![]() |
Plagegeister aller Art und deren Bekämpfung: Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der SeitenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
![]() | #1 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Hallo miteinander, Ich habe das Problem, dass meine Browser häufiger mir einen Fehler : Server nicht gefunden anzeigen, aber nicht immer, meist funktioniert es. Nach einigen Malen aktualisieren ist es dann möglich die Seite doch zu erreichen. Manchmal wird die Seite zwar angezeigt, jedoch dann komplett falsch. Sprich kein Layout sondern einfach eine Anreihung von Links. Ich weiß jetzt nicht was ihr alles braucht um mir zu helfen, deswegen warte ich mit meinen Sachen noch. Hoffe ihr könnt mir helfen. Grüße |
![]() | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Hallo und
__________________![]() Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
![]() Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
![]() | #3 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten FRST Logfile:
__________________FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01 Ran by **** (administrator) on *** on 15-02-2014 15:58:13 Running from C:\Users\****\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe () C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe () C:\Windows\SysWOW64\XSrvSetup.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (Blacksun Software) C:\Program Files (x86)\Mousotron\Mousotron.exe (LOL Replay) C:\Program Files (x86)\LOLReplay\LOLRecorder.exe (Dropbox, Inc.) C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Ventis Media Inc.) C:\Program Files (x86)\MediaMonkey\MediaMonkey.exe (TeamSpeak Systems GmbH) C:\Users\****\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe (Microsoft Corporation) C:\Windows\system32\SndVol.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor) HKLM\...\Run: [Cm106Sound] - C:\Windows\Syswow64\cm106.dll [8126464 2009-05-11] (C-Media Corporation) HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [8292120 2013-11-14] (Logitech Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-17] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] () HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-10-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware ] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2010-09-30] (AMD) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [Mousotron] - C:\Program Files (x86)\Mousotron\Mousotron.exe [738304 2013-02-09] (Blacksun Software) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [EvolveClient] - C:\Program Files\Echobit\Evolve\EvolveClient.exe [3216800 2014-02-02] (Echobit LLC) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {387ac1a2-8e1e-11e2-9e87-1c6f658f0cb0} - J:\setup.exe HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {d3884d3c-6703-11e2-9e7e-806e6f6e6963} - D:\Run.exe Startup: C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xF8DDE3B018FBCD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://active.macromedia.com/flash2/cabs/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\npuplaypc.dll (Ubisoft) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-25] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22] FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22] Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Users\****\AppData\Local\Google\Chrome\User Data\PepperFlash\\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U13) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll No File CHR Plugin: (Java Deployment Toolkit - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Extension: (Adblock Plus) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-02-10] CHR Extension: (Grooveshark Germany unlocker) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\docdgimmdejoiemdafcgeodchlbllgac [2013-03-15] CHR Extension: (AdBlock) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-01] CHR Extension: (Google Wallet) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01] CHR Extension: (Battlefield Play4Free) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-10-24] ==================== Services (Whitelisted) ================= R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-10-08] (Advanced Micro Devices, Inc.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-07-06] () R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] () S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1579424 2014-02-02] (Echobit LLC) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-11-04] () ==================== Drivers (Whitelisted) ==================== R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21544 2010-04-27] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-03-16] (DT Soft Ltd) R3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-02-02] (Echobit, LLC) S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1306624 2009-05-14] (C-Media Electronics Inc) S3 WinRing0_1_2_0; C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [14544 2012-08-01] (OpenLibSys.org) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup- 2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-15 15:46 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-15 12:22 - 2014-02-15 12:22 - 00000856 _____ () C:\Windows\PFRO.log 2014-02-15 12:22 - 2014-02-15 12:22 - 00000056 _____ () C:\Windows\setupact.log 2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log 2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt 2014-02-14 17:49 - 2014-02-14 17:49 - 00042774 _____ () C:\Users\****\Desktop\Addition.txt 2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt 2014-02-14 17:40 - 2014-02-15 15:58 - 00016381 _____ () C:\Users\****\Downloads\FRST.txt 2014-02-14 17:40 - 2014-02-15 15:58 - 00000000 ____D () C:\FRST 2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log 2014-02-14 17:38 - 2014-02-14 17:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft 2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-02-14 17:06 - 2014-02-14 17:07 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter- 2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey 2014-02-14 14:16 - 2014-02-15 15:49 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe 2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe 2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip 2014-02-14 14:00 - 2014-02-14 14:01 - 172008924 _____ () C:\Users\****\Downloads\JBG2.rar 2014-02-13 00:39 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 00:39 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 00:38 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 00:38 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 00:38 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 00:38 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 00:38 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 00:38 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 00:38 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 00:38 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 00:38 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 00:38 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 00:38 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 00:38 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 00:38 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 00:38 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 00:38 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 00:38 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 00:38 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 00:38 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 00:38 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 00:38 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 00:38 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 00:38 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 00:38 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 00:38 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 00:38 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 00:38 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 00:38 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 00:38 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 00:38 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 00:38 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 00:38 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 00:38 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 00:38 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 00:38 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 00:38 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 00:38 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 00:38 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 00:38 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 00:38 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe 2014-02-12 12:40 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-12 12:40 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-12 12:40 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 12:40 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 12:40 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 12:40 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 12:40 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 12:40 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-12 12:40 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-12 12:40 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-12 12:40 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-12 12:40 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-12 12:40 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-12 12:40 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 12:40 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-10 22:52 - 2014-02-14 16:53 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt 2014-02-09 22:26 - 2014-02-14 15:40 - 00000000 ____D () C:\Users\****\Desktop\Book 2014-02-09 22:24 - 2014-02-09 22:24 - 00614792 _____ () C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe 2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH 2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk 2014-02-09 16:28 - 2014-02-09 16:53 - 00000000 ____D () C:\Program Files (x86)\Blackguards 2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe 2014-02-07 15:02 - 2014-02-07 15:03 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar 2014-02-06 21:34 - 2014-02-06 21:35 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar 2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX 2014-02-05 17:28 - 2014-02-05 17:31 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2 2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip 2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys 2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit 2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit 2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip 2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav 2014-01-22 16:54 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-22 16:54 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-22 16:54 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-22 16:54 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-22 16:53 - 2014-01-22 16:54 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer 2014-01-19 21:58 - 2014-01-19 22:04 - 00012832 _____ () C:\Users\****\Documents\***** *****.odt 2014-01-17 16:50 - 2014-01-17 16:50 - 00020651 _____ () C:\Users\****\Documents\SW-***** (1).odt 2014-01-16 19:32 - 2014-01-16 19:32 - 00003152 _____ () C:\Windows\System32\Tasks\{89F9EC89-E6C2-4DE1-ABE3-0F6B042D808F} ==================== One Month Modified Files and Folders ======= 2014-02-15 15:58 - 2014-02-14 17:40 - 00016381 _____ () C:\Users\****\Downloads\FRST.txt 2014-02-15 15:58 - 2014-02-14 17:40 - 00000000 ____D () C:\FRST 2014-02-15 15:49 - 2014-02-14 14:16 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey 2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup- 2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-15 15:44 - 2013-01-25 17:57 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-15 15:23 - 2013-01-25 16:31 - 01571872 _____ () C:\Windows\WindowsUpdate.log 2014-02-15 15:18 - 2013-01-25 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\TS3Client 2014-02-15 15:08 - 2013-01-25 17:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-15 14:50 - 2013-09-24 13:27 - 00000000 ____D () C:\Users\****\AppData\Roaming\Dropbox 2014-02-15 12:31 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-15 12:31 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-15 12:24 - 2013-09-24 13:29 - 00000000 ___RD () C:\Users\****\Dropbox 2014-02-15 12:23 - 2013-01-25 17:57 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-15 12:22 - 2014-02-15 12:22 - 00000856 _____ () C:\Windows\PFRO.log 2014-02-15 12:22 - 2014-02-15 12:22 - 00000056 _____ () C:\Windows\setupact.log 2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-15 12:22 - 2013-01-26 10:19 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys 2014-02-15 12:22 - 2013-01-25 17:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-15 12:22 - 2011-03-12 13:02 - 00000144 _____ () C:\service.log 2014-02-15 12:22 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-14 23:39 - 2013-01-25 17:57 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-14 23:39 - 2013-01-25 17:57 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log 2014-02-14 17:50 - 2013-01-25 17:24 - 00000000 ____D () C:\Users\**** 2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt 2014-02-14 17:49 - 2014-02-14 17:49 - 00042774 _____ () C:\Users\****\Desktop\Addition.txt 2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt 2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log 2014-02-14 17:38 - 2014-02-14 17:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft 2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-02-14 17:07 - 2014-02-14 17:06 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter- 2014-02-14 17:04 - 2013-01-25 17:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-14 16:53 - 2014-02-10 22:52 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt 2014-02-14 15:40 - 2014-02-09 22:26 - 00000000 ____D () C:\Users\****\Desktop\Book 2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe 2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe 2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip 2014-02-14 14:05 - 2013-03-16 16:26 - 00000000 ____D () C:\Users\****\AppData\Roaming\DAEMON Tools Lite 2014-02-14 13:56 - 2013-07-16 13:50 - 00000000 ____D () C:\Users\****\Desktop\Spiele 2014-02-14 13:51 - 2013-01-26 10:58 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-02-13 23:24 - 2013-01-26 11:47 - 00000000 ____D () C:\Users\****\AppData\Local\Adobe 2014-02-13 23:24 - 2013-01-25 17:45 - 00000000 ____D () C:\Users\****\AppData\Roaming\Adobe 2014-02-13 17:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe 2014-02-11 22:14 - 2007-01-02 21:25 - 00001456 _____ () C:\Users\****\AppData\Local\Adobe Save for Web 13.0 Prefs 2014-02-11 20:53 - 2013-01-25 17:55 - 00000000 ____D () C:\Users\****\AppData\Local\PMB Files 2014-02-11 19:45 - 2013-01-25 17:55 - 00000000 ____D () C:\ProgramData\PMB Files 2014-02-10 17:34 - 2013-12-07 18:11 - 00000000 ____D () C:\Users\****\AppData\Local\Battle.net 2014-02-10 16:16 - 2013-04-21 18:00 - 00000000 ____D () C:\ProgramData\Steam 2014-02-09 22:24 - 2014-02-09 22:24 - 00614792 _____ () C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe 2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH 2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk 2014-02-09 16:53 - 2014-02-09 16:28 - 00000000 ____D () C:\Program Files (x86)\Blackguards 2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe 2014-02-07 15:03 - 2014-02-07 15:02 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar 2014-02-06 21:35 - 2014-02-06 21:34 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar 2014-02-06 13:16 - 2014-02-13 00:38 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 00:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 00:38 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 00:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 00:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 00:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 00:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 00:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 00:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 00:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-13 00:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-13 00:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 00:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 00:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 00:38 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 00:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 00:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 00:38 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-13 00:38 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-13 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 00:38 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 00:38 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 00:38 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 00:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 00:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 00:38 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-13 00:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-13 00:38 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 00:38 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 00:38 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 00:38 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 00:38 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 00:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 00:38 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 00:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 00:38 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 00:38 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 22:42 - 2013-07-10 23:54 - 00000000 ____D () C:\Users\****\AppData\Roaming\Skype 2014-02-05 21:08 - 2013-01-25 17:37 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 21:08 - 2013-01-25 17:37 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 21:08 - 2013-01-25 17:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX 2014-02-05 17:34 - 2013-03-29 18:47 - 00000000 ____D () C:\Users\****\Documents\Telltale Games 2014-02-05 17:31 - 2014-02-05 17:28 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2 2014-02-04 13:40 - 2013-01-25 17:58 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip 2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys 2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit 2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit 2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip 2014-02-02 14:58 - 2013-04-02 16:27 - 00000000 ____D () C:\Users\****\Documents\StarCraft II 2014-02-02 14:51 - 2013-04-02 16:27 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-01-30 21:35 - 2013-12-07 18:16 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-01-30 21:35 - 2013-01-26 10:52 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-01-30 21:33 - 2013-12-07 18:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav 2014-01-23 22:30 - 2013-04-22 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\Audacity 2014-01-23 00:32 - 2014-02-09 13:03 - 00000000 ____D () C:\Users\****\Downloads\Blackguards 2014-01-22 16:54 - 2014-01-22 16:53 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-22 16:54 - 2013-10-30 00:30 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-22 16:54 - 2013-03-12 13:25 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer 2014-01-21 23:03 - 2014-01-10 14:55 - 00000000 ____D () C:\Users\****\Documents\Neuer Ordner (5) 2014-01-20 18:31 - 2010-11-21 07:50 - 01478616 _____ () C:\Windows\system32\perfh007.dat 2014-01-20 18:31 - 2010-11-21 07:50 - 00398040 _____ () C:\Windows\system32\perfc007.dat 2014-01-20 18:31 - 2009-07-14 06:13 - 00006356 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-01-19 23:35 - 2013-10-01 19:50 - 00000000 ____D () C:\Users\****\Documents\***** 2014-01-19 22:04 - 2014-01-19 21:58 - 00012832 _____ () C:\Users\****\Documents\***** *****.odt 2014-01-19 19:14 - 2013-01-27 15:45 - 00000000 ____D () C:\Users\****\Documents\my games 2014-01-17 16:50 - 2014-01-17 16:50 - 00020651 _____ () C:\Users\****\Documents\SW-***** (1).odt 2014-01-16 19:40 - 2013-09-22 22:18 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-01-16 19:35 - 2013-08-30 16:51 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios 2014-01-16 19:35 - 2013-08-30 16:50 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios 2014-01-16 19:35 - 2013-01-25 18:32 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-16 19:32 - 2014-01-16 19:32 - 00003152 _____ () C:\Windows\System32\Tasks\{89F9EC89-E6C2-4DE1-ABE3-0F6B042D808F} 2014-01-16 19:32 - 2014-01-03 21:16 - 00000000 ____D () C:\Program Files (x86)\Zenimax Online 2014-01-16 18:54 - 2013-01-25 17:25 - 00000000 ___RD () C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-16 18:53 - 2013-09-24 13:29 - 00000979 _____ () C:\Users\****\Desktop\Dropbox.lnk 2014-01-16 18:53 - 2013-09-24 13:28 - 00000000 ____D () C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-01-16 17:22 - 2009-07-14 05:45 - 00296944 _____ () C:\Windows\system32\FNTCACHE.DAT Some content of TEMP: ==================== C:\Users\****\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 20:28 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-02-2014 01 Ran by ***** at 2014-02-14 17:42:12 Running from C:\Users\*****\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Adobe Flash Player 12 ActiveX (x32 Version: - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (x32 Version: - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) AION Free-to-Play (x32 Version: - Gameforge) AMD Accelerated Video Transcoding (Version: - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2013.1008.932.15229 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - ATI Technologies Inc.) Hidden AMD Fuel (Version: 2013.1008.932.15229 - Ihr Firmenname) Hidden AMD Media Foundation Decoders (Version: 1.0.81008.0920 - Advanced Micro Devices, Inc.) Hidden Amnesia - The Dark Descent (x32 Version: 1.0.0 - Frictional Games) Apple Application Support (x32 Version: 2.3.4 - Apple Inc.) Apple Software Update (x32 Version: - Apple Inc.) ATI AVIVO64 Codecs (Version: - ATI Technologies Inc.) Hidden ATI Problem Report Wizard (Version: 3.0.795.0 - ATI Technologies) Hidden Audacity 2.0.3 (x32 Version: 2.0.3 - Audacity Team) Audiosurf (x32 Version: 1.00.0000) Avira Free Antivirus (x32 Version: - Avira) Battle.net (x32 Version: - Blizzard Entertainment) Battlefield 4™ (x32 Version: - Electronic Arts) BattlEye for OA Uninstall (x32 Version: - ) Blackguards Version 1.1 (x32 Version: 1.1 - Daedalic Entertainment) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2013.1008.0931.15229 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.1008.932.15229 - Advanced Micro Devices, Inc.) Hidden CCleaner (Version: 4.09 - Piriform) Company of Heroes 2 (x32 Version: - Relic Entertainment) Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden Counter-Strike: Global Offensive (x32 Version: - Valve) Curse Client (HKCU Version: - Curse) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ (x32 Version: - Bohemia Interactive) DayZ Commander (x32 Version: 0.9.123 - Dotjosh Studios) Destinations (x32 Version: - Hewlett-Packard) Hidden Desura (x32 Version: 100.53 - Desura) Desura: Abduction (x32 Version: Full - Anxt) DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden Die Sims™ 3 (x32 Version: 1.50.56 - Electronic Arts) Die Sims™ 3 70er, 80er & 90er Accessoires (x32 Version: 17.0.77 - Electronic Arts) Die Sims™ 3 Diesel Accessoires (x32 Version: 14.0.48 - Electronic Arts) Die Sims™ 3 Einfach tierisch (x32 Version: 10.0.96 - Electronic Arts) Die Sims™ 3 Gib Gas-Accessoires (x32 Version: 5.0.44 - Electronic Arts) Die Sims™ 3 Jahreszeiten (x32 Version: 16.0.136 - Electronic Arts) Die Sims™ 3 Katy Perry Süße Welt (x32 Version: 13.0.62 - Electronic Arts) Die Sims™ 3 Late Night (x32 Version: 6.0.81 - Electronic Arts) Die Sims™ 3 Lebensfreude (x32 Version: 8.0.152 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38 - Electronic Arts) Die Sims™ 3 Reiseabenteuer (x32 Version: 2.0.86 - Electronic Arts) Die Sims™ 3 Showtime (x32 Version: 12.0.273 - Electronic Arts) Die Sims™ 3 Stadt-Accessoires (x32 Version: 9.0.73 - Electronic Arts) Die Sims™ 3 Supernatural (x32 Version: 15.0.135 - Electronic Arts) Die Sims™ 3 Traumkarrieren (x32 Version: 4.0.87 - Electronic Arts) Die Sims™ 3 Traumsuite-Accessoires (x32 Version: 11.0.84 - Electronic Arts) Die Sims™ 3 Wildes Studentenleben (x32 Version: 18.0.126 - Electronic Arts) Die*Sims™*3 Erstelle einen Sim (x32 Version: 1.0.25 - Electronic Arts) DJ Mix Lite (x32 Version: - ) DJ_AIO_03_F4200_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.) EasySaver B9.1214.1 (x32 Version: 1.00.0000 - Gigabyte) ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) Evolve (Version: 1.8.2 - Echobit, LLC) F1 2012 (x32 Version: ) F4200 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden FLV Player 2.0 (build 25) (x32 Version: 2.0 (build 25) - Martijn de Visser) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version (x32 Version: - DVDVideoSoft Ltd.) Game Dev Tycoon v1.3.2 (c) Greenheart Games version 1 (x32 Version: 1 - ) Gameforge Live 1.9.0 "Legend" (x32 Version: 1.9.0 - Gameforge) Garry's Mod (x32 Version: - Garry) Gigabyte Raid Configurer (x32 Version: 1.00.0001 - GIGABYTE Technologies, Inc.) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden GTA San Andreas (x32 Version: 1.00.00001 - Rockstar Games) Hearthstone (x32 Version: - Blizzard Entertainment) Hearts of Iron III (x32 Version: - Paradox Interactive) HP Customer Participation Program 13.0 (Version: 13.0 - HP) HP Deskjet F4200 All-In-One Driver Software 13.0 Rel. 3 (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (Version: 13.0 - HP) HP Smart Web Printing 4.51 (Version: 4.51 - HP) HP Solution Center 13.0 (Version: 13.0 - HP) HP Update (x32 Version: - Hewlett-Packard) HPPhotoGadget (x32 Version: - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HydraVision (x32 Version: - ATI Technologies Inc.) Hidden Java 7 Update 17 (64-bit) (Version: 7.0.170 - Oracle) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: - Sun Microsystems, Inc.) Hidden JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH) League of Legends (x32 Version: 1.3 - Riot Games) Logitech Gaming Software (Version: 8.45.88 - Logitech Inc.) Hidden Logitech Gaming Software 8.51 (Version: 8.51.5 - Logitech Inc.) LOLReplay (x32 Version: - www.leaguereplays.com) Magicka (x32 Version: - Arrowhead Game Studios AB) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden MediaMonkey 4.1 (x32 Version: 4.1 - Ventis Media Inc.) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0 - Microsoft Corporation) Microsoft-Maus- und Tastatur-Center (Version: - Microsoft Corporation) Microsoft-Maus- und Tastatur-Center (Version: - Microsoft Corporation) Hidden Mousotron 8.2 (x32 Version: 8.2 - Blacksun Software) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) Nostale(DE) (x32 Version: - Gameforge 4D GmbH) Notepad++ (x32 Version: 6.5 - Notepad++ Team) NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) ON_OFF Charge B10.0427.1 (x32 Version: 1.00.0001 - GIGABYTE) Open Broadcaster Software (x32 Version: - ) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593 - Apache Software Foundation) Origin (x32 Version: - Electronic Arts, Inc.) osu! (x32 Version: Pando Media Booster (x32 Version: - Pando Networks Inc.) Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Pokemon Online 2.1.0 (x32 Version: - Dreambelievers) PunkBuster Services (x32 Version: 0.993 - Even Balance, Inc.) QuickTime (x32 Version: - Apple Inc.) Razer Game Booster (x32 Version: 3.6 - Razer USA Ltd) Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.18.322.2010 - Realtek) Realtek HDMI Audio Driver for ATI (x32 Version: - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (x32 Version: - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: - Renesas Electronics Corporation) Hidden Samsung Kies (x32 Version: - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (Version: - SAMSUNG Electronics Co., Ltd.) Scan (x32 Version: - Hewlett-Packard) Hidden Sid Meier's Civilization V (x32 Version: Sid Meier's Civilization V ) Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden StarCraft II (x32 Version: - Blizzard Entertainment) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden Steam (x32 Version: - Valve Corporation) TeamSpeak 3 Client (HKCU Version: - TeamSpeak Systems GmbH) TeamViewer 8 (x32 Version: 8.0.19617 - TeamViewer) Test Drive®: Ferrari Racing Legends (x32 Version: - Slightly Mad Studios) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden Tropico 4 Modern Times V1.0.6 (x32 Version: 1.0.6 - ) Trust 5.1 Surround Headset (Version: - ) Unity Web Player (HKCU Version: - Unity Technologies ApS) UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden VLC media player 2.0.8 (x32 Version: 2.0.8 - VideoLAN) Warhammer 40,000: Dawn of War – Soulstorm (x32 Version: - Relic Entertainment) Warhammer® 40,000™: Dawn of War® II – Retribution™ (x32 Version: - Relic) WebReg (x32 Version: - Hewlett-Packard) Hidden Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) Zombie Driver HD (x32 Version: ) ==================== Restore Points ========================= 12-02-2014 23:37:46 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1F47BB7F-6754-441C-B6AA-D9042BA27CF7} - System32\Tasks\AdobeAAMUpdater-1.0-Cho-***** => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe Task: {2AB20320-0DEC-4344-9B39-3C3711FDF00D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {30F6DFA3-39F4-48E3-A0BD-71726C906743} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: {69310FED-C03E-4C7F-8D16-185E7FADA48E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-25] (Google Inc.) Task: {78FD87F4-7DD9-4ACE-9EF8-ACACAFED2AF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-25] (Google Inc.) Task: {8EEFDC98-CEAF-4ACF-A450-11A90DEEAFA5} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {94118E8F-3016-4C58-85F4-905FC7A3D99F} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe [2013-05-07] () Task: {95850369-3419-47D4-9736-C92F5697B766} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {A3E0E4E3-DC99-47F1-82F3-713317B89892} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {C77B843A-A9A0-4C97-831E-562F21E1A15C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {FF6A4FCE-7701-4E50-A158-57DAAA79AF34} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-10-08 09:34 - 2013-10-08 09:34 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\*****\Downloads\Defogger.exe 2013-01-25 17:45 - 2012-09-19 18:17 - 00397088 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-01-25 18:32 - 2009-08-24 14:38 - 00068136 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE 2013-01-25 18:32 - 2009-03-13 11:30 - 00109096 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\YCC.DLL 2013-01-26 10:12 - 2010-01-19 03:31 - 00072304 ____R () C:\Windows\SysWOW64\XSrvSetup.exe 2013-03-26 18:50 - 2013-11-04 16:50 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-02-14 14:16 - 2014-02-03 19:54 - 00054784 _____ () C:\Program Files (x86)\MediaMonkey\MMHelper.dll 2013-12-11 05:22 - 2013-12-11 05:22 - 00378368 _____ () C:\Program Files (x86)\LOLReplay\LOLUtils.dll 2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\*****\AppData\Roaming\Dropbox\bin\libcef.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00025600 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\imageformats\_old_qgif4.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00195584 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\imageformats\_old_qjpeg4.dll 2012-10-29 11:08 - 2013-10-24 17:06 - 00230376 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win32.dll 2012-10-29 11:08 - 2013-10-24 17:06 - 00237032 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll 2012-10-29 11:08 - 2013-10-24 17:06 - 00431080 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-09-11 19:09 - 2013-10-24 17:06 - 00555496 _____ () C:\Users\*****\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-02-14 14:16 - 2014-02-03 19:48 - 00581632 _____ () C:\Program Files (x86)\MediaMonkey\sqlite3MM.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00390656 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_aac.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00327680 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_ape.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00306176 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_AVI.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00133120 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_flac.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00267264 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_flac_codec.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00262656 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_FLV.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00368640 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_mkv.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00388608 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_MP4.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00328192 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_mpc.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00269824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_MPG.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00352768 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_ogg.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00141824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_video.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00335360 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_wave.dll 2014-02-14 14:16 - 2014-02-03 19:49 - 00373760 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\f_WMV.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00061440 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_mfaudio.dll 2014-02-14 14:16 - 2014-01-30 21:22 - 00077824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_mpc.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00321536 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_vorbis.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00081920 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wav.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00222720 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wma.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00103936 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\in_wmp3.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00348672 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_MMDS.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00378880 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_WASAPI.dll 2014-02-14 14:16 - 2014-01-30 21:22 - 00013824 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\out_wave.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00103936 _____ () C:\Program Files (x86)\MediaMonkey\Equalize.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 01043456 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iPhone.dll 2014-02-14 14:16 - 2014-02-03 19:49 - 01234432 _____ () C:\Program Files (x86)\MediaMonkey\iPhoneCalc.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00900096 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iPod.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00400384 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_iRiverH.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00301056 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_USBMass1.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00421376 _____ () C:\Program Files (x86)\MediaMonkey\Plugins\d_WMDM.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00132608 _____ () C:\Program Files (x86)\MediaMonkey\WMAuth.dll 2014-02-14 14:16 - 2014-02-03 19:55 - 00704000 _____ () C:\Program Files (x86)\MediaMonkey\UpNp.dll 2014-02-14 14:16 - 2014-02-03 19:54 - 00223744 _____ () C:\Program Files (x86)\MediaMonkey\WMAFunct.DLL 2013-12-21 13:48 - 2013-12-21 13:48 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-02-05 21:08 - 2014-02-05 21:08 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll 2014-02-14 17:09 - 2013-12-30 20:05 - 00132664 _____ () C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.Resources.dll 2014-02-14 17:09 - 2013-12-30 16:31 - 00036864 _____ () C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.Resources.resources.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00110648 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00037944 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\jansson.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00083512 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_thread-vc100-mt-1_53.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00018488 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc100-mt-1_53.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00103992 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc100-mt-1_53.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 05209656 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avformat-55.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 15904824 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avcodec-55.dll 2014-02-14 17:09 - 2013-12-30 21:27 - 00407096 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\avutil-52.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: CL2 Launcher => C:\Program Files (x86)\City Life RPG\CL2 Launcher\CL2Launcher.exe MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe MSCONFIG\startupreg: Pando Media Booster => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe MSCONFIG\startupreg: PSwitch => C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/14/2014 01:18:59 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/14/2014 01:12:19 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2014 03:48:48 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET_4.0.30319" (ASP.NET_4.0.30319). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (02/13/2014 00:40:41 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich. System errors: ============= Error: (02/14/2014 01:17:21 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 14.02.2014 um 13:14:28 unerwartet heruntergefahren. Error: (02/13/2014 03:50:55 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Presentation Foundation-Schriftartcache" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/13/2014 03:50:55 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Presentation Foundation-Schriftartcache erreicht. Error: (02/12/2014 02:49:02 PM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (02/11/2014 03:04:15 PM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "MALLE", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{47D728F7-3FC3-416B-98E5-89CC36A729FD}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (02/10/2014 01:16:13 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Microsoft .NET Framework NGEN v4.0.30319_X86 erreicht. Error: (02/10/2014 01:15:34 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/10/2014 01:15:34 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Error: (02/10/2014 01:15:34 PM) (Source: DCOM) (User: ) Description: 1053WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (02/09/2014 04:46:50 PM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Microsoft Office Sessions: ========================= Error: (02/14/2014 01:18:59 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/14/2014 01:12:19 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2014 03:48:48 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: ASP.NETASP.NET8F20300004D070000 Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (02/13/2014 00:40:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: ASP.NET_4.0.30319ASP.NET_4.0.303198F20300004D070000 Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (02/13/2014 00:40:42 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (02/13/2014 00:40:41 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: ASP.NETASP.NET8F20300004D070000 CodeIntegrity Errors: =================================== Date: 2013-02-16 11:26:56.560 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:56.542 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:54.509 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:54.487 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:52.432 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:52.407 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:50.338 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:50.315 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:48.210 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-16 11:26:48.189 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 41% Total physical RAM: 8189.55 MB Available physical RAM: 4827.73 MB Total Pagefile: 15187.73 MB Available Pagefile: 11232.21 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:37.01 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 4265782E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter Malwarebytes Anti-Malware (Test) www.malwarebytes.org Datenbank Version: v2014.02.15.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16518 ***** :: *** [Administrator] Schutz: Aktiviert 15.02.2014 15:49:06 MBAM-log-2014-02-15 (15-55-54).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 266272 Laufzeit: 6 Minute(n), 22 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 9 C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$R18ONSM.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt. C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$RJFRVVI.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt. C:\$Recycle.Bin\S-1-5-21-756694084-1794544933-3651934415-1000\$RNBK0TL.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt. C:\Users\****\Downloads\DTLite4471-0333.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt. C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt. C:\Users\****Downloads\FreeYouTubeToMP3Converter (1).exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt. C:\Users\****\Downloads\FreeYouTubeToMP3Converter.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt. C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe (PUP.Optional.Bandoo) -> Keine Aktion durchgeführt. C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe (PUP.Optional.DownloadSponsor) -> Keine Aktion durchgeführt. (Ende) Geändert von Veggie (15.02.2014 um 16:35 Uhr) |
![]() | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte ![]()
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #5 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Danke im Voraus für die Hilfe. Die Suche mit dem Scan hat keinerlei Malware gefunden. Was nun? |
![]() | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Log bitte davon posten
__________________ --> Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten |
![]() | #7 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der SeitenCode:
ATTFilter Malwarebytes Anti-Rootkit BETA www.malwarebytes.org Database version: v2014.02.16.06 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16518 **** :: *** [administrator] 16.02.2014 23:17:51 mbar-log-2014-02-16 (23-17-51).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 297418 Time elapsed: 17 minute(s), 1 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
![]() | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte ![]()
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #9 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der SeitenCode:
ATTFilter # AdwCleaner v3.019 - Bericht erstellt am 19/02/2014 um 12:51:07 # Aktualisiert 17/02/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : **** - **** # Gestartet von : C:\Users\****\Desktop\Neuer Ordner (2)\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Program Files (x86)\myfree codec Ordner Gelöscht : C:\Windows\SysWOW64\hotspot shield Datei Gelöscht : C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\Uninstall.exe ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\an****rfree Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\TENCENT Schlüssel Gelöscht : HKLM\Software\TENCENT Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16518 -\\ Mozilla Firefox v27.0.1 (de) [ Datei : C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default\prefs.js ] [ Datei : C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\JonDoFox\prefs.js ] Zeile gelöscht : user_pref("pttl.menu-search-groups-tab", false); Zeile gelöscht : user_pref("pttl.menu-search-groups-win", false); -\\ Google Chrome v32.0.1700.107 [ Datei : C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [4035 octets] - [19/02/2014 12:50:31] AdwCleaner[S0].txt - [3799 octets] - [19/02/2014 12:51:07] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3859 octets] ########## FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2014 Ran by **** (administrator) on *** on 19-02-2014 13:08:37 Running from C:\Users\****\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe () C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe () C:\Windows\SysWOW64\XSrvSetup.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (Blacksun Software) C:\Program Files (x86)\Mousotron\Mousotron.exe (LOL Replay) C:\Program Files (x86)\LOLReplay\LOLRecorder.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Dropbox, Inc.) C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Avira Operations GmbH & Co. KG) C:\program files (x86)\avira\antivir desktop\ipmGui.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe (Farbar) C:\Users\****\Downloads\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor) HKLM\...\Run: [Cm106Sound] - C:\Windows\Syswow64\cm106.dll [8126464 2009-05-11] (C-Media Corporation) HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [8292120 2013-11-14] (Logitech Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2014-02-18] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] () HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-10-08] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2010-09-30] (AMD) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [Mousotron] - C:\Program Files (x86)\Mousotron\Mousotron.exe [738304 2013-02-09] (Blacksun Software) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\Run: [EvolveClient] - C:\Program Files\Echobit\Evolve\EvolveClient.exe [3216800 2014-02-02] (Echobit LLC) HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {387ac1a2-8e1e-11e2-9e87-1c6f658f0cb0} - J:\setup.exe HKU\S-1-5-21-756694084-1794544933-3651934415-1000\...\MountPoints2: {d3884d3c-6703-11e2-9e7e-806e6f6e6963} - D:\Run.exe Startup: C:\Users\****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xF8DDE3B018FBCD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://active.macromedia.com/flash2/cabs/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\orbit\npuplaypc.dll (Ubisoft) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\****\AppData\Roaming\Mozilla\Firefox\Profiles\il04gmci.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-25] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22] FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-02-22] Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Users\****\AppData\Local\Google\Chrome\User Data\PepperFlash\\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U13) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll No File CHR Plugin: (Java Deployment Toolkit - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Extension: (Adblock Plus) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-02-10] CHR Extension: (Grooveshark Germany unlocker) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\docdgimmdejoiemdafcgeodchlbllgac [2013-03-15] CHR Extension: (AdBlock) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-01] CHR Extension: (Google Wallet) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01] CHR Extension: (Battlefield Play4Free) - C:\Users\****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-10-24] ==================== Services (Whitelisted) ================= R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-10-08] (Advanced Micro Devices, Inc.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-07-06] () R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] () S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1579424 2014-02-02] (Echobit LLC) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-11-04] () ==================== Drivers (Whitelisted) ==================== R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21544 2010-04-27] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-03-16] (DT Soft Ltd) R3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-02-02] (Echobit, LLC) S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1306624 2009-05-14] (C-Media Electronics Inc) S3 WinRing0_1_2_0; C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [14544 2012-08-01] (OpenLibSys.org) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-19 13:08 - 2014-02-19 13:08 - 02153472 _____ (Farbar) C:\Users\****\Downloads\FRST64(1).exe 2014-02-19 13:06 - 2014-02-19 13:06 - 00000781 _____ () C:\Users\****\Desktop\JRT.txt 2014-02-19 12:58 - 2014-02-19 12:58 - 00000000 ____D () C:\Windows\ERUNT 2014-02-19 12:57 - 2014-02-19 12:57 - 01037530 _____ (Thisisu) C:\Users\****\Downloads\JRT.exe 2014-02-19 12:50 - 2014-02-19 12:57 - 00000000 ____D () C:\Users\****\Desktop\Neuer Ordner (2) 2014-02-19 12:50 - 2014-02-19 12:51 - 00000000 ____D () C:\AdwCleaner 2014-02-19 12:49 - 2014-02-19 12:49 - 01241834 _____ () C:\Users\****\Downloads\adwcleaner.exe 2014-02-17 18:31 - 2014-02-17 18:31 - 00184139 _____ () C:\Users\****\Documents\peng.xps 2014-02-16 22:45 - 2014-02-16 23:57 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-16 22:45 - 2014-02-16 23:17 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-16 22:42 - 2014-02-16 23:17 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-16 22:42 - 2014-02-16 22:42 - 12589848 _____ (Malwarebytes Corp.) C:\Users\****\Downloads\mbar- 2014-02-16 22:42 - 2014-02-16 22:42 - 00000000 ____D () C:\Users\****\Antirootkit 2014-02-16 11:33 - 2014-02-16 11:33 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-15 16:04 - 2014-02-15 16:04 - 00000000 ____D () C:\Users\****\Desktop\Neuer Ordner 2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup- 2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-15 15:46 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-15 12:22 - 2014-02-19 13:01 - 00001344 _____ () C:\Windows\setupact.log 2014-02-15 12:22 - 2014-02-19 12:53 - 00002664 _____ () C:\Windows\PFRO.log 2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log 2014-02-14 17:49 - 2014-02-15 16:15 - 00042222 _____ () C:\Users\****\Desktop\Addition.txt 2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt 2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt 2014-02-14 17:40 - 2014-02-19 13:08 - 00015945 _____ () C:\Users\****\Downloads\FRST.txt 2014-02-14 17:40 - 2014-02-19 13:08 - 00000000 ____D () C:\FRST 2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log 2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft 2014-02-14 17:09 - 2014-02-14 17:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-02-14 17:06 - 2014-02-14 17:07 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter- 2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey 2014-02-14 14:16 - 2014-02-18 18:12 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe 2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe 2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip 2014-02-14 14:00 - 2014-02-14 14:01 - 172008924 _____ () C:\Users\****\Downloads\JBG2.rar 2014-02-13 00:39 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 00:39 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 00:38 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 00:38 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 00:38 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 00:38 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 00:38 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 00:38 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 00:38 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 00:38 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 00:38 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 00:38 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 00:38 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 00:38 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 00:38 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 00:38 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 00:38 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 00:38 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 00:38 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 00:38 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 00:38 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 00:38 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 00:38 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 00:38 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 00:38 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 00:38 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 00:38 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 00:38 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 00:38 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 00:38 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 00:38 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 00:38 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 00:38 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 00:38 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 00:38 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 00:38 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 00:38 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 00:38 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 00:38 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 00:38 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 00:38 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe 2014-02-12 12:40 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-12 12:40 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-12 12:40 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 12:40 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 12:40 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 12:40 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 12:40 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 12:40 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-12 12:40 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-12 12:40 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-12 12:40 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-12 12:40 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-12 12:40 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-12 12:40 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-12 12:40 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-12 12:40 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-12 12:40 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-12 12:40 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 12:40 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-10 22:52 - 2014-02-14 16:53 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt 2014-02-09 22:26 - 2014-02-16 11:22 - 00000000 ____D () C:\Users\****\Desktop\Book 2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH 2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk 2014-02-09 16:28 - 2014-02-09 16:53 - 00000000 ____D () C:\Program Files (x86)\Blackguards 2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe 2014-02-07 15:02 - 2014-02-07 15:03 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar 2014-02-06 21:34 - 2014-02-06 21:35 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar 2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX 2014-02-05 17:28 - 2014-02-05 17:31 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2 2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip 2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys 2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit 2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit 2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip 2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav 2014-01-22 16:54 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-22 16:54 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-22 16:54 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-22 16:54 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-22 16:53 - 2014-01-22 16:54 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer ==================== One Month Modified Files and Folders ======= 2014-02-19 13:09 - 2014-02-14 17:40 - 00015945 _____ () C:\Users\****\Downloads\FRST.txt 2014-02-19 13:08 - 2014-02-19 13:08 - 02153472 _____ (Farbar) C:\Users\****\Downloads\FRST64(1).exe 2014-02-19 13:08 - 2014-02-14 17:40 - 00000000 ____D () C:\FRST 2014-02-19 13:08 - 2013-01-25 17:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-19 13:06 - 2014-02-19 13:06 - 00000781 _____ () C:\Users\****\Desktop\JRT.txt 2014-02-19 13:03 - 2013-09-24 13:29 - 00000000 ___RD () C:\Users\****\Dropbox 2014-02-19 13:03 - 2013-09-24 13:27 - 00000000 ____D () C:\Users\****\AppData\Roaming\Dropbox 2014-02-19 13:02 - 2011-03-12 13:02 - 00000144 _____ () C:\service.log 2014-02-19 13:01 - 2014-02-15 12:22 - 00001344 _____ () C:\Windows\setupact.log 2014-02-19 13:01 - 2013-01-26 10:19 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys 2014-02-19 13:01 - 2013-01-25 17:57 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-19 13:01 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-19 13:00 - 2013-01-25 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\TS3Client 2014-02-19 13:00 - 2013-01-25 16:31 - 01733132 _____ () C:\Windows\WindowsUpdate.log 2014-02-19 13:00 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-19 13:00 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-19 12:58 - 2014-02-19 12:58 - 00000000 ____D () C:\Windows\ERUNT 2014-02-19 12:57 - 2014-02-19 12:57 - 01037530 _____ (Thisisu) C:\Users\****\Downloads\JRT.exe 2014-02-19 12:57 - 2014-02-19 12:50 - 00000000 ____D () C:\Users\****\Desktop\Neuer Ordner (2) 2014-02-19 12:53 - 2014-02-15 12:22 - 00002664 _____ () C:\Windows\PFRO.log 2014-02-19 12:51 - 2014-02-19 12:50 - 00000000 ____D () C:\AdwCleaner 2014-02-19 12:49 - 2014-02-19 12:49 - 01241834 _____ () C:\Users\****\Downloads\adwcleaner.exe 2014-02-19 12:44 - 2013-01-25 17:57 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-18 18:12 - 2014-02-14 14:16 - 00000000 ____D () C:\Users\****\AppData\Roaming\MediaMonkey 2014-02-18 18:12 - 2013-01-25 17:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-18 17:54 - 2013-01-26 11:47 - 00000000 ____D () C:\Users\****\AppData\Local\Adobe 2014-02-18 17:54 - 2013-01-25 17:45 - 00000000 ____D () C:\Users\****\AppData\Roaming\Adobe 2014-02-18 17:47 - 2007-01-02 21:25 - 00001456 _____ () C:\Users\****\AppData\Local\Adobe Save for Web 13.0 Prefs 2014-02-18 17:17 - 2013-12-07 18:11 - 00000000 ____D () C:\Users\****\AppData\Local\Battle.net 2014-02-17 18:31 - 2014-02-17 18:31 - 00184139 _____ () C:\Users\****\Documents\peng.xps 2014-02-17 13:39 - 2013-01-25 17:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-17 00:00 - 2013-07-10 23:54 - 00000000 ____D () C:\Users\****\AppData\Roaming\Skype 2014-02-16 23:57 - 2014-02-16 22:45 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-16 23:17 - 2014-02-16 22:45 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-16 23:17 - 2014-02-16 22:42 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-16 22:42 - 2014-02-16 22:42 - 12589848 _____ (Malwarebytes Corp.) C:\Users\****\Downloads\mbar- 2014-02-16 22:42 - 2014-02-16 22:42 - 00000000 ____D () C:\Users\****\Antirootkit 2014-02-16 22:42 - 2013-01-25 17:24 - 00000000 ____D () C:\Users\**** 2014-02-16 21:16 - 2013-12-07 18:11 - 00000000 ____D () C:\Users\****\AppData\Roaming\Battle.net 2014-02-16 21:16 - 2013-12-07 18:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-02-16 11:33 - 2014-02-16 11:33 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-16 11:22 - 2014-02-09 22:26 - 00000000 ____D () C:\Users\****\Desktop\Book 2014-02-16 01:06 - 2013-08-14 18:33 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-16 01:05 - 2013-01-25 19:33 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-15 16:15 - 2014-02-14 17:49 - 00042222 _____ () C:\Users\****\Desktop\Addition.txt 2014-02-15 16:04 - 2014-02-15 16:04 - 00000000 ____D () C:\Users\****\Desktop\Neuer Ordner 2014-02-15 15:46 - 2014-02-15 15:46 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\****\Downloads\mbam-setup- 2014-02-15 15:46 - 2014-02-15 15:46 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Users\****\AppData\Roaming\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-15 15:46 - 2014-02-15 15:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-15 12:22 - 2014-02-15 12:22 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-14 23:39 - 2013-01-25 17:57 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-14 23:39 - 2013-01-25 17:57 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-14 17:50 - 2014-02-14 17:50 - 00000244 _____ () C:\Users\****\Downloads\defogger_enable.log 2014-02-14 17:49 - 2014-02-14 17:49 - 00053299 _____ () C:\Users\****\Desktop\FRST.txt 2014-02-14 17:42 - 2014-02-14 17:42 - 00042774 _____ () C:\Users\****\Downloads\Addition.txt 2014-02-14 17:39 - 2014-02-14 17:39 - 02152960 _____ (Farbar) C:\Users\****\Downloads\FRST64.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00050477 _____ () C:\Users\****\Downloads\Defogger.exe 2014-02-14 17:38 - 2014-02-14 17:38 - 00000472 _____ () C:\Users\****\Downloads\defogger_disable.log 2014-02-14 17:10 - 2014-02-14 17:10 - 00001532 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-02-14 17:10 - 2014-02-14 17:10 - 00001239 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Users\****\AppData\Roaming\DVDVideoSoft 2014-02-14 17:10 - 2014-02-14 17:09 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-02-14 17:07 - 2014-02-14 17:06 - 34008992 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeYouTubeToMP3Converter- 2014-02-14 16:53 - 2014-02-10 22:52 - 00000591 _____ () C:\Users\****\Desktop\Geburtstageinladung.txt 2014-02-14 14:17 - 2014-02-14 14:17 - 00000000 ____D () C:\Users\****\AppData\Local\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 15173224 _____ (Ventis Media Inc. ) C:\Users\****\Downloads\MediaMonkey_4.1.0.1692.exe 2014-02-14 14:16 - 2014-02-14 14:16 - 00001043 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-02-14 14:16 - 2014-02-14 14:16 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-02-14 14:14 - 2014-02-14 14:14 - 07688368 _____ (AIMP DevTeam) C:\Users\****\Downloads\aimp_3.55.1338.exe 2014-02-14 14:14 - 2014-02-14 14:14 - 04411737 _____ () C:\Users\****\Downloads\aimp_se_3.55.602.zip 2014-02-14 14:05 - 2013-03-16 16:26 - 00000000 ____D () C:\Users\****\AppData\Roaming\DAEMON Tools Lite 2014-02-14 14:01 - 2014-02-14 14:00 - 172008924 _____ () C:\Users\****\Downloads\JBG2.rar 2014-02-14 13:56 - 2013-07-16 13:50 - 00000000 ____D () C:\Users\****\Desktop\Spiele 2014-02-14 13:51 - 2013-01-26 10:58 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-02-13 17:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-12 20:14 - 2014-02-12 20:14 - 01751600 _____ (Bandoo Media Inc) C:\Users\****\Downloads\iLividSetup-r139-n-bc.exe 2014-02-11 20:53 - 2013-01-25 17:55 - 00000000 ____D () C:\Users\****\AppData\Local\PMB Files 2014-02-11 19:45 - 2013-01-25 17:55 - 00000000 ____D () C:\ProgramData\PMB Files 2014-02-10 16:16 - 2013-04-21 18:00 - 00000000 ____D () C:\ProgramData\Steam 2014-02-09 22:24 - 2014-02-09 22:24 - 00614792 _____ () C:\Users\****\Downloads\toolittle-tagebuch-2-0.exe 2014-02-09 19:46 - 2014-02-09 19:46 - 00000000 ____D () C:\Users\****\AppData\Local\Daedalic Entertainment GmbH 2014-02-09 16:54 - 2014-02-09 16:54 - 00001043 _____ () C:\Users\Public\Desktop\Blackguards.lnk 2014-02-09 16:53 - 2014-02-09 16:28 - 00000000 ____D () C:\Program Files (x86)\Blackguards 2014-02-07 15:33 - 2014-02-07 15:33 - 30903576 _____ (DVDVideoSoft Ltd. ) C:\Users\****\Downloads\FreeAudioCDBurner2.0.25.1230.exe 2014-02-07 15:03 - 2014-02-07 15:02 - 138166069 _____ () C:\Users\****\Downloads\B_______I______S_____D____.rar 2014-02-06 21:35 - 2014-02-06 21:34 - 115088682 _____ () C:\Users\****\Downloads\E-I(ER)-03-VBR.rar 2014-02-06 13:16 - 2014-02-13 00:38 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 00:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 00:38 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 00:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 00:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 00:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 00:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 00:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 00:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 00:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-13 00:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-13 00:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 00:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 00:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 00:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 00:38 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 00:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 00:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 00:38 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-13 00:38 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-13 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 00:38 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 00:38 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 00:38 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 00:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 00:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 00:38 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-13 00:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-13 00:38 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 00:38 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 00:38 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 00:38 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 00:38 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 00:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 00:38 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 00:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 00:38 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 00:38 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 21:08 - 2013-01-25 17:37 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 21:08 - 2013-01-25 17:37 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 21:08 - 2013-01-25 17:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 17:34 - 2014-02-05 17:34 - 00000000 ____D () C:\ProgramData\CODEX 2014-02-05 17:34 - 2013-03-29 18:47 - 00000000 ____D () C:\Users\****\Documents\Telltale Games 2014-02-05 17:31 - 2014-02-05 17:28 - 00000000 ____D () C:\Program Files (x86)\The Wolf Among Us Episode 2 2014-02-04 13:40 - 2013-01-25 17:58 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-02 18:06 - 2014-02-02 18:06 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175 (1).zip 2014-02-02 17:12 - 2014-02-02 17:12 - 00021656 _____ (Echobit, LLC) C:\Windows\system32\Drivers\evolve.sys 2014-02-02 17:12 - 2014-02-02 17:12 - 00002007 _____ () C:\Users\Public\Desktop\Evolve.lnk 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\ProgramData\Echobit 2014-02-02 17:11 - 2014-02-02 17:11 - 00000000 ____D () C:\Program Files\Echobit 2014-02-02 17:10 - 2014-02-02 17:10 - 00000000 ____D () C:\Users\****\AppData\Local\Echobit 2014-02-02 17:09 - 2014-02-02 17:09 - 01503957 _____ () C:\Users\****\Downloads\evolvesetup_175.zip 2014-02-02 14:58 - 2013-04-02 16:27 - 00000000 ____D () C:\Users\****\Documents\StarCraft II 2014-02-02 14:51 - 2013-04-02 16:27 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-01-30 21:35 - 2013-12-07 18:16 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-01-30 21:35 - 2013-01-26 10:52 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-01-27 19:03 - 2014-01-27 19:03 - 03079028 _____ () C:\Users\****\Downloads\test1.wav 2014-01-23 22:30 - 2013-04-22 17:39 - 00000000 ____D () C:\Users\****\AppData\Roaming\Audacity 2014-01-23 00:32 - 2014-02-09 13:03 - 00000000 ____D () C:\Users\****\Downloads\Blackguards 1.1 2014-01-22 16:54 - 2014-01-22 16:53 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-22 16:54 - 2013-10-30 00:30 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-22 16:54 - 2013-03-12 13:25 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-21 23:03 - 2014-01-21 23:03 - 00000000 ____D () C:\Users\****\AppData\Local\Apple Computer 2014-01-21 23:03 - 2014-01-10 14:55 - 00000000 ____D () C:\Users\****\Documents\Neuer Ordner (5) 2014-01-20 18:31 - 2010-11-21 07:50 - 01478616 _____ () C:\Windows\system32\perfh007.dat 2014-01-20 18:31 - 2010-11-21 07:50 - 00398040 _____ () C:\Windows\system32\perfc007.dat 2014-01-20 18:31 - 2009-07-14 06:13 - 00006356 _____ () C:\Windows\system32\PerfStringBackup.INI Some content of TEMP: ==================== C:\Users\****\AppData\Local\Temp\avgnt.exe C:\Users\****\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 20:28 ==================== End Of Log ============================ --- --- --- --- --- --- FRST Logfile: FRST Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.1 (02.04.2014:1) OS: Windows 7 Home Premium x64 Ran by **** on 19.02.2014 at 13:03:35,90 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Emptied folder: C:\Users\****\AppData\Roaming\mozilla\firefox\profiles\il04gmci.default\minidumps [117 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 19.02.2014 at 13:06:43,15 Computer was rebooted End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ --- --- --- Geändert von Veggie (19.02.2014 um 13:20 Uhr) |
![]() | #10 | |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der SeitenZitat:
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #11 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Nein, ist nicht gewollt.. ![]() |
![]() | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Dann geh mal das hier durch Falsche Proxy Einstellungen entfernen
![]() ![]()
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #13 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten War sowieso nicht angehakt.. Problem besteht aber immer noch.. |
![]() | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten Bitte ein Log mit FSS Downloade dir bitte ![]()
Poste bitte den Inhalt hier.
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #15 |
![]() | ![]() Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der SeitenCode:
ATTFilter Farbar Service Scanner Version: 16-02-2014 Ran by **** (administrator) on 19-02-2014 at 23:15:03 Running from "C:\Users\****\Downloads" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit C:\Windows\System32\dnsrslvr.dll => MD5 is legit C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll => MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\SDRSVC.dll => MD5 is legit C:\Windows\System32\vssvc.exe => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll => MD5 is legit C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\System32\ipnathlp.dll => MD5 is legit C:\Windows\System32\iphlpsvc.dll => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** |
![]() |
Themen zu Zufällig: Fehler : Server nicht gefunden oder inkorrekte Darstellung der Seiten |
aktualisieren, angezeigt, anzeige, browser, darstellung, ellung, erreiche, gefunde, häufiger, komplett, korrekte, layout, problem, pup.optional.bandoo, pup.optional.downloadsponsor, pup.optional.opencandy, pup.optional.softonic.a, sache, seite, seiten, zufällig |