-6C3822616914} - System32\Tasks\{5375672A-F0F5-46F1-93BB-F0A2EA8B2113} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2D555503-84A0-442F-A468-70E180285E45} - System32\Tasks\{9EEDACC9-34B0-4153-B726-27358A7882E5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2DD1173B-FCDE-42CC-B905-E65C3B1112A6} - System32\Tasks\{84A90864-7099-4788-8EC1-FB9B15DF5512} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2DFBDD53-D001-41BB-B586-DFEEB387A248} - System32\Tasks\{48823918-DF2A-48D8-8416-22F2CDFADCEC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2FA39BF7-E3CC-4319-AFF1-5BAD7BFB201B} - System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {30439BBE-396F-4F6B-AAEA-16D4D84D4117} - System32\Tasks\{CEBBFD38-4997-4C5C-8893-9A7FE326C603} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {309C4F6B-4514-4693-BF1E-1F6C88392A5E} - System32\Tasks\{C79EEADD-654E-475F-9C38-DC9A39338C45} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {30E64E7F-B93B-4C95-AF03-4193C01F8584} - System32\Tasks\{49E22925-F664-47F0-97F5-BFCEE55E3D70} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {30FCA466-5EC0-498D-96F0-EFE135FBF336} - System32\Tasks\{29181E95-F5E8-4C7C-985A-59A19DBECCAC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3124DB92-5D05-4C73-82BA-66F030DCFBAA} - System32\Tasks\{B83FD018-B701-4B09-B009-4C16AAFA7DD7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {314EE1FC-76CD-434E-99AD-C50925E19592} - System32\Tasks\{D068D079-92E7-4B65-AC45-88A98356959C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3175E9AB-61AA-4738-AF46-3A33D1DBD635} - System32\Tasks\{D67CBEEC-D896-4B7F-AE99-423700EEE783} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {31FA9AD2-F329-4C2A-A5BF-BBEAFE773055} - System32\Tasks\{67D1CF80-8FEA-4896-94CD-9BD599F8C9FC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3403F216-E0EF-4477-A949-2A28ACA5045C} - System32\Tasks\{EAA386CB-9610-40A0-B94C-6E48EC2AED48} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {344196D8-35FA-4FAB-A768-BB39E1826F02} - System32\Tasks\{9F33E453-16B1-4E46-BC80-FFE089FCACA4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {35864457-1C5F-43EA-B703-D04412E0AA8E} - System32\Tasks\{E338FCD5-A9F6-47CF-8250-236D306EC9D5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {35D38F15-130B-48ED-B4FF-2CFD44691BD2} - System32\Tasks\{E8F12F55-CC9D-44EB-AFC0-F9C71D90AB0A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {36136014-4EAF-4860-9F43-D57195C669DC} - System32\Tasks\{BF6DD1B7-1BF3-44B5-A304-B86BF3F10A2E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {380E30C0-4CA1-40F3-B890-8E6726904526} - System32\Tasks\{4EC9C531-266F-416E-8411-F1CCF8AA9C5E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {38811DFC-740D-4BE3-86EE-D5843A54DA55} - System32\Tasks\elbyExecuteWithUAC => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ExecuteWithUAC.exe Task: {3A415AC7-EDBE-49EA-8922-8A8D534D65F1} - System32\Tasks\{4C394436-05BA-4970-B8D2-DAB14485C5F7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3A59D74E-19CB-4188-9562-5F1826EFA973} - System32\Tasks\{622D4F0B-D356-4A08-B8D3-F86555CE8C8A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3A67AC00-F32F-4C67-B70E-63C5A82241D6} - System32\Tasks\{1CB333CA-A349-4E80-855E-683C6913F3C4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3AAF7638-44F5-4538-BF16-051F1E0FBFC3} - System32\Tasks\{05083A84-D59E-4BB7-A3D7-8BAEE39DA622} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3AE0F0BF-B344-4480-8B7B-4200816A431A} - System32\Tasks\{96EAB4EF-EF03-4AE5-993C-B06DE45562E1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3C185BE6-07BF-4868-AC39-83E8185D6405} - System32\Tasks\{B15E8E19-B5A3-4D64-986E-913C7A6E5FAD} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3C7EB61F-3C8C-4BCC-890B-DB500B616AE3} - System32\Tasks\{F3F65A8D-06C9-433A-AEC4-BE5858058184} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3CD903B6-CB79-45CE-9D82-110EE5F7AF62} - System32\Tasks\{749DFCE9-E7FE-4421-893F-16BBFA5DE805} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3D76AF30-F604-4116-BC33-57D8EB159AFB} - System32\Tasks\{94DD33E9-9285-44F0-AEDC-3D44DB9EAC72} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3E635A19-3B1F-4383-B688-AD239FDED2BD} - System32\Tasks\{98A97F88-806E-44F2-A377-1D049ED5DD6F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3F8FED06-A810-45C6-831C-CBE0A25E2A8D} - System32\Tasks\{EA38DEC9-013A-445B-A679-669182731C85} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {40B0CF3C-9102-479B-A520-5E5522A18B8D} - System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {41A742E6-A728-4D87-B88F-9E92A0EB535F} - System32\Tasks\{2B0CED6F-B9C8-413D-BA04-4EBA997B7371} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {429615A7-482A-491E-83A7-C49E6858DEEE} - System32\Tasks\{DAA66AD5-09FF-4D9C-ABA4-191A596F958B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {42D56EF9-E452-4861-9A72-7A94867B7ABA} - System32\Tasks\{FAEE0A93-ED1A-4720-8507-6C3A86898257} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {42DE66CA-5A6A-4541-9683-44B00ED2B647} - System32\Tasks\{8704C022-03C8-476A-9C44-99383B49EB19} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {433766A3-B1F0-4F5E-8042-4504ED9BC185} - System32\Tasks\{3DFDB9B9-D10B-4A4B-8A47-6647762D00B0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4369021B-FFD5-485D-9B74-B34E1EF56FD2} - System32\Tasks\{D7BFAAD6-46CD-48C6-B3F5-8583D49368E7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {439F37C4-F319-48BA-9B47-386144D89880} - System32\Tasks\{29D8D01F-DCEB-4525-A19E-8E9A488C0594} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {43BF3FA8-6CA9-46AF-99B0-38C3BCCB5B03} - System32\Tasks\{05E35DCC-95AD-4279-B9CC-F88A81EF5F57} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4417B049-1583-46DB-BFDB-FEF50ACF9721} - System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {45E050E3-6921-453E-93C1-06143FD0D208} - System32\Tasks\{3F159D7E-250B-471C-9815-686159B898FB} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {468D7051-0C55-4E5A-BCCB-666DBCA28564} - System32\Tasks\{6E6981C3-1FD1-4671-8B63-E2A5134E712B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {46B49E27-3805-46F1-B916-24746B9AC37C} - System32\Tasks\{C42C4A0B-6CB1-4C7E-928A-57EA60B1FF82} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {46FC7F27-282C-42AB-8A2C-5790FF7E63F6} - System32\Tasks\{567A4CB0-00D9-487B-A7C2-1C5924D41CFA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {49CB2F25-0D93-4F89-9507-F8A45CD05463} - System32\Tasks\{97E82D4F-EEF5-4F30-BBA8-0764C1C6EF1A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4A1AC736-C3CE-47B0-82D6-E21990D825E3} - System32\Tasks\{40D79DD3-54F2-4B4B-8BFA-6E73FDD9DB69} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4AD6B860-0854-4BDB-BEA3-5EEA8F1F9EA2} - System32\Tasks\{32F71B95-6F3C-4239-AA08-327952181F4C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4B91EADD-431A-46FA-A3A5-7FAFB02263BA} - System32\Tasks\{AE9F57DA-2BB6-4249-96D5-60118242415A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4B9AFDDF-EF01-4E4F-90F3-35058CA2A69B} - System32\Tasks\{BFFC9A15-D046-4776-9FEC-F1CD86581F23} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4CB81E46-8A09-4F36-B723-B0753D1995A9} - System32\Tasks\{20BA8339-2534-40D9-AE84-385DDDA0F23C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4CFE3ECE-D220-4F87-983D-A6A0A4959A04} - System32\Tasks\{230A7460-06BC-45E8-9B8D-C2912BCA78F4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4D4DF9AD-F419-425D-A284-A7E16FFD2F33} - System32\Tasks\{7B363F1B-7751-4B48-9395-11435238C366} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4DE4B0BD-039C-4438-9DFC-52FCA6C7DB1E} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-27] () Task: {4E31C1D5-0F14-4492-8587-9013FC2383D3} - System32\Tasks\{1A4C32B0-370A-49C7-A087-961B3FCB5566} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4EBFE9E4-D826-4796-8A08-2A354F42D24F} - System32\Tasks\{BB5D8731-DFED-4B40-BE2F-BF89F98714C0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {500ED37A-4718-44DD-A298-D799D1D54BE2} - System32\Tasks\{F31BBF2F-D404-47B8-A69E-651A22C74EBE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {50422016-978C-4982-BC89-31DA005E3180} - System32\Tasks\{1481AC77-B7A6-42EF-BCC3-4CAF81192BFC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {505D3C00-7018-46C1-95B3-0BA438651A85} - System32\Tasks\{49C34D81-7B18-46DC-A466-F9FB93AD3F61} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {513D854F-7848-4744-83AF-9731C0246C20} - System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {51A9DEB2-5255-4EB5-A4C8-973FB6EF6062} - System32\Tasks\{FA4AD596-3420-45BC-A623-F4311BCA4A17} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5258CDBA-0127-4783-8B75-122C0475DB0D} - System32\Tasks\{57CF47E9-8CCD-4DE1-AC7B-17A86F3C75AA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {53AFA0DF-A661-484F-BA8E-6D0CC99F7A54} - System32\Tasks\{30A0013D-E8BB-4C33-A449-BB788CC75CCA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {53B6C174-EEEC-4166-A7B0-06515B1A6BD7} - System32\Tasks\{2722CFE5-86F9-4D16-BE60-1F8FC7DFB547} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5443F698-047B-4EBD-97E6-3A11BEC8360F} - System32\Tasks\{5D6A29FE-AFE8-4BE3-8DFD-227ECD7BE5F5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {550A6F48-7987-4BF1-91BD-B6DA16AD4692} - System32\Tasks\{1E196EF4-F747-44E9-BA70-EF60B9662BE5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {55DA14C3-715F-4A8F-B1E0-354139577735} - System32\Tasks\{65F3DE90-D70B-4A85-8534-A7247B168231} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {576951FE-FD64-41A5-83A9-F7D7A93FD9CA} - System32\Tasks\{987577C1-00EE-4E2C-BC88-A9241670A3DE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {58282FFD-B6DE-41C1-99B8-9BB80AA672EC} - System32\Tasks\{70941AE6-4CDE-4773-B1FD-9729F3CAA3F7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {58C4DC03-0009-4F7E-869C-BA5610928BCD} - System32\Tasks\{6C8EC38B-EAE7-40E2-B885-073D9DFE0853} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5B95AE37-77F0-4E47-885F-D8FB1BA0F4B7} - System32\Tasks\{34FF5B90-A2D0-4103-8655-978988B1672D} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5BF486AC-33A9-48C7-BB00-D60DD099CECE} - System32\Tasks\{913BF7C1-8B39-44D3-9D47-B712961ACE92} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5C66A783-0EC1-486A-A84F-E955C0615C76} - System32\Tasks\{33AEB9E8-31F1-4545-86F8-AF1B4EE216F6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5C927865-EE59-48FE-935F-7DFF90F86738} - System32\Tasks\{3030EA67-2EA6-4B2D-92EC-0EBD4D73E55D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5C9B1F1B-7BE5-4972-A30C-151E7B594CEF} - System32\Tasks\{4B22CA6D-61E4-466A-9B96-4E9B41A12D20} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5D72CE0D-AA16-44EA-BA5C-2866C87F98D9} - System32\Tasks\{E505DD65-7713-4E68-B046-8CCB7436FF54} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5D9BED96-B77D-4DF1-906E-1B090F1289BA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-08-22] (Piriform Ltd) Task: {5DB91ADE-4F3D-4AE8-AF54-90D2985B3A6B} - System32\Tasks\{56112AA3-3CA7-4F37-9F3A-73BFF646BFF4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5E9C82D0-584C-47E7-9893-E8568E0309D3} - System32\Tasks\{8B6F4EE3-0CD1-44B0-997D-A5B90729705A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {602251B9-24FE-4016-A6A6-3A211A52A4D1} - System32\Tasks\{16C7A35A-4355-4E14-BB7B-58C165FC7EA1} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {608D6473-1599-49DD-9FC3-8828C2C9CE1A} - System32\Tasks\{B0B55743-65DB-45DE-BF56-309EBEBABAB0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {612EB018-B0DF-4377-875A-42912AE71DC9} - System32\Tasks\{D54B299B-BDBD-4E07-805E-D59596D7BE0A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {628FC82C-D425-4C75-BBF3-29B96B776EBD} - System32\Tasks\{FEE8E848-15D8-48DA-84D9-067814402990} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {63CF0FF2-5B16-41D4-87F5-D9D767E51511} - System32\Tasks\{A47295F0-6D07-4782-922A-E48BCDC9D695} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {63E5E825-C3B2-490C-8A51-479517E8E628} - System32\Tasks\{EF95A7B2-FFCB-48D7-9B64-CE8CBDA00AA4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {64272BCB-43F8-401F-A27B-05D7ED6A5D2A} - System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {64DF6775-6DFE-4ACD-9E38-17289BD884DE} - System32\Tasks\{11FDAACB-017B-45F3-893B-E88464A1658E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {64F8D691-4111-445C-A425-DCF482B4B62D} - System32\Tasks\{FDD1FC67-1A68-4E95-92C2-14D87DC759A8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6588C986-FC44-4E4E-89EC-1199B056730C} - System32\Tasks\{0A7B5372-262C-4FC1-8743-A04C2554D1F3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {66359B5F-5B0E-4C24-B655-D9E943B78577} - System32\Tasks\{E4E46007-AB8E-4ACC-A021-3A6F58C9BEEE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {68132456-0827-4FFA-A3DA-98C8CA7CB4D8} - System32\Tasks\{CD78A93E-9153-4A33-B10E-27B50BAB4E37} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6891CF89-9EF3-46ED-9452-F094966B376A} - System32\Tasks\{B094455C-71AE-4747-AEBE-D1355CD5847C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {68CF316C-3314-404B-AAF1-477EF23F53B0} - System32\Tasks\{5BEDE653-5CE1-4E6D-BF6B-E14AD6E5D409} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {69E17645-610B-48BD-9977-EFEB0269FC16} - System32\Tasks\{A91A6080-3E94-496B-A80C-0297873E102D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6CF07841-2DA6-44F4-91AE-CE746989BDBD} - System32\Tasks\{99D0B233-0E9F-48C8-A8A7-D148230D03AF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6D6B0060-EF52-4496-BE51-A5906C13485C} - System32\Tasks\{20CA42F4-2E5B-4077-AEDA-CC7D6118E7D8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6EDFF49E-89FB-464B-95C9-7B1A53DC1DF3} - System32\Tasks\{C455A9FE-062D-4C07-BBA4-B9EF2A483B42} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6F07521D-F6E5-48C4-8B95-AA33F45E6E99} - System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6F5D4482-CA0D-41E4-A0B6-2A61EB965407} - System32\Tasks\{687C8677-8A58-476D-B3DF-5BE92192F0FA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6F8DAE0C-E4F7-4613-B62D-218DDFCAC71F} - System32\Tasks\{9A49F2D2-C939-49E5-8E25-65D8AAD11BF3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6FD182D6-1044-47D2-9A33-F8B28D871F7E} - System32\Tasks\{46BD4564-6C80-4619-A439-59D079998243} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {701425E6-57D7-4F00-9870-0CCB014FED4D} - System32\Tasks\{11BD4C00-4A84-49DC-A09E-EBA641D742FC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {705AA46E-70CE-45FE-8294-38A02C8C1491} - System32\Tasks\{F34DF230-6EFE-4F44-A967-CF144C9AA766} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {715584B2-C61D-49F5-BB6B-74691E34D163} - System32\Tasks\{B47B0191-1626-4193-B09D-720314F70576} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {71C8EF2B-8269-4A20-A44B-5603EDBB1E25} - System32\Tasks\{163547BE-6AA5-4A50-8BEE-0B1E63A21238} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72150285-3CAE-4789-B20D-F455391DCFCF} - System32\Tasks\{B9D92548-63E2-4DA8-A04F-0227B01F64F4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72BE744B-F69E-4D80-8FC0-1AF108EA8635} - System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72CA10B3-69F0-4125-A9CB-96C5554FC62D} - System32\Tasks\{33D1B419-37F1-474D-B7B6-4B88487A6A51} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {733973FE-E72A-49DB-AAA6-205807D32E13} - System32\Tasks\{D1A6A9BA-88F5-4EC3-AF5B-1C74F4A8F1B1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {738C4D7C-6159-47B4-89E9-416361FE0D79} - System32\Tasks\{933E11E1-4B5B-4C90-8208-2A956927CCB6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {73AFE297-8493-4FF2-B4E5-36BD00FDC0FA} - System32\Tasks\{D33849B7-9E25-4182-A735-B018571172BB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {744144D4-4D88-4C58-9D76-CCE0146F303E} - System32\Tasks\{4ADFE00A-DC67-4EDC-A786-7E362B7B7D67} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {747A178A-83CB-44F1-ADBD-B002091996D3} - System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {75488362-B749-48DD-9A7A-80C2443A0D4E} - System32\Tasks\{C7289F99-EFA2-4BD4-A94B-37D01D64CE62} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {75E2345A-259C-443E-88DC-BEA5579B992F} - System32\Tasks\{D5C583F4-0481-445E-9883-CA9096514791} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {77C44C06-7C54-4066-B914-A38A0DA9A4AB} - System32\Tasks\{2A0A5EF8-4D70-4FEC-A35F-F4837F9CEE38} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {77E61248-2525-4EAB-960A-743BDF36E0DB} - System32\Tasks\{AFAA0B7C-815E-4FF4-9D7C-0CE50EA20A28} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {78DAA670-ECDF-479A-A440-DB4032254A3E} - System32\Tasks\{4FCDEFCF-9DFD-4148-9ACD-6B1BBDC949BA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7A031796-76B4-4E79-B145-C3A51AFD4ACA} - System32\Tasks\{F80A5F3A-9574-421F-BDD5-012C29413884} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7B29F2A0-7504-4BFC-B14A-BF50F8DA5582} - System32\Tasks\{CDE1B886-15FC-4246-8BC4-F771C9670756} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7B8801FC-7D67-42C5-B830-A8E490425DBA} - System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7CFF435C-7928-4560-AC3D-BB42E2307A44} - System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7DD0A16A-A108-4B98-9C1D-3D5C7FC3C017} - System32\Tasks\{839B0DB7-698A-46B6-A779-654F021D57C4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7F55B799-2364-4AD2-A50B-F32D5E820D1A} - System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7F5E4EBD-3395-4259-90BB-A16100646E98} - System32\Tasks\{C7268C6B-563A-422B-87FC-8B00B7FC9C2F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {80E11454-4597-4A45-9BF2-CACDF7338942} - System32\Tasks\{726391D6-8523-48CF-934F-650EF96220E2} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {812880D7-FC07-408D-964D-1E4ADECABD2E} - System32\Tasks\{13CBDFC3-A2A7-48C0-AC37-7DEF0245BD47} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8148CCE7-F646-4340-A561-8AE0109F63A4} - System32\Tasks\{559CCB4B-CDA8-456A-A402-F544E62DE10B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8233D8C8-D66B-431D-AD00-641921FB468A} - System32\Tasks\{260D4BDB-3518-4D26-9C92-FF03179DC358} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {82DB6767-97AB-41DD-B8B3-03C336846365} - System32\Tasks\{9B21CCFB-42A5-4640-8F82-916418C056C1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {83B96DB5-DBD7-4328-870A-D3D4472D8085} - System32\Tasks\{94278625-1FE2-466F-998B-95E3123E29FE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8480BF47-73EA-40F0-855B-10844C402660} - System32\Tasks\{5CFA31AF-F507-46BB-8E98-C016256BF645} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {85D0D350-AACC-49F9-A841-9061DD4A9D53} - System32\Tasks\{100B50AB-09F5-40E3-82B7-C1BACC3064FB} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {870D25E0-CFC9-4CD9-A433-C0C78557FBEA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-11] (Google Inc.) Task: {87159D76-36B1-4739-9CD9-BCB7EE634C74} - System32\Tasks\{A362035C-4943-450C-BEA7-123603F2F17F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {88214728-CD56-490B-BDAA-761714C51E65} - System32\Tasks\{D3EFE9D3-3F25-4890-B194-069DC3C263ED} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {88F30569-40F9-4FD7-9607-C4D7138DB2D8} - System32\Tasks\{7DEB35BA-6631-452F-90D7-822D3403D209} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {895AD320-0576-483D-9F7D-6CF38A65137E} - System32\Tasks\{C6E2D12C-DE7A-468D-AA92-D51751894946} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {89990D95-E44B-4020-B65F-5A8997350DFF} - System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {89A62F4F-B36B-4397-8F48-98251A0F53DC} - System32\Tasks\{367F0C72-3D78-4CA3-92E7-F703C7BCE538} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8AB6A140-515C-4CEA-BC60-26A08CB37D7F} - System32\Tasks\Digital Sites => C:\Users\Paul\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE Task: {8C176975-97E6-4166-AE0C-AEC485399A95} - System32\Tasks\{7A51FEDB-717A-4648-88EA-2B7B2F90F122} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8C4B4822-9988-4E6D-BEB1-21A642E2D44F} - System32\Tasks\{2533C6C6-7CCB-4375-B799-2761D3C38BF7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8C9ECFD5-5C09-4622-AE93-4C23A2BC47F4} - System32\Tasks\{C9EF0AB7-222E-4882-AF65-B6B35B9F7D31} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8DA0204D-88FA-4C6D-BEC1-370EBDFB5AB1} - System32\Tasks\{A2AECEB4-6886-4086-86C8-769F328FCFE7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8DDBF87B-8847-497F-9B90-A9973C7D7D02} - System32\Tasks\{99F5EF05-8E99-40E8-B11D-A5043D1957CD} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8F61B414-9071-43C7-9789-2025C7245B85} - System32\Tasks\{577735E7-155C-4627-9B37-648611D2B3F6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8FDC2B73-48E3-4A0B-9D9B-0FD8130B9F15} - System32\Tasks\{1B28099F-9E5D-4E3B-8BD4-0D678C23CE46} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8FFBDA74-FEFC-4A33-91F4-68B980EB637F} - System32\Tasks\{D5428FC4-2508-4668-BB93-C3D7434E5120} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9069342B-FB27-4641-87C0-B47C4583E186} - System32\Tasks\{789E5D01-E541-4780-AE15-89B2C3A4A20B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90894074-41C4-4643-B77F-422E244046DD} - System32\Tasks\{A79171E8-BDFC-40F2-AAF4-9162FCDEBEAD} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90C220D2-3D6F-4F2F-9F51-6B0637EFA2B2} - System32\Tasks\{936DE2DA-EDF5-4D37-9938-BD0632FF9462} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90C5C436-0FBD-4894-A3A8-E919E08E9A99} - System32\Tasks\{A285C115-8E23-4697-AD46-0AE609614C2A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90D1B509-9069-4BDC-B2B5-F2ACADDB9A2F} - System32\Tasks\{3C891D79-520A-4339-93E0-41C8802C7969} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90F1DA1B-A094-475F-B810-76F10A20E2D2} - System32\Tasks\{897F4CDE-FF29-49D1-9BBA-F261AD89B78D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {911495E1-B71B-4FCA-B305-53E0D9A49408} - System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {91F074A2-4DE3-4E67-A6CD-B961F92B4241} - System32\Tasks\{9EDA6F59-C215-4A2F-90AE-A296C1747F6A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {928CF8E7-D540-48DC-BBA0-09CAD3468C8B} - System32\Tasks\{5B5266B1-9403-4A12-A6AC-CBB633F91E1F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {92AABCB3-8BCA-4CB9-9B43-E3AD5FFF46A5} - System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {944D122D-6913-4253-AEC3-D732EDDCFB2D} - System32\Tasks\{6E35D7A9-E23E-4873-BF13-80AC205B6D26} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {951D6FE9-DF35-4BB8-AF95-C4BEB470CE39} - System32\Tasks\{49730A46-A982-420C-A077-07C45E975CE5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {95C5A515-E2AE-4664-94B4-0563EF267A58} - System32\Tasks\{6A0F908C-3438-426E-98C9-0CF321BD406F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {98154319-29B1-457F-BD41-3DF3BB41D529} - System32\Tasks\{98E53638-C364-419A-94EF-2B217AB9A7C9} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {99BBC12B-6C53-4C07-88C8-7CEAFB39C155} - System32\Tasks\{7DA7C577-C54C-4286-B4E8-AD0E5AB0598D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {99E40ABF-F098-4FA3-AEFE-4542C9097ED2} - System32\Tasks\{B1090929-7D02-40C2-9F0E-5FE880E5C6A3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9BFBAA7A-93E4-4FF0-B371-BFD6385171DC} - System32\Tasks\{FCA494ED-51CA-4E24-9B0C-9FCA5743EAF0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9C985509-62AB-464A-885A-86EF5920995C} - System32\Tasks\{F390339E-63ED-4D13-9DF6-785BCD30EA09} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9D23473C-2226-43B6-BDC0-B658D07AACC3} - System32\Tasks\{FAFFF937-E2D8-42BF-833A-090F049F4C9C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9DA52426-7E21-4233-B93D-39BA22920E7F} - System32\Tasks\{E7D1B579-9F73-4D6D-9CA9-ED1AB1CCB9B3} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9DCA92B2-2A0E-47AD-93FE-44E93026A4CA} - System32\Tasks\{DF1A8C3C-2CC0-43E0-A6BF-27DE67ECECF2} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9EDB3072-43BA-483E-B431-67A93D64D943} - System32\Tasks\{1B1DCF9B-DCA8-4A0B-81F7-886D510C18E2} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A0223539-8415-4253-A0CB-D0199560B64B} - System32\Tasks\{99AE6B75-D2DD-4DDD-AA8F-8EBCE48DFECE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A04A8BAF-52CC-4239-9773-7D711EFD1DE2} - System32\Tasks\{DF869E4D-756A-45AF-81CC-A9F30F20CC35} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A09D7573-AA2B-4599-A37A-85BF30A2CB3F} - System32\Tasks\{0DBC4FE1-22E5-438D-B471-C41F04A41D49} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1618 Task: {A1F92C49-F87F-4FFA-929E-C8FF4B884D44} - System32\Tasks\{50476966-CC6D-403D-BE04-B7D7D7D44EE4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A2B14FE3-3404-4F0A-BB1D-E26CFA1223AF} - System32\Tasks\{6F05A1D3-E03A-43F1-936C-698C9422E2B7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A2BBFF93-81A7-4293-8D70-124801A4B5A3} - System32\Tasks\{A57D1D90-C6EB-4C20-B68E-BE82D1D786B3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A33FD2DD-156F-42B5-AA32-178EB1951A68} - System32\Tasks\{81640008-8478-452A-948C-FF9247AC4226} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A386BB55-A31C-49DD-B967-1635ACB371BC} - System32\Tasks\{02860603-1B56-461C-A6C1-5D31327FB70F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A3D8DD69-3CA1-4A6A-A361-CDE2BFD55EC2} - System32\Tasks\{77C89A03-7186-46DC-A0E1-50C2E732BB2C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A44FF32A-B73F-4327-B2AD-6595D065E312} - System32\Tasks\{CFFF739B-1E84-4B4D-9BC4-D5CFAE3D37B8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A59969CE-89CC-4BC8-9AAF-C76843BF5277} - System32\Tasks\{D619126C-EDE3-4CE0-AA2F-4DA956F4540B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A67A79D4-C8AD-4E16-AD59-2FF3CE4304CB} - System32\Tasks\{78B80BF1-9CD3-4938-9A00-9EA5F02D62AC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A70CD712-2E02-4E3D-AF46-ED8390F74AD4} - System32\Tasks\{AF7A6EE5-FA58-4FBF-837A-ED5357E6B1F6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A756F72B-372D-435F-9044-0B2759462580} - System32\Tasks\{0FF21A79-2F81-4960-B6D8-7F3B57175AA0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A7ED2479-8A02-4235-942E-8353E4C047AF} - System32\Tasks\{72DC5F8C-5C8F-473D-944A-6FE27C3771FA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A82B5246-E84A-4E77-9460-C86A42BDBB4A} - System32\Tasks\{AC629436-9ABF-4A16-BCF0-CD7898474B07} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A938622E-ED7F-4DB9-A141-A94899BBCA83} - System32\Tasks\{F2EA7C1C-C990-4642-AB91-115324916C84} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AA141C0A-83D5-4A3D-AE71-3FBE0F9FEDBC} - System32\Tasks\{E181FBD9-AD30-4539-B925-2613CD09EE6A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AC029035-434D-4FE5-810D-10729F11FAA2} - System32\Tasks\{F046EE1F-DCDA-4A0C-A12E-17FAAD04BA63} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {ACB32D41-88A5-4BE9-9EC8-05F0E8DAF6BA} - System32\Tasks\{7DB98A4E-2565-4FA7-8805-816E8DD9F345} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AD271090-F2E7-4CAD-8640-5C00B4962E9A} - System32\Tasks\{70FFA475-6D5C-41F9-BEA5-298DBC0F9435} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AE959149-31EF-41FC-BDA3-0E6981079A88} - System32\Tasks\{8E848BF3-6043-4745-A63C-271E1A6FED15} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AF66DE3D-2C78-413E-8B6F-1834EEFCE515} - System32\Tasks\{699BDB29-5B1A-4608-A2EE-ADB87F98E26C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AFBF03FD-A8BF-45E9-9A7A-668CA571714C} - System32\Tasks\{ECC22119-297F-46E2-B831-D2EEC76260A4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AFF0D888-AE5E-46FD-AEF1-BEC1508C41BD} - System32\Tasks\{8AC21976-A4E2-43AA-A9D7-DC665176FF67} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B01EA2DA-BA56-4C77-B708-68001F1B465C} - System32\Tasks\{1E835C7F-5EB0-4DFD-8DAC-990A863F25E4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B05B684A-4BB0-45ED-987C-AF8B7B329237} - System32\Tasks\{DE6F5C56-2BDC-4AFF-BC1A-C771E2E8470D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B06D5CF8-FEFF-4019-A128-1846DB7FE6A1} - System32\Tasks\{F8F0A1FC-7AFB-4255-81F7-97E91F78CE64} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B15E1FD3-C080-4879-900F-C9D145C36647} - System32\Tasks\{DD5BB63F-F6D4-4AB4-88BA-9B39513F9542} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B19BDCC2-99EC-40BF-9D93-CF4C92D72F8E} - System32\Tasks\{313A37D3-AEDC-4D27-A200-2949D2C21AF5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B25E3103-EDEF-4DF1-8938-9D35754182FC} - System32\Tasks\{5828A137-A673-4DB8-9E29-D0D3C90E176B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B272EDC4-DD86-4AB3-9DF4-884A5057BFF9} - System32\Tasks\{6B798A91-5F44-42F1-8437-0AD52918002C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B2F013B3-3928-4495-9B84-B4AA6D54C7F9} - System32\Tasks\{8E47F61B-C929-4741-B772-A844A2B817DE} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B367C968-733E-41C5-B15C-2142A7B25D37} - System32\Tasks\{0BE0C6D1-8429-4204-88AE-D7CF83D95822} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B3E55E3C-C18D-4FB3-8FF7-9C1925C323F9} - System32\Tasks\{850ECEAA-A5D2-44C8-8BEA-81028F645EED} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B403D5BD-BC54-4F74-989D-1AE0D415F857} - System32\Tasks\{FAC96BF4-1516-4F4F-BF95-181640141D5F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B48F1ECC-524C-4592-A1F9-9E43C4983204} - System32\Tasks\{829E0821-4E58-49F3-ACBC-C019316B3B76} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B4973B14-A1E3-4A4B-85FE-6F41623F1A60} - System32\Tasks\{48A1DCF8-48B1-4ECC-8AB9-FE61596E4E9A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B66D9958-A0D4-4872-9441-EBB2092953E5} - System32\Tasks\{DEA9A4FC-3482-4F38-97B7-FFF4A51E30BC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B7373597-27E7-42C3-A05A-86EDA187C9A3} - System32\Tasks\{BE570810-3CE0-4713-9B66-DB1080DB9403} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B74F41CB-FD2B-4E2A-8EA1-70BD3C6B69E4} - System32\Tasks\{6DCB62E5-6148-4D5D-AFE7-1588ADE2077D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B79B1841-A143-4ECF-92DA-417FFF3B28FA} - System32\Tasks\{075D5AD0-A93B-449D-9790-CF1321B2D362} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B8EE3822-7EDF-4EC9-A980-D4891889C865} - System32\Tasks\{E354242B-22A9-4E82-8169-BB75964945B3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BA85BC84-B0AA-4ED1-B9F8-BDFF74E60DBD} - System32\Tasks\{EF192683-E481-488F-8B16-DDED76DC6F0A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BA98A1F7-9FEA-4BD0-AA13-1F4154526C7E} - System32\Tasks\{00404C24-AA82-4265-ADF2-BE3ECF74F504} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BB0D307B-238C-46AC-9026-3BA167EBD973} - System32\Tasks\{7BECF28F-E771-4677-8184-97CD985D7053} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BB7A1C27-F471-4612-A720-6D3AF27FFB9B} - System32\Tasks\{5A28BBFB-AE1F-4B8E-B6C0-D90D1A12773B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BB97DD2E-89DC-4EC6-82DE-C6D0BA43A67C} - System32\Tasks\{D5AED099-DB8C-45DF-B342-0957C7F2781C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BBA46CC3-719A-449F-92BB-CD51E6AED9FC} - System32\Tasks\{05D9B6F4-5AAA-4450-88BE-34F4A8DED35D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BC015204-D18D-469B-864C-C80A1DFE9B74} - System32\Tasks\{51E35DF8-52C1-4D31-97B6-3874B8D36F9F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BC39B111-840B-45A2-AD80-C50FC2DA6BA1} - System32\Tasks\{E3622107-725F-4093-A956-8E733E6FC83C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BC8A8C70-6167-42F9-99AD-7A3B7C3BF512} - System32\Tasks\{D3723A37-E8F1-405D-ACA1-35DDCF771219} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BCB97D12-EA5B-4E1F-89BF-53D0D23E900A} - System32\Tasks\{4C5AFA4D-F259-4951-BFEC-8243DAB30EAA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BD74D37B-38C9-495D-BCB1-AFEDC404F04B} - System32\Tasks\{2ED5ED3D-A77F-407A-83D7-428784332225} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BEEBA05D-5D95-4060-9059-ED34ED87483B} - System32\Tasks\{C3278EAE-3415-483A-8B62-AD862E6D5047} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BEF6620F-F295-4C3C-A62F-88F3D78F6A59} - System32\Tasks\{DD4F94C4-8F5B-436C-AF9E-4243E1F2CCA1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BF67757A-779D-4FE6-A46C-7B83A10EAE66} - System32\Tasks\{778B9BE2-1BE5-4CFE-B3C3-FB7A11CD3517} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BF777995-D3F1-4153-9144-1B29BE44F14A} - System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BF7B3034-4ED2-4B73-A93C-FCC65934ED98} - System32\Tasks\{26762FC1-D9B7-4C80-A759-A62336310F54} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C0ABE424-E19E-47E2-B704-F18C0A1E12B1} - System32\Tasks\{817FD24D-DED1-4D5E-B386-557F0F810B09} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C2083027-FE6D-4344-81DF-B79CCED65CBF} - System32\Tasks\{EF662946-2C66-4BD1-86BF-05D0B7BDF16B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C2345448-2E05-460C-B17A-1922C386DE2E} - System32\Tasks\{55D1BE68-BA27-4F27-91FB-E6E7BE4F5FF5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C2EE6407-F919-4031-84F4-7C910CEEBCA0} - System32\Tasks\{793A25B2-173C-43C6-8280-0BF205DFB684} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C35E4604-0399-4143-8999-178596D36D56} - System32\Tasks\{FAB794C9-83F0-419B-B089-373CC42DE2D8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C3D0837E-A569-488F-819D-3B321B5FDEFE} - System32\Tasks\{02D4B492-CC81-4432-8344-D01928DA52B6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C3DEA3B0-FCD1-4B32-9BAD-D1608D73C016} - System32\Tasks\{EA23B7D6-798D-4520-8DF3-ABFC879C0659} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C5A05A65-9ADF-462F-9493-5EDFCF6E8E0C} - System32\Tasks\{D70EC354-69E3-436B-B9AA-C4D524D2B43E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C5A2C234-AE91-4774-A942-BB4CDAC0654E} - System32\Tasks\{54B4E941-CE4D-4A7F-88C1-2AEDAECDB9D8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C5C1FAE8-4306-48E6-B640-B432EF70D9D1} - System32\Tasks\{CC34DD96-B881-4D10-B947-71B258D069A5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C620A33C-A11F-4C37-84DC-60F356CEDA63} - System32\Tasks\{6B9EFBFF-1B91-4D2E-A986-4622DFDCCEBD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C68BAF1E-CCBF-40A8-96E1-18CD189932EF} - System32\Tasks\{F7C7822E-DD0F-439A-BEC8-0E377CC4CA71} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C849D4B8-0848-429C-9E16-30393733CC93} - System32\Tasks\{2FC1AECD-403C-4903-A5DD-56A7138E342E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C87A5654-CEA3-4C81-840C-153191BBA4FF} - System32\Tasks\{64DC7870-32BC-4196-BFA4-AA55599406D4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C89BF254-BA53-42FE-BBB9-30613F6D961F} - System32\Tasks\{E322AF66-241A-435B-B890-65168955285A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C8F9B2A0-0755-40E6-A582-7D499AD23137} - System32\Tasks\{E0BB970D-1D95-4FDD-892E-2F45798F624F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C9866C2F-91AC-4D8F-9ADD-6187007597E0} - System32\Tasks\{5A16F328-CC0A-4F4C-A509-2D569DF46426} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C98F84F3-4501-4B03-8885-6ECCE8521D54} - System32\Tasks\{D742C614-3595-428E-9014-CC43D5A23558} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C9AE0F65-72BC-4911-AD6D-8D1E426F0279} - System32\Tasks\{F0823FBB-CEA7-449F-8D76-74F686431F99} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CA925842-FAA9-408F-AA89-2ED49AC1828F} - System32\Tasks\{34BC9125-D91D-4827-9CE6-E0C355BDB82C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CAAD5E0D-2EF1-4BB0-BCB9-CA17B23F1CC2} - System32\Tasks\{6FFC839C-3245-444A-B529-F27485FF10F3} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CB372975-EFE4-4E87-B77B-DDD0AD70B018} - System32\Tasks\{69BAA1CF-04D1-446E-9682-BDDED8D7DE4C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CB808591-46A6-45D0-AC70-F35D0652721D} - System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CD63AB05-02B9-42AC-A5FC-BFDEF2096C74} - System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CE206A4B-0C98-4E91-9C2E-D47B6BA48268} - System32\Tasks\{D817B5BE-F8E4-40E9-BF4F-005E9C48F9E4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CE3C4F49-3EBF-4A1B-A04C-2E73E2E478FE} - System32\Tasks\{C9573A37-A39B-4834-B4F1-D2C09766B522} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CE7742C6-5368-4D66-B171-FAB29BF34122} - System32\Tasks\{DDE9F093-7459-46AD-B884-A1893B1B9E9F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CEC9EA0A-C69A-42E5-86FD-4841782091C0} - System32\Tasks\{828E0DB2-E630-4B87-996A-08CAA036DB4A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CF88F652-C921-4202-A6C6-B4300AAA970D} - System32\Tasks\{F0623783-67B0-4B2C-A2E2-87C7D631CC71} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CF99F8B7-0C7E-453F-AAE7-364727B1DA54} - System32\Tasks\{633B5712-4B7F-4E96-9367-F98A1373136B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D02642DB-6A43-49D7-8164-C2DD0C98F7E9} - System32\Tasks\{16C90134-E106-4427-B239-5E202521918A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D0631CC3-5A2D-4FC6-8E3B-EB60442043B9} - System32\Tasks\{F0DA6B76-77EC-476B-8B77-769A63059EBB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D066F0DC-804E-4F6B-AE23-5826F92F165B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-02-09] (AVAST Software) Task: {D1CD297A-C3B1-4B1E-9FEC-2B2464696233} - System32\Tasks\{D795EFE0-C248-4D42-AE33-12F9C4A01182} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D1FE267F-0A9B-4895-8790-4DB445A08E05} - System32\Tasks\{661D9772-80AA-49D0-9D60-D4CDA808C4FD} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D21C8441-D5CE-4AA3-938B-49B8CD64A037} - System32\Tasks\{00643432-D3C7-47A1-9776-86007F6804E8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D226FE24-0882-481B-AE9B-C098C3CC0FB3} - System32\Tasks\{24BA3271-D43D-4AAA-A3E7-1CD13BEC5C7B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D2692F5D-4004-4851-835A-507A6DF7FDA8} - System32\Tasks\{5BE96AF3-D890-4F0D-8AC8-4498A53C8BA1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D2720DFE-B312-4A5F-A65A-10EA0803BC78} - System32\Tasks\{D640FA06-E129-4B24-94FA-5B51ED7318C8} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D2BC708B-1BF6-498B-A590-E92C67C34F0D} - System32\Tasks\{16935FFA-16B7-4CD3-A08A-9361E5811E99} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D2E4E319-1E6F-47D5-9CBD-966AB823AD79} - System32\Tasks\{3CAE597C-E790-417F-BD88-5D9D086B546B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D30D0CC7-D670-48D0-8E1F-DBC1AD452F71} - System32\Tasks\{AA6F1331-6DDD-4095-B726-BB9CBA6F7103} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D33F4F98-4B4D-4E8B-9AC4-B778F262A3C2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-06] (Adobe Systems Incorporated) Task: {D3DE3F6F-9CFD-469A-9A36-9D817FADE530} - System32\Tasks\{D741B73E-6867-473B-9EDD-EAF9412CB72C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D40D541E-78CC-449B-BF0D-C8A025D17E01} - System32\Tasks\{F5378E5D-7A32-4541-8B4F-B24A832C98D5} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D5605FAF-28D2-4603-A5E3-E3F6790FEFA1} - System32\Tasks\{27F45CD8-4C37-4326-B1EA-7E2879C357EA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D595611D-4690-4CEA-BF6C-39D97B463C83} - System32\Tasks\{074B4770-9D06-4394-962C-F29AA254D112} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D661B37D-D932-4720-AF1F-A69F03FC3576} - System32\Tasks\{AEB6529A-1A8B-44FC-B2BA-C4E4090B303C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D70C0EC4-79EF-47F5-84EC-99DDEAF3FDE5} - System32\Tasks\{5933C070-DDAD-4D22-945F-55224C9E5264} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D7F4ECCF-230E-40CC-A0D1-461BB5DF18CD} - System32\Tasks\{719EBF97-3B09-4B3A-A006-566821F7E580} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D83DF66C-E096-4968-BC47-AF0AA7A82764} - System32\Tasks\{0821DC92-5057-4343-8C15-88564A9806F9} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D95FE825-41DB-4A87-89B1-69AA925BD13E} - System32\Tasks\{55FAC17C-FFA2-4BE0-969D-33DB1CB3CEE2} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D97068E3-E098-4AB3-98F5-35C03E900CF1} - System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D9CE4EA6-E5BA-497C-AB39-1650D1A6AD04} - System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DA94F892-5370-4FDD-82DB-CAB610F535FA} - System32\Tasks\{75E366AF-A641-4E9D-B188-4FB33C68D085} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DB6EF27E-A925-4222-A8C7-B87CF8811BF9} - System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DD5207D5-FFD4-49D2-A83B-3FFAFEE6AD1B} - System32\Tasks\{AD1D1ABF-8F7E-45B4-A764-BA95BA3D9397} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DD851184-9B39-4408-9E5E-2D094E2FD116} - System32\Tasks\{BF364FCF-D4BB-4369-A01D-67CB20BDE4B3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DE694C5C-D6FD-4828-9749-4AC59EED3A27} - System32\Tasks\{5C164C51-76ED-422C-89C3-4BCE1CD24F7D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DEDC2596-D2CE-4CEE-A96A-AEA3E8C4D6D8} - System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E1CEEC12-A98A-400A-94A8-70F54ECCD2E5} - System32\Tasks\{8A2B8C4A-9985-4FA9-A1D9-F3E8261ADB50} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E1DC9D40-03ED-433A-A191-AD3DD4DA2E73} - System32\Tasks\{29A48C6C-50CA-414B-A325-1EF81EC49328} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E2467213-C672-48F7-9200-9CC254111902} - System32\Tasks\{18ED4568-5495-49B6-8CFC-D40EF5049094} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E2EAA556-7078-4C54-889F-6D1F661B2BDC} - System32\Tasks\{C98CFBAA-EA27-4ADA-B6AB-0197C3F70008} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E3395E46-595C-4872-BB46-E2C235DB7D35} - System32\Tasks\{A1473651-78B1-47CF-8672-09740A6B40D1} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E3C43652-A149-43A3-A47B-109E3AC999D7} - System32\Tasks\{8EB56461-13EF-4007-911A-AD0D92F1855D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E458E3B4-E4A9-45B6-9C8F-1AEFB200DE53} - System32\Tasks\{CE0B937A-C529-4EA1-9AA4-E4652985B1FD} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E563D8EC-E5C7-4050-A9DF-3AB776BB9D41} - System32\Tasks\{49868C5E-B3A6-42A1-920E-8E6E257DE9D6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E5DACBB4-8D1E-46DA-8F61-7016290DD223} - System32\Tasks\{57659735-18FD-47F7-940C-4AB59571CB69} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E5DD14BB-8912-4873-B615-CB845DE6335C} - System32\Tasks\{450C0DC9-5726-40B6-A4BA-1A08A4EE395D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E61FB867-49EB-43F5-89E6-3D110CA074D7} - System32\Tasks\{5B2D8BC6-DC76-42C6-8D1F-508D1ECA7C37} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E65A7F91-7115-429B-B68E-4724DC32D7F4} - System32\Tasks\{99E4F184-2DE7-4AF2-B870-7A8BB4ABEC78} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E6657988-00C6-4A69-8814-8AE954151E17} - System32\Tasks\{72084956-7D69-4A1E-9420-7649E7DF4DEE} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E6875E39-A90E-4C48-953F-2416DCDB27D0} - System32\Tasks\{D0B5DBA7-6D6B-40EF-8F7D-E92E542CC522} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E7C446B5-53A2-4AEA-BE37-13FCD1A7E9CD} - System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E80EE1B9-728C-4AB9-A736-6D507E1F8D7C} - System32\Tasks\{A9CA13EE-311F-4AF4-9041-E0D0C695B061} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E86A7C77-51A7-46F0-8D0E-2881500D2DF3} - System32\Tasks\{097F7FAE-3D5E-414A-8EC3-3E10E23985FA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E940CB39-FAF4-4BC8-8A06-1DBDCD84476C} - System32\Tasks\{3FE7273F-6ABB-4721-BF55-9C28B94184E4} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E951069B-29BD-4278-998A-E03D24E00D42} - System32\Tasks\{B50A3E85-DA3E-4C8C-8BBE-C021B99432F1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EA5D488F-61EE-4AA0-9898-D4CB4C338744} - System32\Tasks\{3BFF2521-5CCA-418E-9774-188BE8DB2592} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EA640850-842B-46B6-9BE7-F69CC665DA69} - System32\Tasks\{D28652F4-92E8-41D3-8270-773D50A1D5F7} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EB72A6DA-13A2-44DB-B263-D3A5EEEBD7E8} - System32\Tasks\{18B90072-B14B-4A89-9E45-D7D0CDB77165} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EC3C5C19-4378-426F-B7C5-6B816BFCEFBB} - System32\Tasks\{EDEEC1AD-8E86-4EEB-A43B-4D22933CA595} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EC4CE3B0-59EF-49B6-9DFD-4E86DDD109B5} - System32\Tasks\{A452FFC4-AB07-49C8-997B-7E2F830626E0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {ED23D3C4-686F-46DA-9258-E15D30DFE701} - System32\Tasks\{6DF67DEB-789D-4E3C-8BC4-AA36CCD13C25} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EDBE8415-A47F-4C75-BF58-732A8A795B5A} - System32\Tasks\{D55A7617-F91D-4F6B-B395-2E893A95062D} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EE0169A6-124F-4CDC-B951-D6EED705C116} - System32\Tasks\{EB8375A8-C7CE-4C08-B046-707D3473CEEF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EE5AC558-E076-4DF3-A7C3-F5C104A8BB06} - System32\Tasks\{2E62E549-9AE8-49B6-A368-DA944EE30D04} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EEE3AC09-3E3A-407B-A1D1-ADF79622AFD4} - System32\Tasks\{1E6AA71E-257E-4B61-83C2-1CB518CFE37E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F025260F-C726-4DCD-868F-E3E813FB5779} - System32\Tasks\{672C4E35-F53A-4C5E-A7C8-CA11C0AD5EA0} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F07D5D1C-9BBC-4101-A7A4-59B26FB731BF} - System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F0BC64F0-FAAA-4A6E-8152-3425E5F73AF1} - System32\Tasks\{34C11B06-415F-4917-903D-679F221C884E} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F0D910B9-8840-4960-A301-9D8001447065} - System32\Tasks\{8D6152F6-26AC-4884-A71D-3CD13372B236} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F0F4EAC2-F8E2-46E1-AB05-D1ECF82FD2D4} - System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F22BC2CE-613C-47FC-BF96-2193A523E142} - System32\Tasks\{F3BF6FEF-17DF-4FAC-9D49-018116A1C3AB} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F46859AA-2D6F-4E2C-8FF8-06A774CA2485} - System32\Tasks\{A7D6DB46-5A4D-41B6-BACA-234B46C9C86B} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F4B4CB59-7013-464B-A9F9-489E023E32CC} - System32\Tasks\{80E00D96-F563-49CD-9091-7C448708BD72} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F4E77C07-B87B-4896-B64E-58999C18B79C} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-15] (CyberLink) Task: {F5056A8C-D62B-49A7-8DA4-9CDD0982DCF5} - System32\Tasks\{E89B961B-E980-45F5-9409-F7A46A63B431} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F58D2C16-9B48-493F-941A-A05954658C30} - System32\Tasks\{0B1F1DFE-B274-42FB-8889-26C08560EBA3} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F59B3A0D-E821-4139-8AE8-318177C723C8} - System32\Tasks\{F43A0E5F-B832-4E33-B80C-7B2870977586} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F608AAED-57B1-44A5-A401-1922EF451930} - System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F693C85B-04A3-4C34-83DE-08F3B25980B8} - System32\Tasks\{37079F30-A2D3-418E-9490-D380EA213216} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F820889F-D6B0-4D16-953C-DA47C9B1C9C8} - System32\Tasks\{2C5FFE47-CEDD-42A3-8514-920304060E3A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F8472150-D6E2-4D90-B398-70F2C191CA28} - System32\Tasks\{E12E4D3E-E100-44CD-91D2-F174288580FB} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F90074A6-B08C-4BE3-B402-74D193E76361} - System32\Tasks\{3B75CC1D-DBCF-4094-8E23-EC11E65471DC} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FA6C2368-66B0-4C2A-9E51-234A358918BB} - System32\Tasks\{3A3C7C63-1079-4DC8-A70E-FE178FA7A09C} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FA6E2353-5493-42B7-B0D8-C09EA40D97D9} - System32\Tasks\{87E9DA9F-9581-4C3E-A58D-D34C872D32EA} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FB37A940-5206-4CB3-91B9-03044A3CA54A} - System32\Tasks\{D38CF41E-6BF6-4A77-BEA4-E81191D1125F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FB46BD50-FDF3-4D19-9A28-C80F55B3E369} - System32\Tasks\{DF088D5D-C4F7-4CE4-9D5E-65501CA140AF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FBDEF0FB-75E4-4850-90D5-7E982D6C5ACF} - System32\Tasks\{E00C57FE-D84B-4057-99B8-C29B70CEB23C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FC0A8285-05B7-4158-95E3-5CEA20B96EF8} - System32\Tasks\{E0F34C33-94CF-46B1-9349-094344A86366} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FE05E7BD-8D2D-4DFB-A9A6-E70452087EF0} - System32\Tasks\{A21EC798-FA94-421E-93D8-8E1BB5281CB6} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FE732461-ABCB-42D0-A1A8-19B15B05B42E} - System32\Tasks\{8FB80B7F-F2A3-46A2-B225-CD075EAE96E1} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FE937549-2FFB-40A2-9325-A725DD3BD12E} - System32\Tasks\{0EADFDC2-1610-4627-A2CC-95EAC9307E9A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FED9EF1A-01B6-4722-90BE-FFD7CC3D52FE} - System32\Tasks\{C66BC284-1E11-4EE4-9BF5-882E6E88468F} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FF1D6733-3D61-4E04-8B78-D4843F8E9135} - System32\Tasks\{77A81C67-5E0B-4BD1-B511-D123AAB43839} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FF24755C-A1EF-4E97-A524-133C697E428E} - System32\Tasks\{AE1E06DC-7F82-4F4A-A868-352079296C65} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FF69854F-C4CE-4A3A-8E16-584E07B09747} - System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FFE19EBA-9E4A-4089-8C7E-AC907DC21668} - System32\Tasks\{B28A4751-932A-46CA-94FB-312839FDA565} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Digital Sites.job => C:\Users\Paul\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForPaul.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2011-04-15 19:16 - 2011-04-15 19:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2011-06-27 15:18 - 2011-06-27 15:18 - 00107320 _____ () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe 2011-05-12 13:13 - 2011-05-12 13:13 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-05-08 01:23 - 2011-05-08 01:23 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2014-02-09 16:31 - 2014-02-09 12:31 - 02172928 _____ () C:\Program Files\AVAST Software\Avast\defs\14020900\algo.dll 2014-02-09 16:27 - 2014-02-09 16:27 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-08-25 19:07 - 2013-08-25 19:07 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\f60b3ee2de3f41a024920486d46d49f2\IsdiInterop.ni.dll 2011-09-23 00:35 - 2011-04-29 23:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-02-06 19:52 - 2014-02-06 19:52 - 03583600 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\Temp:AD022376 ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/09/2014 05:00:59 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi Error: (02/09/2014 04:45:38 PM) (Source: MsiInstaller) (User: Paul-HP) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi Error: (02/09/2014 04:43:55 PM) (Source: MsiInstaller) (User: Paul-HP) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi Error: (02/09/2014 04:35:14 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/09/2014 04:33:02 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (02/09/2014 04:33:02 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (02/09/2014 04:26:45 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary eqdzxeus. System Error: Das System kann die angegebene Datei nicht finden. . Error: (02/09/2014 04:20:59 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/09/2014 04:19:44 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC Error: (02/09/2014 04:19:44 PM) (Source: ATIeRecord) (User: ) Description: ATI EEU failed to post message to CCC System errors: ============= Error: (02/09/2014 05:01:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (02/09/2014 04:45:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (02/09/2014 04:44:17 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (02/08/2014 11:21:42 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (02/08/2014 05:11:05 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (02/08/2014 00:08:37 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst HPWMISVC erreicht. Error: (02/08/2014 00:08:37 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows-Biometriedienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/08/2014 00:08:37 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Biometriedienst erreicht. Error: (02/07/2014 06:55:37 PM) (Source: Service Control Manager) (User: ) Description: Dienst "TrueSuiteService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/07/2014 06:55:25 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst HPWMISVC erreicht. Microsoft Office Sessions: ========================= Error: (02/09/2014 05:00:59 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (02/09/2014 04:45:38 PM) (Source: MsiInstaller)(User: Paul-HP) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (02/09/2014 04:43:55 PM) (Source: MsiInstaller)(User: Paul-HP) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (02/09/2014 04:35:14 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/09/2014 04:33:02 PM) (Source: ATIeRecord)(User: ) Description: Error: (02/09/2014 04:33:02 PM) (Source: ATIeRecord)(User: ) Description: Error: (02/09/2014 04:26:45 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary eqdzxeus. System Error: Das System kann die angegebene Datei nicht finden. Error: (02/09/2014 04:20:59 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/09/2014 04:19:44 PM) (Source: ATIeRecord)(User: ) Description: Error: (02/09/2014 04:19:44 PM) (Source: ATIeRecord)(User: ) Description: ==================== Memory info =========================== Percentage of memory in use: 43% Total physical RAM: 6091.86 MB Available physical RAM: 3434.07 MB Total Pagefile: 12181.9 MB Available Pagefile: 9483.66 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:678.21 GB) (Free:578.98 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Recovery) (Fixed) (Total:16.26 GB) (Free:1.76 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:3.95 GB) FAT32 Drive f: (<OPEN_SEASON_2>) (CDROM) (Total:7.93 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: F36AF300) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=678 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=4 GB) - (Type=0C) ==================== End Of Log =========== |
10.02.2014, 16:23 | #5 |
/// the machine /// TB-Ausbilder | Trojan.Fake MS gefunden Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
10.02.2014, 19:39 | #6 |
| Trojan.Fake MS gefunden Hallo, erledigt, aber würde gerne wissen ob ich avast wieder draufspielen soll oder junkware behalten? Antimalwarebytes findet nix mehr, keine Ahnung wieso. LG Horatius Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.02.10.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Paul :: PAUL-HP [Administrator] 10.02.2014 17:23:33 mbam-log-2014-02-10 (17-23-33).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|Q:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 519485 Laufzeit: 1 Stunde(n), 45 Minute(n), 38 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 10/02/2014 um 19:11:57 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Paul - PAUL-HP # Gestartet von : C:\Users\Paul\Downloads\adwcleaner(2).exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Paul\AppData\Local\Temp\Uninstall.exe ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v0.0.0.0 -\\ Mozilla Firefox v27.0 (de) [ Datei : C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\prefs.js ] -\\ Google Chrome v32.0.1700.107 [ Datei : C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [5039 octets] - [08/02/2014 23:44:29] AdwCleaner[R1].txt - [1039 octets] - [09/02/2014 16:11:19] AdwCleaner[R2].txt - [1100 octets] - [09/02/2014 16:22:08] AdwCleaner[R3].txt - [1283 octets] - [10/02/2014 19:10:52] AdwCleaner[S0].txt - [4284 octets] - [08/02/2014 23:46:52] AdwCleaner[S1].txt - [1162 octets] - [09/02/2014 16:33:02] AdwCleaner[S2].txt - [1204 octets] - [10/02/2014 19:11:57] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1264 octets] ########## Junkmal Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.1 (02.04.2014:1) OS: Windows 7 Home Premium x64 Ran by Paul on 10.02.2014 at 19:18:15,13 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{42218EA0-A1A3-4FAE-BBF7-7482498E8022} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{42218EA0-A1A3-4FAE-BBF7-7482498E8022} ~~~ Files Successfully deleted: [File] C:\Windows\syswow64\sho1C66.tmp Successfully deleted: [File] C:\Windows\syswow64\shoEC0D.tmp ~~~ Folders Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{00D742DA-8F1D-438A-A536-1E0A914B44C1} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{0B2659D7-69CA-4F68-BFB0-3BE72E609F6B} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{0E1050BF-0855-43EC-AACC-5F0D819C4C3F} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{0F517178-46A2-4E8B-8FC4-7F9CD7262018} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{492184E0-D16A-472D-8CFF-F042F2C5F248} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{61A61AA3-B18D-43F5-B108-2D1142C008F4} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{667A29D9-553A-40FC-A0EE-B9C57512AE22} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{6D23A4C2-3855-482A-BD6D-560D1E5C6E08} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{71BF079B-9DFA-4CB6-ACA7-56B67685DBF5} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{87E90A35-56F6-46B1-83DA-13831059BE4D} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{911FCAC3-83C9-4EE1-BFB8-95372CCFA7C9} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{98652F99-519C-4F87-BA85-111015DE552E} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{9C8EE242-B892-43CD-97D2-EAABDE18BACC} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{A8DE3F2A-7B30-4F4A-BD47-594AADF005A1} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{C54D5756-450D-4B3B-BBB1-6682EACAF3BE} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{D439F12F-D108-4DF0-9B6E-51E26139A457} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{E4B8800D-3477-4BC7-AF16-49CEDB3AF24F} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{F8D85333-BB91-4B51-857F-D09AE0937214} Successfully deleted: [Empty Folder] C:\Users\Paul\appdata\local\{FA225918-70AF-4609-A811-68E055EEE81B} ~~~ FireFox Emptied folder: C:\Users\Paul\AppData\Roaming\mozilla\firefox\profiles\sf21ow05.default\minidumps [604 files] ~~~ Chrome Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 10.02.2014 at 19:30:43,99 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 Ran by Paul (administrator) on PAUL-HP on 10-02-2014 19:37:33 Running from C:\Users\Paul\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\Setup\Instup.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\SysWOW64\NOTEPAD.EXE (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-06-07] (IDT, Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-05-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-04-29] (Intel Corporation) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-28] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-05-17] (EasyBits Software AS) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [577408 2012-02-15] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [ROC_roc_ssl_v12] - "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12 HKLM-x32\...\Run: [G Data AntiVirus Tray Application] - C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe HKLM-x32\...\Run: [GDFirewallTray] - C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17148552 2012-02-29] (Skype Technologies S.A.) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Spotify Web Helper] - C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-17] (Spotify Ltd) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {172648e2-11e5-11e2-9ef4-ec9a744579e9} - H:\aocsetup.exe /autorun HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {55b824f9-63e3-11e3-bc94-ec9a744579e9} - G:\aocsetup.exe /autorun ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 SearchScopes: HKLM - {42218EA0-A1A3-4FAE-BBF7-7482498E8022} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-07-15] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{C2076005-C392-4D5B-8939-64D0275E4723}: [NameServer]192.168.178.22,192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default FF SelectedSearchEngine: Google FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-12-03] FF Extension: Adblock Plus - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-19] FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com [2014-02-07] FF HKLM-x32\...\Firefox\Extensions: [{F53C93F1-07D5-430c-86D4-C9531B27DFAF}] - C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\ Chrome: ======= CHR Extension: (Google Docs) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-11] CHR Extension: (Google Drive) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-11] CHR Extension: (YouTube) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-11] CHR Extension: (Google-Suche) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-11] CHR Extension: (avast! Online Security) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-11] CHR Extension: (Google Wallet) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-11] CHR Extension: (Google Mail) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-11] ==================== Services (Whitelisted) ================= ==================== Drivers (Whitelisted) ==================== S3 ElgatoGC658Y; C:\Windows\System32\Drivers\ElgatoGC658.sys [50288 2012-11-12] (UB658) S3 X6va006; \??\C:\Users\Paul\AppData\Local\Temp\0061110.tmp [X] S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X] S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-10 19:37 - 2014-02-10 19:37 - 00000000 ____D () C:\Users\Paul\Downloads\FRST-OlderVersion 2014-02-10 19:30 - 2014-02-10 19:30 - 00003496 _____ () C:\Users\Paul\Desktop\JRT.txt 2014-02-10 19:18 - 2014-02-10 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 19:17 - 2014-02-10 19:17 - 01037530 _____ (Thisisu) C:\Users\Paul\Downloads\JRT.exe 2014-02-10 19:10 - 2014-02-10 19:10 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(2).exe 2014-02-10 17:29 - 2014-02-10 17:30 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(1).exe 2014-02-10 17:24 - 2014-02-10 17:24 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner.exe 2014-02-10 17:20 - 2014-02-10 17:20 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-10 17:20 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-10 17:18 - 2014-02-10 17:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paul\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-02-10 17:14 - 2014-02-10 17:14 - 00003112 _____ () C:\Windows\System32\Tasks\{F675B34E-3058-4485-9528-22231E7256C3} 2014-02-09 22:39 - 2014-02-09 22:39 - 00003112 _____ () C:\Windows\System32\Tasks\{5D5FE240-81C8-4302-80C7-00D06776AE54} 2014-02-09 18:59 - 2014-02-09 19:00 - 00106946 _____ () C:\Users\Paul\Downloads\Addition.txt 2014-02-09 18:57 - 2014-02-10 19:37 - 00014950 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-09 18:57 - 2014-02-10 19:37 - 00000000 ____D () C:\FRST 2014-02-09 18:56 - 2014-02-10 19:37 - 02150400 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:28 - 2014-02-09 16:28 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-09 16:27 - 2014-02-09 16:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-09 16:27 - 2014-02-09 16:27 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 12:17 - 2014-02-09 12:20 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:12 - 2014-02-09 12:13 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:04 - 2014-02-09 00:04 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:53 - 2014-02-08 23:58 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:43 - 2014-02-10 19:12 - 00000000 ____D () C:\AdwCleaner 2014-02-08 23:29 - 2014-02-10 19:31 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-08 23:29 - 2014-02-09 16:08 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-08 23:29 - 2014-02-08 23:31 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:40 - 2014-02-06 21:41 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 20:29 - 2014-02-06 21:30 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:27 - 2014-02-06 20:29 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:24 - 2014-02-06 20:25 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:16 - 2014-01-20 14:40 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-20 14:06 - 2014-01-21 01:50 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 02:13 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 02:13 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-16 02:13 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-14 23:19 - 2014-01-14 23:22 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe ==================== One Month Modified Files and Folders ======= 2014-02-10 19:38 - 2014-02-09 18:57 - 00014950 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-10 19:37 - 2014-02-10 19:37 - 00000000 ____D () C:\Users\Paul\Downloads\FRST-OlderVersion 2014-02-10 19:37 - 2014-02-09 18:57 - 00000000 ____D () C:\FRST 2014-02-10 19:37 - 2014-02-09 18:56 - 02150400 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-10 19:31 - 2014-02-08 23:29 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-10 19:30 - 2014-02-10 19:30 - 00003496 _____ () C:\Users\Paul\Desktop\JRT.txt 2014-02-10 19:20 - 2012-04-02 15:49 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{980E7BE0-EA59-48D0-9195-D39DC2EC0B3A} 2014-02-10 19:20 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-10 19:20 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-10 19:18 - 2014-02-10 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 19:17 - 2014-02-10 19:17 - 01037530 _____ (Thisisu) C:\Users\Paul\Downloads\JRT.exe 2014-02-10 19:15 - 2012-04-02 16:10 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Skype 2014-02-10 19:13 - 2013-12-11 18:54 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-10 19:13 - 2013-05-29 06:11 - 00019091 _____ () C:\Windows\setupact.log 2014-02-10 19:13 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-10 19:12 - 2014-02-08 23:43 - 00000000 ____D () C:\AdwCleaner 2014-02-10 19:12 - 2011-09-23 00:37 - 01594579 _____ () C:\Windows\WindowsUpdate.log 2014-02-10 19:10 - 2014-02-10 19:10 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(2).exe 2014-02-10 18:52 - 2013-12-11 18:54 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-10 18:13 - 2012-04-02 16:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-10 17:30 - 2014-02-10 17:29 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(1).exe 2014-02-10 17:24 - 2014-02-10 17:24 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner.exe 2014-02-10 17:20 - 2014-02-10 17:20 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-10 17:20 - 2013-03-04 18:14 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-10 17:18 - 2014-02-10 17:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paul\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-02-10 17:14 - 2014-02-10 17:14 - 00003112 _____ () C:\Windows\System32\Tasks\{F675B34E-3058-4485-9528-22231E7256C3} 2014-02-10 17:14 - 2012-04-02 16:10 - 00000000 ____D () C:\ProgramData\Skype 2014-02-10 11:46 - 2013-08-16 08:46 - 01249432 _____ () C:\Windows\PFRO.log 2014-02-09 22:39 - 2014-02-09 22:39 - 00003112 _____ () C:\Windows\System32\Tasks\{5D5FE240-81C8-4302-80C7-00D06776AE54} 2014-02-09 19:00 - 2014-02-09 18:59 - 00106946 _____ () C:\Users\Paul\Downloads\Addition.txt 2014-02-09 17:20 - 2012-04-02 18:26 - 00000000 ____D () C:\Users\Paul\AppData\Local\Adobe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:10 - 2011-07-15 21:16 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:28 - 2014-02-09 16:28 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-09 16:27 - 2014-02-09 16:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-09 16:27 - 2014-02-09 16:27 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-09 16:26 - 2013-11-10 01:08 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 16:08 - 2014-02-08 23:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-09 12:20 - 2014-02-09 12:17 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:13 - 2014-02-09 12:12 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:04 - 2014-02-09 00:04 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:58 - 2014-02-08 23:53 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:31 - 2014-02-08 23:29 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-08 23:15 - 2012-04-02 15:44 - 00000000 ____D () C:\Users\Paul 2014-02-08 23:14 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-02-08 19:29 - 2012-04-03 17:15 - 00000000 ____D () C:\Users\Paul\AppData\Local\CrashDumps 2014-02-07 18:53 - 2012-04-24 20:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:44 - 2013-10-03 18:31 - 00000000 _____ () C:\dfu.log 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Users\Paul\Downloads\Gameforge Live 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Program Files (x86)\GameforgeLive 2014-02-06 21:41 - 2014-02-06 21:40 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 21:30 - 2014-02-06 20:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:29 - 2014-02-06 20:27 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:25 - 2014-02-06 19:24 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 20:23 - 2014-01-06 23:31 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-02-06 20:23 - 2014-01-06 23:30 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:13 - 2012-04-02 16:33 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-06 19:13 - 2012-04-02 16:33 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-06 19:13 - 2011-07-15 21:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-06 16:28 - 2011-07-16 06:32 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-06 16:28 - 2011-07-16 06:32 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-06 16:28 - 2009-07-14 06:13 - 01614892 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-06 16:07 - 2012-10-09 17:10 - 00000000 ____D () C:\Program Files (x86)\Elaborate Bytes 2014-02-06 16:07 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\HP Games 2014-02-06 16:07 - 2011-07-15 20:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-02-06 16:06 - 2013-08-09 18:43 - 00000000 ____D () C:\Program Files (x86)\Zattoo4 2014-02-06 16:06 - 2012-05-28 14:39 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-02-06 16:06 - 2012-04-02 16:10 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-06 16:06 - 2011-07-15 21:20 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-06 16:06 - 2011-07-15 21:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-02-06 16:06 - 2011-07-15 21:12 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-06 16:06 - 2011-07-15 21:11 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\ProgramData\WildTangent 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2014-02-06 16:06 - 2011-07-15 21:03 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-02-06 16:06 - 2011-06-14 05:09 - 00000000 ____D () C:\Program Files\Hewlett-Packard 2014-02-06 16:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-06 00:22 - 2011-07-15 21:15 - 00000000 ____D () C:\Windows\de 2014-02-06 00:11 - 2012-12-02 20:31 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Ubisoft 2014-02-06 00:11 - 2011-07-15 21:10 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-02-06 00:10 - 2012-09-02 00:25 - 00000000 ____D () C:\Riot Games 2014-02-06 00:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-03 20:55 - 2013-12-11 18:56 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-03 01:43 - 2012-12-19 13:40 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\SoftGrid Client 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-21 01:50 - 2014-01-20 14:06 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:40 - 2014-01-20 14:16 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 17:22 - 2009-07-14 05:45 - 00308824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-16 17:04 - 2013-08-25 00:10 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-16 17:00 - 2012-11-06 18:51 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 03:34 - 2012-05-08 21:21 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPaul 2014-01-15 03:34 - 2012-05-08 21:21 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPaul.job 2014-01-14 23:22 - 2014-01-14 23:19 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe Files to move or delete: ==================== C:\Users\Paul\AppData\Roaming\Camdata.ini C:\Users\Paul\AppData\Roaming\CamLayout.ini C:\Users\Paul\AppData\Roaming\CamShapes.ini Some content of TEMP: ==================== C:\Users\Paul\AppData\Local\Temp\8a17f42b187eedf1a91c3ce5aec8044d.dll C:\Users\Paul\AppData\Local\Temp\Quarantine.exe C:\Users\Paul\AppData\Local\Temp\swt-win32-3740.dll C:\Users\Paul\AppData\Local\Temp\_is6173.exe C:\Users\Paul\AppData\Local\Temp\_isB6D3.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 05:08 ==================== End Of Log ============================ |
11.02.2014, 17:32 | #7 |
/// the machine /// TB-Ausbilder | Trojan.Fake MS gefunden Junkware? das ist doch kein AV Programm. Installiere Avast als Beispiel. ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.02.2014, 22:59 | #8 |
| Trojan.Fake MS gefunden hallo und entschuldigung, aber ich frage lieber nochmal nach. Für was brauche ich wechseldatenträger, werden meine Daten dadurch eventuell beschädigt? Vielen Dank im vorraus so ok. nix besonderes gefunden-,- Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=1c14e5a16db9cf438161cb45c11f4bc0 # engine=17000 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2014-02-09 02:38:49 # local_time=2014-02-09 03:38:49 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 71 77 215161 2178902 0 0 # compatibility_mode=1036 16777214 0 0 11636102 11636102 0 0 # compatibility_mode=5893 16776573 100 94 13873 143543379 0 0 # scanned=268046 # found=16 # cleaned=16 # scan_time=12602 sh=16068B8977B4DC562AE782D91BC009472667E331 ft=1 fh=c3b5a87b7d152749 vn="Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\Paul\AppData\Local\Temp\OCS\ocs_v71a.exe.vir" sh=9F82BB5DC8D4EC6B8B2BB47CB6C329B8AF1C14CE ft=1 fh=c92ed1f3ca58c043 vn="Win32/InstallCore.AZ evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\Paul\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\Zip Opener Packages\uninstaller.exe.vir" sh=D296F22D4477AD8DE884BB6D1274C90C24FE0F2E ft=1 fh=c71c0011e2863fe3 vn="Variante von Win32/InstallCore.JH evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\ICReinstall_ZipSetup.exe" sh=A836A8346F791EC8A83B51BC78E84B2F6659E6DA ft=1 fh=0a2e45c370149901 vn="Win32/Wajam.F evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\871826_stp\wajam_validate.exe" sh=3631D73FAA370E5ACE58BE68D8F9AA9C20ABF724 ft=1 fh=a68aa271a6c3c558 vn="Variante von Win32/Toolbar.Funmoods.D evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\871996_stp\FoxtabNTBSetup.exe" sh=9F82BB5DC8D4EC6B8B2BB47CB6C329B8AF1C14CE ft=1 fh=c92ed1f3ca58c043 vn="Win32/InstallCore.AZ evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\872236_stp\uninstaller.exe" sh=A836A8346F791EC8A83B51BC78E84B2F6659E6DA ft=1 fh=0a2e45c370149901 vn="Win32/Wajam.F evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\933757_stp\wajam_validate.exe" sh=A836A8346F791EC8A83B51BC78E84B2F6659E6DA ft=1 fh=0a2e45c370149901 vn="Win32/Wajam.F evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\967208_stp\wajam_validate.exe" sh=9F82BB5DC8D4EC6B8B2BB47CB6C329B8AF1C14CE ft=1 fh=c92ed1f3ca58c043 vn="Win32/InstallCore.AZ evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\AppData\Local\Temp\is357113909\967316_stp\uninstaller.exe" sh=9DFA01D2389F323B42E8F9D96B9EE8FE01A3FB16 ft=1 fh=24aca77a98a8bb07 vn="Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\AdwCleaner - CHIP-Downloader.exe" sh=987C105596E1851BDA516A0B291F80060F1A302C ft=1 fh=6ba17f86d3d5e0e6 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\avira_free_antivirus_de.exe" sh=9B9591DB2FF219D15BC0DB97E6073C8F313CB53F ft=1 fh=584d2b9399f08440 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\avira_free_antivirus_de_13b2761.exe" sh=B876F5F15137EF8A1680C2AC04DC786D2A191DC9 ft=1 fh=850ac12ce80cbbb1 vn="Win32/Bundled.Toolbar.Google.E potenziell unsichere Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\ccsetup322.exe" sh=1979102F68405587B6CA9828DBB316498985701D ft=1 fh=911397e5e572cee5 vn="Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\OpenOffice - CHIP-Downloader.exe" sh=D296F22D4477AD8DE884BB6D1274C90C24FE0F2E ft=1 fh=c71c0011e2863fe3 vn="Variante von Win32/InstallCore.JH evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\ZipSetup(1).exe" sh=D296F22D4477AD8DE884BB6D1274C90C24FE0F2E ft=1 fh=c71c0011e2863fe3 vn="Variante von Win32/InstallCore.JH evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Paul\Downloads\ZipSetup.exe" ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=1c14e5a16db9cf438161cb45c11f4bc0 # engine=17030 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-02-11 09:39:25 # local_time=2014-02-11 10:39:25 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 71 77 19720 23336 0 0 # compatibility_mode=1036 16777214 0 0 11877338 11877338 0 0 # compatibility_mode=5893 16776574 100 94 21620 143784615 0 0 # scanned=264594 # found=0 # cleaned=0 # scan_time=15122 Code:
ATTFilter Results of screen317's Security Check version 0.99.79 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Adobe Flash Player 11.9.900.170 Adobe Reader XI Mozilla Firefox (27.0) Google Chrome 32.0.1700.102 Google Chrome 32.0.1700.107 ````````Process Check: objlist.exe by Laurent```````` AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` so die FRST logfiles FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01 Ran by Paul (administrator) on PAUL-HP on 11-02-2014 22:57:10 Running from C:\Users\Paul\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE (Microsoft Corporation) C:\Windows\system32\taskmgr.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-06-07] (IDT, Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-05-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-04-29] (Intel Corporation) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-28] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [318520 2011-01-27] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-05-17] (EasyBits Software AS) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [577408 2012-02-15] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [ROC_roc_ssl_v12] - "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12 HKLM-x32\...\Run: [G Data AntiVirus Tray Application] - C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe HKLM-x32\...\Run: [GDFirewallTray] - C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-11] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17148552 2012-02-29] (Skype Technologies S.A.) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Run: [Spotify Web Helper] - C:\Users\Paul\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-17] (Spotify Ltd) HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {172648e2-11e5-11e2-9ef4-ec9a744579e9} - H:\aocsetup.exe /autorun HKU\S-1-5-21-1086640771-1515786111-1324639581-1000\...\MountPoints2: {55b824f9-63e3-11e3-bc94-ec9a744579e9} - G:\aocsetup.exe /autorun ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 SearchScopes: HKLM - {42218EA0-A1A3-4FAE-BBF7-7482498E8022} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No File BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-07-15] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{C2076005-C392-4D5B-8939-64D0275E4723}: [NameServer]192.168.178.22,192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default FF SelectedSearchEngine: Google FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-12-03] FF Extension: Adblock Plus - C:\Users\Paul\AppData\Roaming\Mozilla\Firefox\Profiles\sf21ow05.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-19] FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com [2014-02-07] FF HKLM-x32\...\Firefox\Extensions: [{F53C93F1-07D5-430c-86D4-C9531B27DFAF}] - C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\ FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-02-11] Chrome: ======= CHR Extension: (Google Docs) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-11] CHR Extension: (Google Drive) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-11] CHR Extension: (YouTube) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-11] CHR Extension: (Google-Suche) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-11] CHR Extension: (Google Wallet) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-11] CHR Extension: (Google Mail) - C:\Users\Paul\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-11] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-02-11] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-11] (AVAST Software) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-02-11] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-02-11] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-02-11] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-02-11] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-02-11] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-02-11] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-02-11] () S3 ElgatoGC658Y; C:\Windows\System32\Drivers\ElgatoGC658.sys [50288 2012-11-12] (UB658) S3 X6va006; \??\C:\Users\Paul\AppData\Local\Temp\0061110.tmp [X] S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X] S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-11 22:50 - 2014-02-11 22:50 - 00987425 _____ () C:\Users\Paul\Downloads\SecurityCheck.exe 2014-02-11 18:10 - 2014-02-11 18:11 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_enu.exe 2014-02-11 17:11 - 2014-02-11 17:11 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-11 17:10 - 2014-02-11 17:11 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-11 17:10 - 2014-02-11 17:10 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-02-11 17:10 - 2014-02-11 17:10 - 00207904 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-11 17:09 - 2014-02-11 17:09 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-11 17:02 - 2014-02-11 17:05 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013(1).exe 2014-02-11 17:01 - 2014-02-11 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D0D8B392-2972-42F1-A296-22C26ED6C00B} 2014-02-10 19:37 - 2014-02-11 22:56 - 00000000 ____D () C:\Users\Paul\Downloads\FRST-OlderVersion 2014-02-10 19:30 - 2014-02-10 19:30 - 00003496 _____ () C:\Users\Paul\Desktop\JRT.txt 2014-02-10 19:18 - 2014-02-10 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 19:17 - 2014-02-10 19:17 - 01037530 _____ (Thisisu) C:\Users\Paul\Downloads\JRT.exe 2014-02-10 19:10 - 2014-02-10 19:10 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(2).exe 2014-02-10 17:29 - 2014-02-10 17:30 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(1).exe 2014-02-10 17:24 - 2014-02-10 17:24 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner.exe 2014-02-10 17:20 - 2014-02-10 17:20 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-10 17:20 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-10 17:18 - 2014-02-10 17:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paul\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-02-10 17:14 - 2014-02-10 17:14 - 00003112 _____ () C:\Windows\System32\Tasks\{F675B34E-3058-4485-9528-22231E7256C3} 2014-02-09 22:39 - 2014-02-09 22:39 - 00003112 _____ () C:\Windows\System32\Tasks\{5D5FE240-81C8-4302-80C7-00D06776AE54} 2014-02-09 18:59 - 2014-02-09 19:00 - 00106946 _____ () C:\Users\Paul\Downloads\Addition.txt 2014-02-09 18:57 - 2014-02-11 22:57 - 00016535 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-09 18:57 - 2014-02-11 22:57 - 00000000 ____D () C:\FRST 2014-02-09 18:56 - 2014-02-11 22:56 - 02151424 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 12:17 - 2014-02-09 12:20 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:12 - 2014-02-09 12:13 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:04 - 2014-02-11 22:49 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:53 - 2014-02-08 23:58 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:43 - 2014-02-10 19:12 - 00000000 ____D () C:\AdwCleaner 2014-02-08 23:29 - 2014-02-11 22:31 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-08 23:29 - 2014-02-09 16:08 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-08 23:29 - 2014-02-08 23:31 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:40 - 2014-02-06 21:41 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 20:29 - 2014-02-06 21:30 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:27 - 2014-02-06 20:29 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:24 - 2014-02-06 20:25 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:16 - 2014-01-20 14:40 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-20 14:06 - 2014-01-21 01:50 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 02:13 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 02:13 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 02:13 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-16 02:13 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-14 23:19 - 2014-01-14 23:22 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe ==================== One Month Modified Files and Folders ======= 2014-02-11 22:57 - 2014-02-09 18:57 - 00016535 _____ () C:\Users\Paul\Downloads\FRST.txt 2014-02-11 22:57 - 2014-02-09 18:57 - 00000000 ____D () C:\FRST 2014-02-11 22:56 - 2014-02-10 19:37 - 00000000 ____D () C:\Users\Paul\Downloads\FRST-OlderVersion 2014-02-11 22:56 - 2014-02-09 18:56 - 02151424 _____ (Farbar) C:\Users\Paul\Downloads\FRST64.exe 2014-02-11 22:52 - 2013-12-11 18:54 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-11 22:52 - 2013-12-11 18:54 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-11 22:50 - 2014-02-11 22:50 - 00987425 _____ () C:\Users\Paul\Downloads\SecurityCheck.exe 2014-02-11 22:50 - 2012-04-02 16:10 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Skype 2014-02-11 22:49 - 2014-02-09 00:04 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-11 22:31 - 2014-02-08 23:29 - 00000288 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-11 22:31 - 2012-04-02 15:49 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{980E7BE0-EA59-48D0-9195-D39DC2EC0B3A} 2014-02-11 22:13 - 2012-04-02 16:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-11 22:02 - 2011-09-23 00:37 - 01847613 _____ () C:\Windows\WindowsUpdate.log 2014-02-11 18:29 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-11 18:29 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-11 18:21 - 2013-08-16 08:46 - 01599066 _____ () C:\Windows\PFRO.log 2014-02-11 18:21 - 2013-05-29 06:11 - 00019259 _____ () C:\Windows\setupact.log 2014-02-11 18:21 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-11 18:11 - 2014-02-11 18:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_enu.exe 2014-02-11 17:11 - 2014-02-11 17:11 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\AVAST Software 2014-02-11 17:11 - 2014-02-11 17:10 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-11 17:10 - 2014-02-11 17:10 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-02-11 17:10 - 2014-02-11 17:10 - 00207904 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-02-11 17:10 - 2014-02-11 17:10 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-02-11 17:09 - 2014-02-11 17:09 - 00000000 ____D () C:\Program Files\AVAST Software 2014-02-11 17:09 - 2013-11-10 01:08 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-02-11 17:05 - 2014-02-11 17:02 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013(1).exe 2014-02-11 17:01 - 2014-02-11 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D0D8B392-2972-42F1-A296-22C26ED6C00B} 2014-02-11 17:01 - 2012-04-02 16:10 - 00000000 ____D () C:\ProgramData\Skype 2014-02-10 19:30 - 2014-02-10 19:30 - 00003496 _____ () C:\Users\Paul\Desktop\JRT.txt 2014-02-10 19:18 - 2014-02-10 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 19:17 - 2014-02-10 19:17 - 01037530 _____ (Thisisu) C:\Users\Paul\Downloads\JRT.exe 2014-02-10 19:12 - 2014-02-08 23:43 - 00000000 ____D () C:\AdwCleaner 2014-02-10 19:10 - 2014-02-10 19:10 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(2).exe 2014-02-10 17:30 - 2014-02-10 17:29 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner(1).exe 2014-02-10 17:24 - 2014-02-10 17:24 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner.exe 2014-02-10 17:20 - 2014-02-10 17:20 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-10 17:20 - 2013-03-04 18:14 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-10 17:18 - 2014-02-10 17:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paul\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-02-10 17:14 - 2014-02-10 17:14 - 00003112 _____ () C:\Windows\System32\Tasks\{F675B34E-3058-4485-9528-22231E7256C3} 2014-02-09 22:39 - 2014-02-09 22:39 - 00003112 _____ () C:\Windows\System32\Tasks\{5D5FE240-81C8-4302-80C7-00D06776AE54} 2014-02-09 19:00 - 2014-02-09 18:59 - 00106946 _____ () C:\Users\Paul\Downloads\Addition.txt 2014-02-09 17:20 - 2012-04-02 18:26 - 00000000 ____D () C:\Users\Paul\AppData\Local\Adobe 2014-02-09 17:10 - 2014-02-09 17:10 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-02-09 17:10 - 2011-07-15 21:16 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-09 17:09 - 2014-02-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-09 17:00 - 2014-02-09 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{FB2ECA5C-55B7-40B6-867F-866EC1CC97B8} 2014-02-09 16:45 - 2014-02-09 16:45 - 00003094 _____ () C:\Windows\System32\Tasks\{A7936CF1-D702-4B29-8F47-D2A6292FC191} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003126 _____ () C:\Windows\System32\Tasks\{8223F1AD-2BAF-4DEA-9874-52137F94713F} 2014-02-09 16:43 - 2014-02-09 16:43 - 00003094 _____ () C:\Windows\System32\Tasks\{C8C45B3B-AAD1-4AE6-80B3-E781A79BE37D} 2014-02-09 16:11 - 2014-02-09 16:11 - 01166132 _____ () C:\Users\Paul\Downloads\adwcleaner-3.018.exe 2014-02-09 16:08 - 2014-02-08 23:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\DigitalSites 2014-02-09 12:20 - 2014-02-09 12:17 - 90578216 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2013.exe 2014-02-09 12:13 - 2014-02-09 12:12 - 01681800 _____ (ESET) C:\Users\Paul\Downloads\eset_nod32_antivirus_live_installer_.exe 2014-02-09 00:44 - 2014-02-09 00:44 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_(1).exe 2014-02-09 00:31 - 2014-02-09 00:31 - 00000044 _____ () C:\Users\Paul\AppData\Roaming\WB.CFG 2014-02-09 00:10 - 2014-02-09 00:10 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu(1).exe 2014-02-09 00:07 - 2014-02-09 00:07 - 01581384 _____ (ESET) C:\Users\Paul\Downloads\eset_smart_security_live_installer_.exe 2014-02-09 00:03 - 2014-02-09 00:03 - 02347384 _____ (ESET) C:\Users\Paul\Downloads\esetsmartinstaller_deu.exe 2014-02-08 23:58 - 2014-02-08 23:53 - 101331736 _____ (Microsoft Corporation) C:\Users\Paul\Downloads\msert.exe 2014-02-08 23:31 - 2014-02-08 23:29 - 00003224 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-02-08 23:29 - 2014-02-08 23:29 - 00000000 ____D () C:\Program Files (x86)\Foxtab 2014-02-08 23:21 - 2014-02-08 23:21 - 00003112 _____ () C:\Windows\System32\Tasks\{103168AC-F0F5-4110-A492-5E1AEA47795E} 2014-02-08 23:15 - 2012-04-02 15:44 - 00000000 ____D () C:\Users\Paul 2014-02-08 23:14 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-02-08 19:29 - 2012-04-03 17:15 - 00000000 ____D () C:\Users\Paul\AppData\Local\CrashDumps 2014-02-07 18:53 - 2012-04-24 20:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-06 22:57 - 2014-02-06 22:57 - 00003112 _____ () C:\Windows\System32\Tasks\{9A8A0FA2-EF05-4E60-B73D-C26530A20FFA} 2014-02-06 21:44 - 2013-10-03 18:31 - 00000000 _____ () C:\dfu.log 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Users\Paul\Downloads\Gameforge Live 2014-02-06 21:44 - 2013-10-03 18:30 - 00000000 ____D () C:\Program Files (x86)\GameforgeLive 2014-02-06 21:41 - 2014-02-06 21:40 - 20439920 _____ (Gameforge ) C:\Users\Paul\Downloads\SKILL_GameforgeLiveSetup(2).exe 2014-02-06 21:30 - 2014-02-06 20:29 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Riot Games 2014-02-06 20:29 - 2014-02-06 20:27 - 34888568 _____ (Riot Games) C:\Users\Paul\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2014-02-06 20:25 - 2014-02-06 19:24 - 1579161641 _____ (InstallShield Software Corporation) C:\Users\Paul\Downloads\LastChaos_DE_Setup(1).exe 2014-02-06 20:23 - 2014-01-06 23:31 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-02-06 20:23 - 2014-01-06 23:30 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-02-06 20:12 - 2014-02-06 20:12 - 00512784 _____ (AVAST Software) C:\Users\Paul\Downloads\avastclear.exe 2014-02-06 20:08 - 2014-02-06 20:08 - 00002990 _____ () C:\Windows\System32\Tasks\elbyExecuteWithUAC 2014-02-06 19:52 - 2014-02-06 19:52 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 19:26 - 2014-02-06 19:26 - 00003288 _____ () C:\Windows\System32\Tasks\{7F802AD8-8E12-4331-A1A7-B798AD9EBB15} 2014-02-06 19:13 - 2012-04-02 16:33 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-06 19:13 - 2012-04-02 16:33 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-06 19:13 - 2011-07-15 21:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-06 16:28 - 2011-07-16 06:32 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-06 16:28 - 2011-07-16 06:32 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-06 16:28 - 2009-07-14 06:13 - 01614892 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-06 16:07 - 2012-10-09 17:10 - 00000000 ____D () C:\Program Files (x86)\Elaborate Bytes 2014-02-06 16:07 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\HP Games 2014-02-06 16:07 - 2011-07-15 20:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-02-06 16:06 - 2013-08-09 18:43 - 00000000 ____D () C:\Program Files (x86)\Zattoo4 2014-02-06 16:06 - 2012-05-28 14:39 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-02-06 16:06 - 2012-04-02 16:10 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-06 16:06 - 2011-07-15 21:20 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-06 16:06 - 2011-07-15 21:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-02-06 16:06 - 2011-07-15 21:12 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-06 16:06 - 2011-07-15 21:11 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\ProgramData\WildTangent 2014-02-06 16:06 - 2011-07-15 21:05 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2014-02-06 16:06 - 2011-07-15 21:03 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-02-06 16:06 - 2011-06-14 05:09 - 00000000 ____D () C:\Program Files\Hewlett-Packard 2014-02-06 16:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-02-06 15:52 - 2014-02-06 15:52 - 00003112 _____ () C:\Windows\System32\Tasks\{9BCC33D5-9AC0-4389-827C-D5A182475BD2} 2014-02-06 00:22 - 2011-07-15 21:15 - 00000000 ____D () C:\Windows\de 2014-02-06 00:11 - 2012-12-02 20:31 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\Ubisoft 2014-02-06 00:11 - 2011-07-15 21:10 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-02-06 00:10 - 2012-09-02 00:25 - 00000000 ____D () C:\Riot Games 2014-02-06 00:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-05 22:20 - 2014-02-05 22:20 - 00007640 _____ () C:\Users\Paul\AppData\Local\Resmon.ResmonCfg 2014-02-03 20:55 - 2013-12-11 18:56 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-03 20:48 - 2014-02-03 20:48 - 00003112 _____ () C:\Windows\System32\Tasks\{93CA88A2-85C8-4ADF-813F-D066DB7CF234} 2014-02-03 01:43 - 2012-12-19 13:40 - 00000000 ____D () C:\Users\Paul\AppData\Roaming\SoftGrid Client 2014-02-02 00:13 - 2014-02-02 00:13 - 00003112 _____ () C:\Windows\System32\Tasks\{EDF9C984-D57E-456A-A470-876B6873DA0A} 2014-02-01 17:46 - 2014-02-01 17:46 - 00003112 _____ () C:\Windows\System32\Tasks\{5F4F2E5F-664F-4D89-B9BF-EB790ED49A2B} 2014-02-01 17:01 - 2014-02-01 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{0446A83F-616B-4CBF-BB5D-81AFFE252FB5} 2014-01-31 00:34 - 2014-01-31 00:34 - 00003112 _____ () C:\Windows\System32\Tasks\{3BD3297D-BE67-45F6-8449-4C5CFBDD4696} 2014-01-29 14:47 - 2014-01-29 14:47 - 00003112 _____ () C:\Windows\System32\Tasks\{5C30497B-E0F3-40C4-B58A-14D045C987D0} 2014-01-28 21:33 - 2014-01-28 21:33 - 00003112 _____ () C:\Windows\System32\Tasks\{90460A2A-7822-4FB9-9E87-69A0F2E755D6} 2014-01-28 17:22 - 2014-01-28 17:22 - 00003112 _____ () C:\Windows\System32\Tasks\{1208AC9A-A531-41A5-9279-A8ED72936606} 2014-01-28 17:01 - 2014-01-28 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{55812F01-E0AB-4A94-B2D9-88613F07B00D} 2014-01-28 00:44 - 2014-01-28 00:44 - 00003112 _____ () C:\Windows\System32\Tasks\{C04BABD7-9072-40CC-822F-A2FB96D0A240} 2014-01-27 17:01 - 2014-01-27 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{F57CF5E7-C555-46C0-939C-D3C79F908B6C} 2014-01-26 03:10 - 2014-01-26 03:10 - 00003112 _____ () C:\Windows\System32\Tasks\{1CFBBAD1-C078-4FD3-B767-116A3ACE16D8} 2014-01-25 21:53 - 2014-01-25 21:53 - 00003112 _____ () C:\Windows\System32\Tasks\{87E5FF7A-39C3-4E96-9A79-55CF46BD3CEE} 2014-01-25 04:41 - 2014-01-25 04:41 - 00003112 _____ () C:\Windows\System32\Tasks\{041F4239-0B5F-4846-ADBF-8D49430D9E5A} 2014-01-24 17:00 - 2014-01-24 17:00 - 00003112 _____ () C:\Windows\System32\Tasks\{B87BA3AE-3F47-4BC3-8B0C-73E023D520E1} 2014-01-23 23:49 - 2014-01-23 23:49 - 00003112 _____ () C:\Windows\System32\Tasks\{C121CB7D-839C-4CAE-8A0D-74C3BDF082C8} 2014-01-23 17:01 - 2014-01-23 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{29EE0FF8-6970-4697-9D9B-7C85482E0E57} 2014-01-22 22:54 - 2014-01-22 22:54 - 00003112 _____ () C:\Windows\System32\Tasks\{2B6E000D-E761-41EF-8F59-A7AC54E0E7BE} 2014-01-22 17:01 - 2014-01-22 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{6C2314A7-5CE8-4CA7-933A-A0501EF58369} 2014-01-22 00:45 - 2014-01-22 00:45 - 00003112 _____ () C:\Windows\System32\Tasks\{389C014E-664B-47D0-A66C-0C9CFB97EC83} 2014-01-21 22:13 - 2014-01-21 22:13 - 00003112 _____ () C:\Windows\System32\Tasks\{7C5FDD8F-A576-4F05-98E8-0C2ACB818A6C} 2014-01-21 01:50 - 2014-01-20 14:06 - 00018600 _____ () C:\Users\Paul\Documents\bewerbung paul 3.odt 2014-01-20 17:01 - 2014-01-20 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{63694BD9-6184-4D83-B48D-05D57E23AD60} 2014-01-20 14:40 - 2014-01-20 14:16 - 00015624 _____ () C:\Users\Paul\Desktop\lebenslauf paul1.odt 2014-01-19 22:53 - 2014-01-19 22:53 - 00001378 _____ () C:\Users\Paul\Documents\paulllll.txt 2014-01-19 17:01 - 2014-01-19 17:01 - 00003112 _____ () C:\Windows\System32\Tasks\{D28A5D46-CA1E-4A46-A4B4-B99C19FE3B9E} 2014-01-19 14:40 - 2014-01-19 14:40 - 01012736 _____ () C:\Users\Paul\Downloads\_AB 2014-01-19 14:36 - 2014-01-19 14:36 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-01-19 03:38 - 2014-01-19 03:38 - 00003112 _____ () C:\Windows\System32\Tasks\{F163990A-4B07-44E1-99EA-EBC5CACC8503} 2014-01-16 17:22 - 2009-07-14 05:45 - 00308824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-16 17:04 - 2013-08-25 00:10 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-16 17:00 - 2012-11-06 18:51 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 03:34 - 2012-05-08 21:21 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPaul 2014-01-15 03:34 - 2012-05-08 21:21 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPaul.job 2014-01-14 23:22 - 2014-01-14 23:19 - 91412976 _____ (AVAST Software) C:\Users\Paul\Downloads\avast_free_antivirus_setup_9.0.2011.263.exe Files to move or delete: ==================== C:\Users\Paul\AppData\Roaming\Camdata.ini C:\Users\Paul\AppData\Roaming\CamLayout.ini C:\Users\Paul\AppData\Roaming\CamShapes.ini Some content of TEMP: ==================== C:\Users\Paul\AppData\Local\Temp\8a17f42b187eedf1a91c3ce5aec8044d.dll C:\Users\Paul\AppData\Local\Temp\Quarantine.exe C:\Users\Paul\AppData\Local\Temp\swt-win32-3740.dll C:\Users\Paul\AppData\Local\Temp\_is6173.exe C:\Users\Paul\AppData\Local\Temp\_isB6D3.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 05:08 ==================== End Of Log ============================ --- --- --- |
12.02.2014, 18:28 | #9 |
/// the machine /// TB-Ausbilder | Trojan.Fake MS gefunden Damit war nur gemeint dass du evtl vorhandene externe Platten oder so grad mitscannen kannst Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.02.2014, 00:11 | #10 |
| Trojan.Fake MS gefunden Ja, dann vielen Dank. Wirklich sehr gut geholfen, Virus anscheinend weg , obwohl ich nicht ganz verstanden habe durch was, da in keinem Suchlauf der Virus gefunden wurde, aber schnell geantwortet und simple erklärt GROSSES DANKE THREAD kann geschlossen werden |
14.02.2014, 17:40 | #11 |
/// the machine /// TB-Ausbilder | Trojan.Fake MS gefunden Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |