|
Plagegeister aller Art und deren Bekämpfung: kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehrWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
13.02.2014, 15:22 | #1 |
| kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr Hallo. bin schon ziemlich am Ende mit meinem Latein. System: OS MS Windows 7 Pro 64 bit Internetverbindung über Proxy! Problem: Kann meinen PC ganz normal verwenden, alles funktioniert soweit. Starte ich jetzt den Google Chrome Browser, verabschiedet sich teilweise die Internetverbindung nach ca. 10min, d.h. E-Mails bleiben im Postausgang (MS Outlook), Gmail ist Offline, Internet Surfen funktioniert nur mehr sehr langsam (aber es funktioniert) Jetzt bin ich dahintergekommen, dass sich dieser Zustand nur dann ergibt, wenn ich Google Chrome starte. Mit einer Deinstallation von Google Chrome ist das Problem weg. Leider bin ich Android und Google Apps User. Darum habe ich Google Chrome erneut installiert, und wieder habe ich diesen Fehler. Deaktiviere ich den Netzwerkadapter und aktiviere ihn anschließend gleich wieder, funktioniert Outlook, Gmail ist online und alles passt, 10 min später wieder Problem mit Internetverbindung. Momentane Lösung: Entweder ich verwende keinen Chrome mehr, oder ich deaktiviere und aktiviere alle 10 min den Netzwerkadapter. bitte um Hilfe, Danke. sg Thomas Geändert von gled (13.02.2014 um 15:57 Uhr) |
13.02.2014, 21:08 | #2 |
/// the machine /// TB-Ausbilder | kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.02.2014, 07:28 | #3 |
| kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr Hier ist der Scan bei nicht installiertem Google Chrome.
__________________sg Geändert von gled (14.02.2014 um 07:47 Uhr) |
14.02.2014, 07:46 | #4 |
| kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr Hier ist der Scan mit installiertem Google Chrome. |
15.02.2014, 09:30 | #5 |
/// the machine /// TB-Ausbilder | kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.02.2014, 09:48 | #6 |
| kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr FRST.TXT mit installiertem Google Chrome FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01 Ran by Eder (administrator) on WSL-DZ400 on 14-02-2014 07:43:49 Running from C:\Users\Eder\Downloads Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (ABBYY) C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (MEI) C:\Program Files (x86)\Common Files\MEI\BNA5 NT Service\BNA5Serv.exe (HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (Intel Corporation) C:\Windows\system32\IProsetMonitor.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe (arvato digital services llc) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (AVM Berlin) C:\Program Files (x86)\FRITZ!\IWatch.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_12_0_0_44_ActiveX.exe (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\sysWow64\SearchProtocolHost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-12-19] () HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2014-02-12] (Realtek Semiconductor) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe [313472 2012-10-17] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [186408 2013-12-12] (Geek Software GmbH) HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2013-12-12] (Hewlett-Packard) Winlogon\Notify\PCANotify-x32: PCANotify.dll [X] HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun_KL_notset] 1 HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\Run: [] - [X] HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: M - M:\Autorun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {224fba29-2be8-11e3-b2ae-005056c00008} - K:\Autorun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {2ec2cf62-1069-11e3-b2a6-000ffec8f245} - K:\AutoRun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {2ec2cf6e-1069-11e3-b2a6-000ffec8f245} - K:\AutoRun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {33535402-5959-11e2-9f69-005056c00008} - K:\Autorun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {33535404-5959-11e2-9f69-005056c00008} - K:\Autorun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {ab2d4852-6228-11e3-915c-005056c00008} - K:\AutoRun.exe HKU\S-1-5-21-2088195575-3872376681-2588711911-2156\...\MountPoints2: {b4ca01d0-737a-11e3-91cd-005056c00008} - K:\autorun.exe AppInit_DLLs: ,C:\PROGRA~2\KASPER~1\KASPER~1.0FO\x64\adialhk.dll => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\x64\adialhk.dll [90576 2014-01-21] (Kaspersky Lab ZAO) AppInit_DLLs-x32: ,C:\PROGRA~2\KASPER~1\KASPER~1.0FO\adialhk.dll => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\adialhk.dll [86872 2014-01-21] (Kaspersky Lab ZAO) ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: internet:8080 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.at/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE1005869E7E8CD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-AT HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie BHO: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect119b.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://active.macromedia.com/flash2/cabs/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\..\Interfaces\{81CE6266-A672-49D8-9B25-C98F8BF0F402}: [NameServer]10.68.137.2,10.68.1.110 FireFox: ======== FF ProfilePath: C:\Users\Eder\AppData\Roaming\Mozilla\Firefox\Profiles\cuq3j5z5.default FF NewTab: about:blank FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @Citrix.com/npican - C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll (Citrix Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.3 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Windows\SysWOW64\npdeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @doubletwist.com/NPPodcast - C:\Program Files (x86)\Common Files\doubleTwist\NPPodcast.dll No File Chrome: ======= CHR HomePage: hxxp://www.google.at/ CHR DefaultSearchURL: hxxp://www.google.com/search?q={searchTerms}&ie=utf-8&oe=utf-8&aq=t CHR DefaultNewTabURL: CHR Extension: (Google Translate) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2014-02-14] CHR Extension: (Google Docs) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-14] CHR Extension: (Google Drive) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-14] CHR Extension: (YouTube) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-14] CHR Extension: (Adblock Plus) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-14] CHR Extension: (Google-Suche) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-14] CHR Extension: (Gmail offline) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-02-14] CHR Extension: (Google Kalender) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-02-14] CHR Extension: (Dropbox) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2014-02-14] CHR Extension: (Downloads) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2014-02-14] CHR Extension: (Better Battlelog (BBLog)) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjlfnjepjdmlppapoikepbaabbghofma [2014-02-14] CHR Extension: (Google Play) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2014-02-14] CHR Extension: (Currency Converter) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\lncdobdbibdgoiohgnflmjajfphcnakg [2014-02-14] CHR Extension: (Google Maps) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2014-02-14] CHR Extension: (Google Wallet) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-14] CHR Extension: (Google Mail) - C:\Users\Eder\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-14] CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Eder\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-02-14] CHR HKLM-x32\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files (x86)\Perion\ChromeInfoBar\ChromeInfoBar.crx [2014-02-14] ==================== Services (Whitelisted) ================= R2 ABBYY.Licensing.FineReader.Professional.11.0; C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe [818952 2011-12-22] (ABBYY) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe [313472 2012-10-17] (Kaspersky Lab ZAO) S3 awhost32; C:\Program Files (x86)\Symantec\pcAnywhere\awhost32.exe [132728 2007-05-11] (Symantec Corporation) R2 BNA5Serv1; C:\Program Files (x86)\Common Files\MEI\BNA5 NT Service\BNA5Serv.exe [734208 2010-10-14] (MEI) S3 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2011-10-17] (Hewlett-Packard Company) S3 LiveUpdate; C:\Program Files (x86)\Symantec\LiveUpdate\LuComServer_3_2.EXE [2918008 2007-01-05] (Symantec Corporation) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [336824 2010-11-30] (arvato digital services llc) R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [13234176 2012-11-01] () ==================== Drivers (Whitelisted) ==================== R3 AVMCOWAN; C:\Windows\System32\DRIVERS\AVMCOWAN.sys [79872 2009-06-10] (AVM GmbH) R1 awecho; C:\Windows\SysWow64\drivers\awechomd.sys [16696 2007-03-30] (Symantec Corporation) R1 AW_HOST; C:\Windows\SysWow64\drivers\aw_host5.sys [23864 2007-03-30] (Symantec Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-12-11] (DT Soft Ltd) S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [246224 2009-12-07] (Huawei Technologies Co., Ltd.) R3 FPCIBASE; C:\Windows\System32\DRIVERS\fpcibase.sys [899328 2009-06-10] (AVM Berlin) R1 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2014-01-21] (Kaspersky Lab ZAO) R3 KLFLTDEV; C:\Windows\System32\DRIVERS\klfltdev.sys [30736 2009-09-03] (Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [274264 2014-01-21] (Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [32048 2011-09-01] (Kaspersky Lab ZAO) R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2008-07-11] (SafeNet, Inc.) R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [1093256 2012-12-11] (Acronis) R0 vidsflt; C:\Windows\System32\DRIVERS\vidsflt.sys [166024 2012-12-11] (Acronis) R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.) S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-14 07:43 - 2014-02-14 07:43 - 00022131 _____ () C:\Users\Eder\Downloads\FRST.txt 2014-02-14 07:28 - 2014-02-14 07:28 - 00002251 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-14 07:23 - 2014-02-14 07:23 - 00040678 _____ () C:\Users\Eder\Desktop\Addition.txt 2014-02-14 07:22 - 2014-02-14 07:43 - 00000000 ____D () C:\FRST 2014-02-14 07:22 - 2014-02-14 07:23 - 00052925 _____ () C:\Users\Eder\Desktop\FRST.txt 2014-02-14 07:21 - 2014-02-14 07:21 - 02152960 _____ (Farbar) C:\Users\Eder\Downloads\FRST64.exe 2014-02-14 06:52 - 2014-02-14 06:52 - 00000056 _____ () C:\Windows\setupact.log 2014-02-14 06:52 - 2014-02-14 06:52 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-13 15:01 - 2014-02-14 07:03 - 00031078 _____ () C:\Windows\WindowsUpdate.log 2014-02-13 14:55 - 2014-02-13 14:56 - 00000000 ____D () C:\AdwCleaner 2014-02-13 14:54 - 2014-02-13 14:55 - 01166132 _____ () C:\Users\Eder\Downloads\adwcleaner-3.018.exe 2014-02-13 14:46 - 2014-02-13 14:46 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-02-12 15:24 - 2014-02-12 15:42 - 00000000 ____D () C:\Users\Eder\Downloads\cports-x64 2014-02-12 10:27 - 2014-02-12 10:27 - 00002136 _____ () C:\RHDSetup.log 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Windows\system32\SRSLabs 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Program Files\Realtek 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-02-12 10:27 - 2014-02-12 10:26 - 03114088 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 02886888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-02-12 10:27 - 2014-02-12 10:26 - 02405992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 01559656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-02-12 10:27 - 2014-02-12 10:26 - 01404928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-02-12 10:27 - 2014-02-12 10:26 - 01284712 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 01245288 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00648808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00332392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00220512 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00180048 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFProc64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00091240 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00086352 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFComm64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00083792 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFSAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00082768 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFHAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00082768 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFDAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00078176 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-02-12 10:27 - 2014-02-12 10:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-02-07 09:34 - 2014-02-07 09:34 - 00000000 ____D () C:\Program Files\Intel 2014-02-07 09:34 - 2013-11-01 13:36 - 00001904 ____N () C:\Windows\system32\SetupBD.din 2014-02-07 09:33 - 2013-09-27 00:12 - 00565048 _____ (Intel Corporation) C:\Windows\system32\PROUnstl.exe 2014-02-07 09:10 - 2014-02-07 09:12 - 33114536 _____ () C:\Users\Eder\Downloads\PROWinx64.exe 2014-02-07 08:04 - 2014-02-07 08:04 - 00000026 _____ () C:\Windows\SysWOW64\Error.ini 2014-02-07 07:51 - 2014-02-07 07:51 - 01455800 _____ (Free Software Relase ) C:\Users\Eder\Downloads\TcpEye.exe 2014-02-07 07:51 - 2014-02-07 07:51 - 00000923 _____ () C:\Users\Public\Desktop\TCPEye.lnk 2014-02-07 07:51 - 2014-02-07 07:51 - 00000000 ____D () C:\Program Files (x86)\TCPEye 2014-02-06 16:43 - 2014-02-06 16:43 - 00007634 _____ () C:\Users\Eder\AppData\Local\Resmon.ResmonCfg 2014-02-04 08:43 - 2014-02-04 08:43 - 00000000 ____D () C:\Users\Eder\Google Drive\Documents\Documents GESIG\Meine Paletten 2014-02-04 08:43 - 2014-02-04 08:43 - 00000000 ____D () C:\Users\Eder\Google Drive\Documents\Documents GESIG\Corel 2014-01-28 07:12 - 2014-01-28 07:12 - 00000000 ____D () C:\ProgramData\PDF Architect 2014-01-24 11:23 - 2014-01-24 11:23 - 00000000 ____D () C:\ProgramData\GlarySoft 2014-01-24 10:34 - 2014-01-24 10:34 - 00000000 ____D () C:\Users\Eder\Downloads\Partition Magic 8.0 2014-01-24 10:30 - 2014-01-24 10:32 - 00000000 ____D () C:\Users\Eder\Downloads\Autodesk_AutoCAD_v2011_GERMAN-CYGiSO 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Treiber WINXP HP Pro 3500 MT 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Nitro_PDF_Pro_8.0.4.6 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Fritz ISDN Software 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Fritz ISDN PCI 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Foxit Advanced PDF Editor 3.00 2014-01-24 10:29 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\USB_RS232 2014-01-24 10:29 - 2014-01-24 10:29 - 00000000 ____D () C:\Users\Eder\Downloads\RS232 Logger 2014-01-24 10:28 - 2014-01-24 10:28 - 00000000 ____D () C:\Users\Eder\Downloads\Symantec pcAnywhere 12.1 2014-01-24 10:27 - 2014-01-24 10:27 - 00000000 ____D () C:\Users\Eder\Downloads\cygwin 2014-01-24 10:26 - 2014-01-24 10:27 - 00000000 ____D () C:\Users\Eder\Downloads\Adobe Acrobat 9 Pro Extended 2014-01-24 10:26 - 2014-01-24 10:26 - 00000000 ____D () C:\Users\Eder\Downloads\TuneUp.Utilities.2010.v9.0.2000.17.Incl.Keymaker-CORE 2014-01-24 10:25 - 2014-01-24 10:25 - 00000000 ____D () C:\Users\Eder\Downloads\VMware-workstation-full-9.0.1-894247 2014-01-24 10:25 - 2014-01-24 10:25 - 00000000 ____D () C:\Users\Eder\Downloads\iomega home network 2014-01-24 10:24 - 2014-01-24 10:25 - 00000000 ____D () C:\Users\Eder\Downloads\Acronis.True.Image.2013.v16.0.0.5551.German.All-in-One 2014-01-24 10:24 - 2014-01-24 10:24 - 00000000 ____D () C:\Users\Eder\Downloads\WinRAR.v4.20.Final.x64.x86.GERMAN.ENGLISH 2014-01-24 10:24 - 2014-01-24 10:24 - 00000000 ____D () C:\Users\Eder\Downloads\ABBYY.FineReader.v11.0.102.583.Professional.Edition.MULTiLANGUAGE-PillePalle 2014-01-24 10:23 - 2014-01-24 10:23 - 00000000 ____D () C:\Users\Eder\Downloads\CorelDRAW.Graphics.Suite.X6.v16.1.0.843.x64.Incl.Keymaker-CORE 2014-01-24 10:21 - 2014-01-24 10:23 - 00000000 ____D () C:\Users\Eder\Downloads\Nero.Multimedia.Suite.10.MULTiLANGUAGE-RESTORE 2014-01-24 10:07 - 2014-01-24 10:11 - 00000000 ____D () C:\Users\Eder\Downloads\Acronis Images 2014-01-24 10:07 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\Runtime GetDataBack for FAT and NTFS v4.23 2014-01-24 10:07 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\mobiles Internet 2014-01-24 10:06 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\Treiber HP 6000 2014-01-24 10:06 - 2013-07-08 13:46 - 34702513 _____ (inkscape.org) C:\Users\Eder\Downloads\inkscape-0.48.4-1-win32.exe 2014-01-24 10:06 - 2012-11-30 08:48 - 20960472 _____ (Wireshark development team) C:\Users\Eder\Downloads\Wireshark-win32-1.8.3.exe 2014-01-24 10:06 - 2012-11-30 08:01 - 27885568 _____ (A1 Telekom Austria AG ) C:\Users\Eder\Downloads\A1DB_WIN_1.17.0.0.exe 2014-01-24 10:06 - 2012-08-06 12:56 - 12052439 _____ ( ) C:\Users\Eder\Downloads\ifunbox199_setup.exe 2014-01-24 10:06 - 2011-07-19 07:28 - 02714187 _____ (Martin Prikryl ) C:\Users\Eder\Downloads\winscp433setup.exe 2014-01-24 10:06 - 2011-02-11 07:19 - 04429393 _____ () C:\Users\Eder\Downloads\WinSetupFromUSB_0-2-3.exe 2014-01-24 10:06 - 2011-02-03 12:15 - 04404968 _____ () C:\Users\Eder\Downloads\Easy2Sync.rar 2014-01-24 10:06 - 2010-11-04 15:27 - 34662316 _____ (inkscape.org) C:\Users\Eder\Downloads\Inkscape-0.48.0-1.exe 2014-01-24 10:06 - 2010-10-20 13:05 - 02392360 _____ () C:\Users\Eder\Downloads\SVGView303.exe 2014-01-24 10:06 - 2008-02-05 17:58 - 00650988 _____ () C:\Users\Eder\Downloads\mp3gain-win-1_2_5.rar 2014-01-24 10:05 - 2014-02-13 14:59 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 4 2014-01-24 10:05 - 2014-01-24 13:02 - 00000328 _____ () C:\Windows\Tasks\GlaryInitialize 4.job 2014-01-24 10:05 - 2014-01-24 10:05 - 00002974 _____ () C:\Windows\System32\Tasks\GU4SkipUAC 2014-01-24 10:05 - 2014-01-24 10:05 - 00001084 _____ () C:\Users\Public\Desktop\Glary Utilities 4.lnk 2014-01-24 10:05 - 2014-01-24 10:05 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\GlarySoft 2014-01-24 10:05 - 2014-01-22 13:52 - 00000000 ____D () C:\Users\Eder\Downloads\Glary Utilities Pro 4.5.0.89 2014-01-24 10:05 - 2014-01-22 02:16 - 00117024 _____ (Glarysoft Ltd) C:\Windows\system32\BootDefrag.exe 2014-01-24 09:59 - 2013-12-19 21:33 - 02498848 _____ (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe 2014-01-24 09:59 - 2013-12-19 21:33 - 00004084 _____ () C:\Windows\system32\nvPerfProvider.man 2014-01-24 09:58 - 2014-01-24 09:58 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-24 09:55 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-24 09:55 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-24 09:55 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-24 09:40 - 2014-01-24 09:40 - 00001101 _____ () C:\Users\Eder\Desktop\Dokumente.lnk 2014-01-24 09:00 - 2014-01-24 13:03 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-01-24 09:00 - 2014-01-24 13:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-01-24 08:59 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2014-01-24 08:59 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2014-01-24 08:59 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2014-01-24 08:59 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-01-24 08:59 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-01-24 08:59 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-01-24 08:59 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-01-24 08:59 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-01-24 08:59 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-01-24 08:59 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-01-24 08:59 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-01-24 08:59 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-01-24 08:59 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-01-24 08:59 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-01-24 08:59 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-01-24 08:59 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-01-24 08:59 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-01-24 08:59 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2014-01-24 08:59 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-01-24 08:59 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2014-01-24 08:59 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-01-24 08:59 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-01-24 08:59 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-01-24 08:59 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-01-24 08:59 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-01-24 08:46 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-01-24 08:46 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-01-21 12:20 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-21 12:20 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-21 12:20 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-21 12:20 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-21 10:24 - 2014-01-21 10:24 - 00153053 _____ () C:\Windows\system32\Drivers\klin.dat 2014-01-21 10:24 - 2014-01-21 10:24 - 00107384 _____ () C:\Windows\system32\Drivers\klick.dat 2014-01-21 10:23 - 2014-02-14 06:53 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-01-21 10:23 - 2014-01-21 10:23 - 00274264 _____ (Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys 2014-01-21 10:23 - 2014-01-21 10:23 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab 2014-01-21 10:18 - 2014-01-21 10:18 - 00000000 ____D () C:\KAV ==================== One Month Modified Files and Folders ======= 2014-02-14 07:43 - 2014-02-14 07:43 - 00022131 _____ () C:\Users\Eder\Downloads\FRST.txt 2014-02-14 07:43 - 2014-02-14 07:22 - 00000000 ____D () C:\FRST 2014-02-14 07:31 - 2013-01-28 08:48 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-14 07:28 - 2014-02-14 07:28 - 00002251 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-14 07:28 - 2012-12-07 09:28 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-14 07:28 - 2012-12-07 08:55 - 00000000 ____D () C:\Users\Eder\AppData\Local\Google 2014-02-14 07:23 - 2014-02-14 07:23 - 00040678 _____ () C:\Users\Eder\Desktop\Addition.txt 2014-02-14 07:23 - 2014-02-14 07:22 - 00052925 _____ () C:\Users\Eder\Desktop\FRST.txt 2014-02-14 07:21 - 2014-02-14 07:21 - 02152960 _____ (Farbar) C:\Users\Eder\Downloads\FRST64.exe 2014-02-14 07:18 - 2012-12-07 09:28 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-14 07:17 - 2012-12-07 09:28 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-14 07:03 - 2014-02-13 15:01 - 00031078 _____ () C:\Windows\WindowsUpdate.log 2014-02-14 07:00 - 2009-07-14 05:45 - 00022352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-14 07:00 - 2009-07-14 05:45 - 00022352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-14 06:53 - 2014-01-21 10:23 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-02-14 06:52 - 2014-02-14 06:52 - 00000056 _____ () C:\Windows\setupact.log 2014-02-14 06:52 - 2014-02-14 06:52 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-14 06:52 - 2012-12-18 12:30 - 00000000 ____D () C:\ProgramData\VMware 2014-02-14 06:52 - 2012-12-07 11:39 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-14 06:52 - 2012-12-07 08:40 - 00000240 _____ () C:\Windows\system32\config\netlogon.ftl 2014-02-14 06:52 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-13 14:59 - 2014-01-24 10:05 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 4 2014-02-13 14:56 - 2014-02-13 14:55 - 00000000 ____D () C:\AdwCleaner 2014-02-13 14:56 - 2013-01-04 10:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-13 14:55 - 2014-02-13 14:54 - 01166132 _____ () C:\Users\Eder\Downloads\adwcleaner-3.018.exe 2014-02-13 14:46 - 2014-02-13 14:46 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-02-12 15:42 - 2014-02-12 15:24 - 00000000 ____D () C:\Users\Eder\Downloads\cports-x64 2014-02-12 15:13 - 2013-01-02 10:29 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-12 12:58 - 2012-12-18 12:33 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\VMware 2014-02-12 12:58 - 2012-12-18 12:33 - 00000000 ____D () C:\Users\Eder\AppData\Local\VMware 2014-02-12 10:35 - 2013-06-01 13:35 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-02-12 10:35 - 2012-12-07 11:12 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-02-12 10:27 - 2014-02-12 10:27 - 00002136 _____ () C:\RHDSetup.log 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Windows\system32\SRSLabs 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Program Files\Realtek 2014-02-12 10:27 - 2014-02-12 10:27 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-02-12 10:27 - 2012-12-07 09:57 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 10:26 - 2014-02-12 10:27 - 03114088 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 02886888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-02-12 10:26 - 2014-02-12 10:27 - 02405992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 01559656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-02-12 10:26 - 2014-02-12 10:27 - 01404928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-02-12 10:26 - 2014-02-12 10:27 - 01284712 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 01245288 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00648808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00332392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00220512 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00180048 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFProc64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00091240 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00086352 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFComm64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00083792 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFSAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00082768 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFHAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00082768 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFDAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00078176 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-02-12 10:26 - 2014-02-12 10:27 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-02-12 10:26 - 2012-12-07 09:57 - 00000000 ____D () C:\swsetup 2014-02-12 07:22 - 2011-04-12 08:43 - 00702116 _____ () C:\Windows\system32\perfh007.dat 2014-02-12 07:22 - 2011-04-12 08:43 - 00150782 _____ () C:\Windows\system32\perfc007.dat 2014-02-12 07:22 - 2009-07-14 06:13 - 01628866 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-11 07:13 - 2012-12-07 09:28 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-11 07:13 - 2012-12-07 09:28 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-07 09:53 - 2013-03-05 09:16 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\vlc 2014-02-07 09:49 - 2011-04-12 08:54 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-02-07 09:34 - 2014-02-07 09:34 - 00000000 ____D () C:\Program Files\Intel 2014-02-07 09:12 - 2014-02-07 09:10 - 33114536 _____ () C:\Users\Eder\Downloads\PROWinx64.exe 2014-02-07 08:07 - 2012-12-07 08:47 - 00000000 ___RD () C:\Users\Eder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-07 08:04 - 2014-02-07 08:04 - 00000026 _____ () C:\Windows\SysWOW64\Error.ini 2014-02-07 07:51 - 2014-02-07 07:51 - 01455800 _____ (Free Software Relase ) C:\Users\Eder\Downloads\TcpEye.exe 2014-02-07 07:51 - 2014-02-07 07:51 - 00000923 _____ () C:\Users\Public\Desktop\TCPEye.lnk 2014-02-07 07:51 - 2014-02-07 07:51 - 00000000 ____D () C:\Program Files (x86)\TCPEye 2014-02-07 07:34 - 2013-08-01 10:36 - 00000000 ___RD () C:\Users\Eder\Dropbox 2014-02-07 07:33 - 2013-08-01 10:33 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\Dropbox 2014-02-06 16:43 - 2014-02-06 16:43 - 00007634 _____ () C:\Users\Eder\AppData\Local\Resmon.ResmonCfg 2014-02-05 13:31 - 2013-01-28 08:48 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 13:31 - 2013-01-28 08:48 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 13:31 - 2013-01-28 08:48 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-04 08:43 - 2014-02-04 08:43 - 00000000 ____D () C:\Users\Eder\Google Drive\Documents\Documents GESIG\Meine Paletten 2014-02-04 08:43 - 2014-02-04 08:43 - 00000000 ____D () C:\Users\Eder\Google Drive\Documents\Documents GESIG\Corel 2014-01-29 03:01 - 2012-12-18 12:31 - 01602210 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-28 07:12 - 2014-01-28 07:12 - 00000000 ____D () C:\ProgramData\PDF Architect 2014-01-27 16:37 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-27 15:46 - 2013-07-12 09:41 - 00000000 ____D () C:\Program Files (x86)\PDF24 2014-01-24 13:08 - 2013-05-15 06:35 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\AllDup 2014-01-24 13:03 - 2014-01-24 09:00 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-01-24 13:03 - 2014-01-24 09:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-01-24 13:02 - 2014-01-24 10:05 - 00000328 _____ () C:\Windows\Tasks\GlaryInitialize 4.job 2014-01-24 11:23 - 2014-01-24 11:23 - 00000000 ____D () C:\ProgramData\GlarySoft 2014-01-24 10:39 - 2012-12-07 08:00 - 00000000 ____D () C:\Windows\Panther 2014-01-24 10:34 - 2014-01-24 10:34 - 00000000 ____D () C:\Users\Eder\Downloads\Partition Magic 8.0 2014-01-24 10:32 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Autodesk_AutoCAD_v2011_GERMAN-CYGiSO 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Treiber WINXP HP Pro 3500 MT 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Nitro_PDF_Pro_8.0.4.6 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Fritz ISDN Software 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Fritz ISDN PCI 2014-01-24 10:30 - 2014-01-24 10:30 - 00000000 ____D () C:\Users\Eder\Downloads\Foxit Advanced PDF Editor 3.00 2014-01-24 10:30 - 2014-01-24 10:29 - 00000000 ____D () C:\Users\Eder\Downloads\USB_RS232 2014-01-24 10:29 - 2014-01-24 10:29 - 00000000 ____D () C:\Users\Eder\Downloads\RS232 Logger 2014-01-24 10:28 - 2014-01-24 10:28 - 00000000 ____D () C:\Users\Eder\Downloads\Symantec pcAnywhere 12.1 2014-01-24 10:27 - 2014-01-24 10:27 - 00000000 ____D () C:\Users\Eder\Downloads\cygwin 2014-01-24 10:27 - 2014-01-24 10:26 - 00000000 ____D () C:\Users\Eder\Downloads\Adobe Acrobat 9 Pro Extended 2014-01-24 10:26 - 2014-01-24 10:26 - 00000000 ____D () C:\Users\Eder\Downloads\TuneUp.Utilities.2010.v9.0.2000.17.Incl.Keymaker-CORE 2014-01-24 10:25 - 2014-01-24 10:25 - 00000000 ____D () C:\Users\Eder\Downloads\VMware-workstation-full-9.0.1-894247 2014-01-24 10:25 - 2014-01-24 10:25 - 00000000 ____D () C:\Users\Eder\Downloads\iomega home network 2014-01-24 10:25 - 2014-01-24 10:24 - 00000000 ____D () C:\Users\Eder\Downloads\Acronis.True.Image.2013.v16.0.0.5551.German.All-in-One 2014-01-24 10:24 - 2014-01-24 10:24 - 00000000 ____D () C:\Users\Eder\Downloads\WinRAR.v4.20.Final.x64.x86.GERMAN.ENGLISH 2014-01-24 10:24 - 2014-01-24 10:24 - 00000000 ____D () C:\Users\Eder\Downloads\ABBYY.FineReader.v11.0.102.583.Professional.Edition.MULTiLANGUAGE-PillePalle 2014-01-24 10:23 - 2014-01-24 10:23 - 00000000 ____D () C:\Users\Eder\Downloads\CorelDRAW.Graphics.Suite.X6.v16.1.0.843.x64.Incl.Keymaker-CORE 2014-01-24 10:23 - 2014-01-24 10:21 - 00000000 ____D () C:\Users\Eder\Downloads\Nero.Multimedia.Suite.10.MULTiLANGUAGE-RESTORE 2014-01-24 10:11 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\Acronis Images 2014-01-24 10:09 - 2013-12-19 15:37 - 00000000 ____D () C:\Program Files (x86)\TeamSpeak 3 Client 2014-01-24 10:07 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\Runtime GetDataBack for FAT and NTFS v4.23 2014-01-24 10:07 - 2014-01-24 10:07 - 00000000 ____D () C:\Users\Eder\Downloads\mobiles Internet 2014-01-24 10:07 - 2014-01-24 10:06 - 00000000 ____D () C:\Users\Eder\Downloads\Treiber HP 6000 2014-01-24 10:05 - 2014-01-24 10:05 - 00002974 _____ () C:\Windows\System32\Tasks\GU4SkipUAC 2014-01-24 10:05 - 2014-01-24 10:05 - 00001084 _____ () C:\Users\Public\Desktop\Glary Utilities 4.lnk 2014-01-24 10:05 - 2014-01-24 10:05 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\GlarySoft 2014-01-24 10:05 - 2012-12-11 07:54 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-01-24 09:59 - 2012-12-07 11:38 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-24 09:58 - 2014-01-24 09:58 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-24 09:58 - 2012-12-07 11:39 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-24 09:40 - 2014-01-24 09:40 - 00001101 _____ () C:\Users\Eder\Desktop\Dokumente.lnk 2014-01-24 09:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-01-24 07:08 - 2012-12-10 10:34 - 00000000 ____D () C:\Users\Eder\AppData\Local\Adobe 2014-01-22 13:52 - 2014-01-24 10:05 - 00000000 ____D () C:\Users\Eder\Downloads\Glary Utilities Pro 4.5.0.89 2014-01-22 03:24 - 2012-12-07 08:41 - 00000000 ____D () C:\Users\PULINZ 2014-01-22 03:24 - 2012-12-07 08:10 - 00000000 ____D () C:\Users\Admin 2014-01-22 03:21 - 2009-07-14 05:45 - 00593496 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-22 03:04 - 2012-12-07 11:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-01-22 03:03 - 2013-08-29 15:17 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-22 03:00 - 2012-12-08 03:04 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-22 02:16 - 2014-01-24 10:05 - 00117024 _____ (Glarysoft Ltd) C:\Windows\system32\BootDefrag.exe 2014-01-21 10:58 - 2009-11-11 14:30 - 00458584 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys 2014-01-21 10:24 - 2014-01-21 10:24 - 00153053 _____ () C:\Windows\system32\Drivers\klin.dat 2014-01-21 10:24 - 2014-01-21 10:24 - 00107384 _____ () C:\Windows\system32\Drivers\klick.dat 2014-01-21 10:23 - 2014-01-21 10:23 - 00274264 _____ (Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys 2014-01-21 10:23 - 2014-01-21 10:23 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab 2014-01-21 10:18 - 2014-01-21 10:18 - 00000000 ____D () C:\KAV 2014-01-21 09:51 - 2012-12-07 09:27 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-01-20 07:06 - 2013-08-01 10:36 - 00000976 _____ () C:\Users\Eder\Desktop\Dropbox.lnk 2014-01-20 07:06 - 2013-08-01 10:34 - 00000000 ____D () C:\Users\Eder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-01-16 09:59 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-01-15 08:29 - 2013-05-27 07:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-12 09:55 ==================== End Of Log ============================ --- --- --- Addition.TXT mit installiertem Google Chrome. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-02-2014 01 Ran by Eder at 2014-02-14 07:44:12 Running from C:\Users\Eder\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Anti-Virus (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky Anti-Virus (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Anti-Virus (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== 2007 Microsoft Office system (x32 Version: 12.0.6612.1000 - Microsoft Corporation) 64 Bit HP CIO Components Installer (Version: 8.2.1 - Hewlett-Packard) Hidden A1 Dashboard (x32 Version: 1.9.0.0 - A1 Telekom Austria AG) A1 Dashboard (x32 Version: 1.9.0.0 - A1 Telekom Austria AG) Hidden ABBYY FineReader 11 (x32 Version: 11.0.460 - ABBYY) Adobe AIR (x32 Version: 3.7.0.1860 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.7.0.1860 - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) AllDup 3.4.18 (x32 Version: 3.4.18 - Michael Thummerer Software Design) AnyPark (Deinstallation) (x32 Version: - ) AutoCAD 2011 - Deutsch (Version: 18.1.49.0 - Autodesk) AutoCAD 2011 - Deutsch (Version: 18.1.49.0 - Autodesk) Hidden AutoCAD 2011 Language Pack - Deutsch (Version: 18.1.49.0 - Autodesk) Hidden Autodesk Design Review 2011 (x32 Version: 11.0.0.86 - Autodesk, Inc.) Autodesk Design Review 2011 (x32 Version: 11.0.0.86 - Autodesk, Inc.) Hidden Autodesk Material Library 2011 (x32 Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Base Image library (x32 Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Medium Image library (x32 Version: 2.0.0.49 - Autodesk) AVM FRITZ! (x32 Version: - AVM Berlin) Battlelog Web Plugins (x32 Version: 2.3.2 - EA Digital Illusions CE AB) BlazeDTV 6.0 (x32 Version: - ) Card System (Deinstallation) (x32 Version: - ) CCleaner (Version: 3.27 - Piriform) Citrix Authentication Manager (x32 Version: 5.0.0.60597 - Citrix Systems, Inc.) Hidden Citrix Receiver (DV) (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Hidden Citrix Receiver (HDX Flash-Umleitung) (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Hidden Citrix Receiver (USB) (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Hidden Citrix Receiver (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Citrix Receiver Inside (x32 Version: 3.4.0.45902 - Citrix Systems, Inc.) Hidden Citrix Receiver Updater (x32 Version: 4.0.0.45893 - Citrix Systems, Inc.) Hidden Citrix Receiver(Aero) (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Hidden Corel Graphics - Windows Shell Extension (Version: 16.1.0.843 - Corel Corporation) Corel Graphics - Windows Shell Extension (Version: 16.1.843 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit (Version: 16.1.843 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Capture (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Common (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Connect (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Custom Data (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - DE (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Draw (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Filters (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - FontNav (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - IPM (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - PHOTO-PAINT (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Photozoom Plugin (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Redist (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Setup Files (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VBA (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VideoBrowser (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VSTA (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Writing Tools (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 (64-Bit) (Version: 16.1.0.843 - Corel Corporation) CorelDRAW Graphics Suite X6 (x64) (Version: 16.1 - Corel Corporation) Hidden DAEMON Tools Lite (x32 Version: 4.46.1.0327 - DT Soft Ltd) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (x32 Version: - Microsoft) Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.) ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) FARO LS 1.1.406.58 (x32 Version: 4.6.58.2 - FARO Scanner Production) GetDataBack for FAT (x32 Version: 4.32.000 - Runtime Software) Glary Utilities PRO 4.5 (x32 Version: 4.5.0.89 - Glarysoft Ltd) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Earth (x32 Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden High-Definition Video Playback 10 (x32 Version: 7.0.11000.25.1 - Nero AG) Hidden Hotfix für Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (x32 Version: 1 - Microsoft Corporation) HP LJ300-400 color M351-M451 (x32 Version: 5.0.12200.630 - Hewlett-Packard) HP Product Detection (x32 Version: 11.14.0004 - HP) HP Product FWUpdater (x32 Version: 4.0.0.6579 - Hewlett-Packard Company) Hidden HP Unified IO (Version: 2.0.0.404 - HP) Hidden HP Unified IO (x32 Version: 2.0.0.404 - HP) Hidden HP Update (x32 Version: 5.003.003.001 - Hewlett-Packard) hpbDSService (x32 Version: 002.002.07399 - Hewlett-Packard) Hidden hpbM351M451DSService (x32 Version: 001.001.05164 - Hewlett-Packard) Hidden HPLaserJet300-400ColorM351-M451Series_HelpLearnCenter_SI (x32 Version: 1.02.0000 - Hewlett-Packard) HPLJDXPHelper (x32 Version: 020.021.004 - HP) Hidden HPLJUTCore (x32 Version: 004.005.0001 - HP) Hidden HPLJUTM351-M451 (x32 Version: 1.02.0013 - HP) Hidden hppLaserJetService (x32 Version: 009.027.00856 - Hewlett-Packard) Hidden hppM351_M451LaserJetService (x32 Version: 005.021.00132 - Hewlett-Packard) Hidden hppToolboxProxyM351 (x32 Version: 035.024.006 - HP) Hidden hpStatusAlerts (x32 Version: 050.037.00142 - Hewlett Packard) Hidden hpStatusAlertsM351_M451 (x32 Version: 050.034.0131 - Hewlett-Packard) Hidden ID CPRStart 2012 - V9.01.02 (x32 Version: 9.01.02 - FEIG ELECTRONIC GmbH) ID CPRStart 2012 - V9.01.02 (x32 Version: 9.01.02 - FEIG ELECTRONIC GmbH) Hidden Inkscape 0.48.4 (x32 Version: 0.48.4 - ) InstanceFinder (x32 Version: 020.021.004 - HP) Hidden Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (x32 Version: 11.1.048 - Intel Corporation) Intel(R) Management Engine Interface (Version: - Intel Corporation) Intel(R) Network Connections 18.8.136.0 (Version: 18.8.136.0 - Intel) Intel(R) Network Connections 18.8.136.0 (Version: 18.8.136.0 - Intel) Hidden Intel(R) Rapid Storage Technology (x32 Version: 10.1.0.1008 - Intel Corporation) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH) Kaspersky Anti-Virus 6.0 für Windows Workstation (x32 Version: 6.0.4.1611 - Kaspersky Lab) LightScribe System Software (x32 Version: 1.18.6.1 - LightScribe) LiveReg (Symantec Corporation) (x32 Version: 2.4.2.2295 - Symantec Corporation) LiveUpdate 3.2 (Symantec Corporation) (x32 Version: 3.2.0.41 - Symantec Corporation) LJDXPHelperUI (x32 Version: 020.021.004 - HP) Hidden Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office 64-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Korrekturhilfen 2013 - Deutsch (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OSM MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Hybrid 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Proofing Tools 2013 - English (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - Italiano (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Visio 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Microsoft Office Visio 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Visio MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Visio Professional 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Visio Professional 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Project MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Project Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Project Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual Basic for Applications 7.1 (x64) (Version: 7.1.00.00 - Microsoft Corporation) Hidden Microsoft Visual Basic for Applications 7.1 (x64) English (Version: 7.1.0.0 - Microsoft Corporation) Hidden Microsoft Visual Basic for Applications 7.1 (x64) German (Version: 7.1.0.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Language Pack - DEU (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - DEU (x32 Version: 9.0.30729 - Microsoft Corporation) Mozilla Firefox 26.0 (x86 en-US) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) Nero 10 ClipartPack (x32 Version: 10.0.10300.0.0 - Nero AG) Nero 10 Menu TemplatePack 1 (x32 Version: 10.0.10300.0.0 - Nero AG) Nero 10 Menu TemplatePack 2 (x32 Version: 10.0.10300.0.0 - Nero AG) Nero 10 Menu TemplatePack 3 (x32 Version: 10.0.10300.0.0 - Nero AG) Nero 10 Menu TemplatePack Basic (x32 Version: 10.0.10300.0.0 - Nero AG) Hidden Nero 10 Movie ThemePack 1 (x32 Version: 10.0.10300.1.0 - Nero AG) Nero 10 Movie ThemePack 2 (x32 Version: 10.0.10300.1.0 - Nero AG) Nero 10 Movie ThemePack Basic (x32 Version: 10.0.10300.1.0 - Nero AG) Hidden Nero 10 Sample ImagePack (x32 Version: 10.0.10300.0.0 - Nero AG) Nero 10 Sample Videos (x32 Version: 10.0.10300.2.0 - Nero AG) Nero BackItUp 10 (x32 Version: 5.4.11100.14.101 - Nero AG) Nero BackItUp 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero Burning ROM 10 (x32 Version: 10.0.10700.7.100 - Nero AG) Nero BurningROM 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero BurnRights 10 (x32 Version: 4.0.10600.9.100 - Nero AG) Nero BurnRights 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero Control Center 10 (x32 Version: 10.0.11500.1.0 - Nero AG) Hidden Nero Core Components 10 (x32 Version: 2.0.13100.0.1 - Nero AG) Hidden Nero CoverDesigner 10 (x32 Version: 5.0.10500.7.100 - Nero AG) Nero CoverDesigner 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero DiscSpeed 10 (x32 Version: 6.0.10400.4.100 - Nero AG) Nero DiscSpeed 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero Dolby Files 10 (x32 Version: 2.0.11000.0.10 - Nero AG) Hidden Nero Express 10 (x32 Version: 10.0.10500.7.100 - Nero AG) Nero Express 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero InfoTool 10 (x32 Version: 7.0.10400.5.100 - Nero AG) Nero InfoTool 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero MediaHub 10 (x32 Version: 1.0.11000.6.100 - Nero AG) Nero MediaHub 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero Multimedia Suite 10 (x32 Version: 10.0.11200 - Nero AG) Nero Recode 10 (x32 Version: 4.6.10600.1.100 - Nero AG) Nero Recode 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero RescueAgent 10 (x32 Version: 3.0.10500.5.100 - Nero AG) Nero RescueAgent 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero SoundTrax 10 (x32 Version: 4.6.10500.1.100 - Nero AG) Nero SoundTrax 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero StartSmart 10 (x32 Version: 10.0.10500.4.100 - Nero AG) Nero StartSmart 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero Update (x32 Version: 1.0.0012 - Nero AG) Nero Vision 10 (x32 Version: 7.0.10700.4.100 - Nero AG) Nero Vision 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Nero WaveEditor 10 (x32 Version: 5.6.10500.1.100 - Nero AG) Nero WaveEditor 10 Help (CHM) (x32 Version: 1.0.10500 - Nero AG) Hidden Notepad++ (x32 Version: 6.2.2 - ) NVIDIA 3D Vision Controller-Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA Grafiktreiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden NVIDIA nView 140.75 (Version: 140.75 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3221 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden NVIDIA WMI 2.15.0 (Version: 2.15.0 - NVIDIA Corporation) Online Plug-in (x32 Version: 14.0.0.91 - Citrix Systems, Inc.) Hidden Outils de vérification linguistique 2013 de Microsoft Office*- Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden PDF24 Creator 6.2.0 (x32 Version: - PDF24.org) PDFCreator (x32 Version: 1.6.2 - pdfforge) Picasa 3 (x32 Version: 3.9 - Google, Inc.) qCoscom (Deinstallation) (x32 Version: - ) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6383 - Realtek Semiconductor Corp.) RICOH Media Driver (x32 Version: 2.10.00.04 - RICOH) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.18.0 - SAMSUNG Electronics Co., Ltd.) Self-Service Plug-in (x32 Version: 4.0.0.40674 - Citrix Systems, Inc.) Hidden Sentinel Protection Installer 7.5.0 (x32 Version: 7.5.0 - SafeNet, Inc.) Skype™ 6.10 (x32 Version: 6.10.104 - Skype Technologies S.A.) SODECO Support Tool (x32 Version: - ) Symantec pcAnywhere (x32 Version: 12.1.0 - Symantec Corporation) TCPEye 1.0 (x32 Version: - Free Software Relase) TeamViewer 7 (x32 Version: 7.0.17271 - TeamViewer) ToolboxProxy (x32 Version: 035.024.006 - HP) Hidden tools-freebsd (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden tools-linux (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden tools-netware (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden tools-solaris (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden tools-windows (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden tools-winPre2k (x32 Version: 9.2.2.894247 - VMware, Inc.) Hidden True Image 2013 (x32 Version: 16.0.5551 - Acronis) Hidden True Image 2013 Plus Pack (x32 Version: 16.0.5551 - Acronis) Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2850085) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2850061) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition (x32 Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (x32 Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft) VLC media player 2.1.2 (x32 Version: 2.1.2 - VideoLAN) VMware Workstation (Version: 9.0.1 - VMware, Inc.) Hidden VMware Workstation (x32 Version: 9.0.1 - VMware, Inc) whTools 5 (x32 Version: 5.00.03 - wh Münzprüfer Berlin GmbH) Windows 7 USB/DVD Download Tool (x32 Version: 1.0.30 - Microsoft Corporation) Windows-Treiberpaket - Lexmark International Printer (10/01/2009 2.2.4.0) (Version: 10/01/2009 2.2.4.0 - Lexmark International) WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) WinSCP 5.1.2 (x32 Version: 5.1.2 - Martin Prikryl) ==================== Restore Points ========================= 05-02-2014 07:51:18 Geplanter Prüfpunkt 06-02-2014 15:54:45 Removed Apple Mobile Device Support 06-02-2014 15:55:33 Removed Apple Application Support 06-02-2014 15:55:59 Removed Apple Software Update 06-02-2014 15:56:20 Removed Bonjour 07-02-2014 08:33:21 Installed Intel(R) Network Connections. 07-02-2014 11:41:24 Windows Update 11-02-2014 11:06:45 Windows Update 12-02-2014 09:20:07 HPSF Applying updates 12-02-2014 14:12:04 Removed iTunes ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-02-27 07:20 - 00001066 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activation.acronis.com 127.0.0.1 nero.com 127.0.0.1 www.nero.com 127.0.0.1 activate.nero.com 127.0.0.1 www.activate.nero.com 127.0.0.1 nero.de 127.0.0.1 www.nero.de 127.0.0.1 activate.nero.de 127.0.0.1 www.activate.nero.de ==================== Scheduled Tasks (whitelisted) ============= Task: {117DDA68-5A8B-48C3-8EDE-8E4ACA09C4DD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {3AFBFF60-7576-4DE2-BF10-90F6BED2C9A4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {47D5628C-772A-461E-9952-83C14C08326D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07] (Google Inc.) Task: {493F757D-3DEC-41CC-B83E-9B67C470BEE0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-01-23] (Piriform Ltd) Task: {6A25D635-8F9C-4787-B433-472B57ACEF91} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2012-06-14] (Hewlett Packard) Task: {708BBAEF-0748-451C-936E-2C0B421AA7DD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {78171EEC-4509-4881-9C29-AAB3FF571D05} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {79441AC0-AB2D-453F-B7D7-AF4F8E074AF4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe Task: {7AD1EABA-571E-4759-BF20-FD5207102804} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: {AD7DB111-2AA3-42D0-8799-170BA9D8179F} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {C01CBBA3-96CB-42E8-B10E-FADD61986F7F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {E20A161D-924E-41A1-99AC-E1F76EA1322C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07] (Google Inc.) Task: {F39E5249-8989-4DCE-ABD4-D6A51090BA65} - System32\Tasks\GU4SkipUAC => C:\Program Files (x86)\Glary Utilities 4\Integrator.exe [2014-01-22] (Glarysoft Ltd) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GlaryInitialize 4.job => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2009-02-26 13:46 - 2009-02-26 13:46 - 00064344 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\ColleagueImport.dll 2011-06-22 11:46 - 2011-06-22 11:46 - 00434016 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll 2013-07-10 17:07 - 2013-07-10 17:07 - 00756888 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL 2014-02-14 07:28 - 2014-02-02 00:41 - 00715592 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libglesv2.dll 2014-02-14 07:28 - 2014-02-02 00:41 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libegl.dll 2014-02-14 07:28 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll 2014-02-14 07:28 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll 2014-02-14 07:28 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll 2014-02-14 07:28 - 2014-02-02 00:42 - 13616456 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll 2012-08-23 01:12 - 2012-08-23 01:12 - 00019840 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe MSCONFIG\startupreg: Bonus.SSR.FR11 => "C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe" /autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: TrueImageMonitor.exe => "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe" MSCONFIG\startupreg: vmware-tray.exe => "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe" ==================== Faulty Device Manager Devices ============= Name: VMware Virtual Ethernet Adapter for VMnet1 Description: VMware Virtual Ethernet Adapter for VMnet1 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: VMware, Inc. Service: VMnetAdapter Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: VMware Virtual Ethernet Adapter for VMnet8 Description: VMware Virtual Ethernet Adapter for VMnet8 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: VMware, Inc. Service: VMnetAdapter Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: HUAWEI Mobile Connect - 3G Network Card #4 Description: HUAWEI Mobile Connect - 3G Network Card Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: HUAWEI Incorporated Service: ewusbnet Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: PS/2-kompatible Maus Description: PS/2-kompatible Maus Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Standardtastatur (PS/2) Description: Standardtastatur (PS/2) Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Standardtastaturen) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (02/14/2014 06:54:13 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2014 02:59:53 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/12/2014 03:45:19 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/12/2014 02:36:43 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/12/2014 00:59:07 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070013, Das Medium ist schreibgeschützt. . Error: (02/12/2014 00:59:07 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x80070013, Das Medium ist schreibgeschützt. ] Error: (02/12/2014 00:59:07 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070013, Das Medium ist schreibgeschützt. . Error: (02/12/2014 00:59:07 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x80070013, Das Medium ist schreibgeschützt. ] Error: (02/12/2014 07:09:33 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: WSCommCntr2.exe, Version: 3.0.267.0, Zeitstempel: 0x4b71796a Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000004e4e4 ID des fehlerhaften Prozesses: 0x1410 Startzeit der fehlerhaften Anwendung: 0xWSCommCntr2.exe0 Pfad der fehlerhaften Anwendung: WSCommCntr2.exe1 Pfad des fehlerhaften Moduls: WSCommCntr2.exe2 Berichtskennung: WSCommCntr2.exe3 Error: (02/12/2014 07:00:00 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (02/14/2014 06:53:47 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/13/2014 02:59:23 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/13/2014 02:30:25 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252. Error: (02/12/2014 03:44:48 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/12/2014 02:36:19 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/12/2014 06:59:28 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/11/2014 01:27:49 PM) (Source: Microsoft-Windows-GroupPolicy) (User: NT-AUTORITÄT) Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator. Error: (02/11/2014 00:08:54 PM) (Source: Microsoft-Windows-GroupPolicy) (User: GESIG-WIEN) Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator. Error: (02/11/2014 00:08:54 PM) (Source: NETLOGON) (User: ) Description: Der Computer konnte eine sichere Sitzung mit einem Domänencontroller in der Domäne GESIG-WIEN aufgrund der folgenden Ursache nicht einrichten: %%1311 Dies kann zu Authentifizierungsproblemen führen. Stellen Sie sicher, dass der Computer mit dem Netzwerk verbunden ist. Wenden Sie sich an den Domänenadministrator, wenn das Problem weiterhin besteht. ZUSÄTZLICHE INFORMATIONEN Wenn dieser Computer ein Domänencontroller der bestimmten Domäne ist, wird eine sichere Sitzung zum primären Domänencontrolleremulator in der bestimmten Domäne eingerichtet. Andernfalls richtet dieser Computer eine sichere Sitzung zu einem beliebigen Domänencontroller in der bestimmten Domäne ein. Error: (02/11/2014 06:55:28 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Microsoft Office Sessions: ========================= Error: (01/27/2014 10:31:30 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 1768 seconds with 300 seconds of active time. This session ended with a crash. Error: (01/07/2013 10:17:29 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6662.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 3120 seconds with 1980 seconds of active time. This session ended with a crash. ==================== Memory info =========================== Percentage of memory in use: 60% Total physical RAM: 4027.25 MB Available physical RAM: 1590.87 MB Total Pagefile: 8052.67 MB Available Pagefile: 5215.87 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:785.4 GB) NTFS Drive d: (Volume) (Fixed) (Total:232.88 GB) (Free:93.37 GB) NTFS Drive k: (A1 Dashboard) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS Drive v: (Daten) (Network) (Total:723.18 GB) (Free:273.58 GB) NTFS Drive w: (Daten) (Network) (Total:723.18 GB) (Free:273.58 GB) NTFS Drive y: (Daten) (Network) (Total:723.18 GB) (Free:273.58 GB) NTFS Drive z: (Daten) (Network) (Total:723.18 GB) (Free:273.58 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 683DF7EA) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 233 GB) (Disk ID: FB91FB91) Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
18.02.2014, 17:27 | #7 |
/// the machine /// TB-Ausbilder | kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr Kein Malware Problem. Mein einziger Tipp an der Stelle (neben Google Support): Deinstalliere mal bitte Kaspersky, und teste ohne.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu kurz nach google chrome start funktioniert Internetverbindung teilweise nicht mehr |
bleibe, browser, deinstallation, erneut, funktioniert, gmail, google, installiert, interne, internetverbindung, langsam, lösung, min, netzwerkadapter, nicht mehr, offline, online, outlook, schließe, start, starte, surfen, verbindung, windows, windows 7 |