|
Log-Analyse und Auswertung: Fehler URL:Mal...Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
19.02.2014, 20:12 | #1 |
| Fehler URL:Mal... Hi ich hab den Virenschutz von avast und dauernd wird mir folgender Fehler angezeigt und mein Internet geht nicht mehr richtig... Infektion blockiert URL:hxxp://intext.nav-links.com/js/intext.js?afid Infektion: URL:Mal ich hab übrigens windows8 Bräuchte dringend Hilfe! Danke schonmal LG |
20.02.2014, 00:16 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Fehler URL:Mal... Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
20.02.2014, 13:04 | #3 |
| Fehler URL:Mal... Danke für die schnelle Antwort!
__________________ich hab keine Ahnung ob ichs richtig gemacht hab... FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2014 Ran by Franz (administrator) on FRANZ on 20-02-2014 12:57:53 Running from C:\Users\Franziska\AppData\Local\Microsoft\Windows\INetCache\IE\JUDR16AT Windows 8.1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\WINDOWS\system32\atiesrxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Microsoft Corporation) C:\WINDOWS\system32\WLANExt.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\WinZipper\winzipersvc.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Intel(R) Corporation) c:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (AMD) C:\WINDOWS\system32\atieclxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeTray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\LiveComm.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe () C:\Program Files\Synaptics\SynTP\DellTouchpad.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Smartbar) C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Broadcom Corporation.) c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DBRUpd.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6842000 2012-09-25] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1230992 2012-09-28] (Realtek Semiconductor) HKLM\...\Run: [QuickSet] - c:\Program Files\Dell\QuickSet\QuickSet.exe [5757328 2012-10-19] (Dell Inc.) HKLM\...\Run: [IntelTBRunOnce] - wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [11229696 2012-09-18] (Dell Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2918200 2012-09-21] (Synaptics Incorporated) HKLM\...\Run: [DellWPF] - C:\Program Files\Synaptics\SynTP\DellTouchpad.exe [4875576 2012-09-21] () HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-07-09] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-04] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [143888 2012-06-01] (CyberLink Corp.) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-11] (AVAST Software) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-4116135944-3673555675-561583385-1001\...\Run: [BrowserChoice] - C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation) HKU\S-1-5-21-4116135944-3673555675-561583385-1001\...\Run: [Browser Infrastructure Helper] - C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.exe [20760 2013-11-21] (Smartbar) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=b2e6bbcd-c257-b288-c1df-302193e6073b&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=25/01/2014&type=hp1000 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=b2e6bbcd-c257-b288-c1df-302193e6073b&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=25/01/2014&type=hp1000 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} URLSearchHook: HKLM-x32 - (No Name) - {341f4dac-1966-47ff-aacf-0ce175f1498a} - No File URLSearchHook: HKLM-x32 - (No Name) - {e44a1809-4d10-4ab8-b343-3326b64c7cdd} - No File SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} SearchScopes: HKLM - {E9621AF0-03FA-4836-ABAE-B38A1785B3CF} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MDDCJS SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=b2e6bbcd-c257-b288-c1df-302193e6073b&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=25/01/2014&type=hp1000 SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=b2e6bbcd-c257-b288-c1df-302193e6073b&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=25/01/2014&type=hp1000 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} BHO: DP1817 - {11111111-1111-1111-1111-110411721124} - C:\Program Files (x86)\DP1817\DP1817-bho64.dll (mrlmedia) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Yahoo Community Smartbar (by Linkury)Engine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: DP1817 - {11111111-1111-1111-1111-110411721124} - C:\Program Files (x86)\DP1817\DP1817-bho.dll (mrlmedia) BHO-x32: Yahoo Community Smartbar (by Linkury)Engine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\WINDOWS\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - No Name - {341f4dac-1966-47ff-aacf-0ce175f1498a} - No File Toolbar: HKLM-x32 - No Name - {e44a1809-4d10-4ab8-b343-3326b64c7cdd} - No File Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKLM-x32 - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\WINDOWS\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {341F4DAC-1966-47FF-AACF-0CE175F1498A} - No File Toolbar: HKCU - No Name - {E44A1809-4D10-4AB8-B343-3326B64C7CDD} - No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR HomePage: hxxp://www.awesomehp.com/?type=hp&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535 CHR DefaultSearchKeyword: awesomehp CHR DefaultSearchProvider: awesomehp CHR DefaultSearchURL: hxxp://www.awesomehp.com/web/?type=ds&ts=1392834857&from=vtt&uid=WDCXWD10JPVT-75A1YT0_WX31AB2H1535AB2H1535&q={searchTerms} CHR Extension: (Google Docs) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-02] CHR Extension: (Google Drive) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-02] CHR Extension: (YouTube) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-02] CHR Extension: (Extended Protection) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml [2014-02-19] CHR Extension: (Google-Suche) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-02] CHR Extension: (Google Wallet) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-02] CHR Extension: (Google Mail) - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-02] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-11-09] CHR HKLM-x32\...\Chrome\Extension: [pkndmigholgfjlniaohblojbhgjbkakn] - C:\Users\Franziska\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-02-19] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-11] (AVAST Software) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.) R2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [491688 2013-12-30] (Elex do Brasil Participações Ltda) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-25] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201360 2012-09-01] (Realtek Semiconductor) R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1915480 2013-05-23] (SoftThinks SAS) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [424104 2014-02-19] (Taiwan Shui Mu Chih Ching Technology Limited.) R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6334464 2012-09-18] (Dell Inc.) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [78648 2014-02-11] (AVAST Software) R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [92544 2013-11-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-11-09] () R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [1038072 2014-02-11] (AVAST Software) R1 aswSP; C:\windows\system32\drivers\aswSP.sys [421704 2014-02-11] (AVAST Software) R3 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [80184 2014-02-11] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-02] () R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6834760 2012-09-13] (Broadcom Corporation) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2012-08-05] (OSR Open Systems Resources, Inc.) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [196440 2012-04-20] (McAfee, Inc.) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) R3 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [219648 2013-12-30] (Elex do Brasil Participações Ltda) R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [44032 2013-12-30] (Elex do Brasil Participações Ltda) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106552 2013-02-19] (McAfee, Inc.) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-09-21] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-09-21] (Synaptics Incorporated) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-20 12:57 - 2014-02-20 12:57 - 00000000 ____D () C:\FRST 2014-02-19 20:59 - 2014-02-19 20:59 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-19 20:59 - 2014-02-19 20:59 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-02-19 20:58 - 2014-02-19 20:58 - 640857219 _____ () C:\WINDOWS\MEMORY.DMP 2014-02-19 20:58 - 2014-02-19 20:58 - 00002282 _____ () C:\WINDOWS\PFRO.log 2014-02-19 19:41 - 2014-02-19 21:02 - 00000000 ____D () C:\Program Files (x86)\iSafe 2014-02-19 19:41 - 2014-02-19 20:31 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\iSafe 2014-02-19 19:41 - 2014-02-19 19:41 - 00001794 _____ () C:\Users\Public\Desktop\YAC.lnk 2014-02-19 19:41 - 2014-02-19 19:41 - 00000000 ____D () C:\WINDOWS\system32\log 2014-02-19 19:40 - 2014-02-19 21:02 - 00000000 ____D () C:\Program Files (x86)\WinZipper 2014-02-19 19:40 - 2014-02-19 19:40 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\WinZipper 2014-02-19 19:38 - 2014-02-20 12:47 - 00001212 _____ () C:\WINDOWS\Tasks\DP1817-codedownloader.job 2014-02-19 19:38 - 2014-02-20 12:47 - 00001112 _____ () C:\WINDOWS\Tasks\DP1817-enabler.job 2014-02-19 19:38 - 2014-02-19 19:38 - 00004216 _____ () C:\WINDOWS\System32\Tasks\DP1817-codedownloader 2014-02-19 19:38 - 2014-02-19 19:38 - 00004116 _____ () C:\WINDOWS\System32\Tasks\DP1817-enabler 2014-02-19 19:37 - 2014-02-20 12:47 - 00001982 _____ () C:\WINDOWS\Tasks\DP1817-firefoxinstaller.job 2014-02-19 19:37 - 2014-02-19 19:38 - 00000000 ____D () C:\Program Files (x86)\DP1817 2014-02-19 19:36 - 2014-02-19 19:41 - 00000000 ____D () C:\Users\Franziska\AppData\Local\WeatherAlerts 2014-02-19 19:35 - 2014-02-19 19:55 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 19:35 - 2014-02-19 19:54 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-19 19:35 - 2014-02-19 19:50 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-19 19:35 - 2014-02-19 19:40 - 00000000 ____D () C:\Program Files (x86)\Desk 365 2014-02-19 19:35 - 2014-02-19 19:35 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\SupTab 2014-02-19 19:35 - 2014-02-19 19:35 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\Desk 365 2014-02-19 19:34 - 2014-02-19 19:40 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\awesomehp 2014-02-16 10:22 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-02-16 10:22 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-02-16 10:22 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2014-02-16 10:22 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-02-16 10:22 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-02-16 10:22 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2014-02-16 10:22 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys 2014-02-16 10:22 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-02-16 10:22 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll 2014-02-16 10:22 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-02-16 10:22 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll 2014-02-16 10:22 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2014-02-16 10:22 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-02-16 10:22 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2014-02-16 10:22 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-02-16 10:22 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2014-02-16 10:22 - 2013-11-27 05:01 - 00385614 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-02-16 10:22 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2014-02-16 10:22 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-02-16 10:22 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-02-16 10:22 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-02-16 10:22 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2014-02-16 10:22 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-02-16 10:22 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-02-16 10:22 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-02-16 10:22 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-02-16 10:22 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-02-16 10:22 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-02-16 10:22 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2014-02-16 10:22 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2014-02-16 10:22 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2014-02-16 10:22 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-02-16 10:22 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-02-16 10:22 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-02-16 10:22 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll 2014-02-16 10:22 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys 2014-02-16 10:22 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-02-16 10:22 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-02-16 10:22 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2014-02-16 10:22 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-02-16 10:22 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2014-02-16 10:22 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-02-16 10:22 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-02-16 10:22 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-02-16 10:22 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll 2014-02-16 10:22 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-02-16 10:22 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-02-16 10:22 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-02-16 10:22 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2014-02-16 10:22 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2014-02-16 10:22 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-02-16 10:22 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-02-16 10:22 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-02-16 10:22 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-02-16 10:22 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-02-15 20:30 - 2014-02-20 12:47 - 00000000 __RDO () C:\Users\Franziska\SkyDrive 2014-02-13 17:10 - 2014-02-13 17:10 - 00000000 ____D () C:\Users\Franziska\Desktop\me 2014-02-12 16:39 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-02-12 16:39 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-02-12 16:39 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-02-12 16:39 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-02-12 16:39 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-02-12 16:39 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-02-12 16:39 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-02-12 16:39 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-12 16:39 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-12 16:39 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-12 16:39 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms 2014-02-12 16:38 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-02-12 16:38 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-12 16:38 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-02-12 16:38 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-02-12 16:38 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-02-12 16:38 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-02-12 16:38 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-12 16:38 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-12 16:38 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-02-12 16:37 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-02-12 16:37 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-12 16:31 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2014-02-12 16:31 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-12 16:31 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-02-12 16:31 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-12 14:48 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-12 14:48 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-12 14:48 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-12 14:48 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-12 14:48 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-12 14:48 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-12 14:48 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-12 14:48 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-12 14:48 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-12 14:48 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-12 14:48 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-12 14:48 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-12 14:48 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-12 14:48 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-12 14:48 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-12 14:48 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-12 14:48 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-12 14:48 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-12 14:48 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-12 14:48 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-12 14:48 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-12 14:48 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-12 14:48 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-12 14:48 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-12 14:48 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-12 14:48 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-12 14:48 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-12 14:48 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-12 14:48 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-12 14:48 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-12 14:48 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-12 14:48 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-12 14:48 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-12 14:48 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-12 14:48 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-12 14:48 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-12 14:48 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-12 14:44 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-02-12 14:44 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-12 14:44 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-02-12 14:44 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-12 14:44 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-02-12 14:44 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-12 14:37 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-02-12 14:37 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-02-12 14:29 - 2014-02-20 12:48 - 00002197 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-09 00:35 - 2014-02-09 00:35 - 00001797 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files\iTunes 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files\iPod 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-09 00:35 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys 2014-02-05 16:36 - 2014-02-05 16:39 - 00009214 _____ () C:\Users\Franziska\Documents\london tabelle.xlsx 2014-02-02 11:55 - 2014-02-02 11:55 - 00000165 ____H () C:\Users\Franziska\Documents\~$Das politische System der USA.pptx 2014-01-26 15:44 - 2014-02-01 17:21 - 00017198 ____H () C:\Users\Franziska\Documents\~WRL0003.tmp 2014-01-26 11:47 - 2014-01-26 11:47 - 00002770 _____ () C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2014-01-25 17:36 - 2014-02-19 19:41 - 00002383 _____ () C:\Users\Franziska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2014-01-25 17:36 - 2014-01-25 17:37 - 00000000 ____D () C:\Users\Franziska\AppData\Local\Smartbar 2014-01-25 17:34 - 2014-01-25 17:34 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\TuneUp Software 2014-01-25 17:34 - 2014-01-25 17:34 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-01-25 17:34 - 2013-08-30 09:51 - 00040760 _____ (TuneUp Software) C:\WINDOWS\system32\TURegOpt.exe 2014-01-25 17:34 - 2013-08-30 09:51 - 00029496 _____ (TuneUp Software) C:\WINDOWS\system32\authuitu.dll 2014-01-25 17:34 - 2013-08-30 09:51 - 00025400 _____ (TuneUp Software) C:\WINDOWS\SysWOW64\authuitu.dll 2014-01-25 17:33 - 2014-02-07 17:12 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-01-25 17:33 - 2014-01-26 11:48 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-01-25 17:27 - 2014-01-25 17:27 - 00001550 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-01-25 17:27 - 2014-01-25 17:27 - 00001257 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk ==================== One Month Modified Files and Folders ======= 2014-02-20 12:57 - 2014-02-20 12:57 - 00000000 ____D () C:\FRST 2014-02-20 12:54 - 2013-11-16 11:17 - 00000000 ____D () C:\WINDOWS\Minidump 2014-02-20 12:52 - 2013-03-11 16:29 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4116135944-3673555675-561583385-1001 2014-02-20 12:52 - 2013-02-01 03:56 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery 2014-02-20 12:49 - 2013-11-13 00:38 - 00003918 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5500D6D2-B749-42F7-BB74-1F07E9B72A65} 2014-02-20 12:48 - 2014-02-12 14:29 - 00002197 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-20 12:47 - 2014-02-19 19:38 - 00001212 _____ () C:\WINDOWS\Tasks\DP1817-codedownloader.job 2014-02-20 12:47 - 2014-02-19 19:38 - 00001112 _____ () C:\WINDOWS\Tasks\DP1817-enabler.job 2014-02-20 12:47 - 2014-02-19 19:37 - 00001982 _____ () C:\WINDOWS\Tasks\DP1817-firefoxinstaller.job 2014-02-20 12:47 - 2014-02-15 20:30 - 00000000 __RDO () C:\Users\Franziska\SkyDrive 2014-02-20 12:47 - 2014-01-02 13:53 - 00001116 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-20 12:45 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-02-19 21:08 - 2014-01-02 13:53 - 00001120 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-19 21:03 - 2013-09-30 05:14 - 01780340 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-19 21:03 - 2013-09-30 04:56 - 00766620 _____ () C:\WINDOWS\system32\perfh007.dat 2014-02-19 21:03 - 2013-09-30 04:56 - 00159902 _____ () C:\WINDOWS\system32\perfc007.dat 2014-02-19 21:02 - 2014-02-19 19:41 - 00000000 ____D () C:\Program Files (x86)\iSafe 2014-02-19 21:02 - 2014-02-19 19:40 - 00000000 ____D () C:\Program Files (x86)\WinZipper 2014-02-19 20:59 - 2014-02-19 20:59 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-19 20:59 - 2014-02-19 20:59 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-02-19 20:59 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-19 20:58 - 2014-02-19 20:58 - 640857219 _____ () C:\WINDOWS\MEMORY.DMP 2014-02-19 20:58 - 2014-02-19 20:58 - 00002282 _____ () C:\WINDOWS\PFRO.log 2014-02-19 20:52 - 2013-11-12 18:41 - 00000000 ____D () C:\Users\Franziska 2014-02-19 20:31 - 2014-02-19 19:41 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\iSafe 2014-02-19 19:55 - 2014-02-19 19:35 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 19:54 - 2014-02-19 19:35 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-19 19:50 - 2014-02-19 19:35 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-19 19:41 - 2014-02-19 19:41 - 00001794 _____ () C:\Users\Public\Desktop\YAC.lnk 2014-02-19 19:41 - 2014-02-19 19:41 - 00000000 ____D () C:\WINDOWS\system32\log 2014-02-19 19:41 - 2014-02-19 19:36 - 00000000 ____D () C:\Users\Franziska\AppData\Local\WeatherAlerts 2014-02-19 19:41 - 2014-01-25 17:36 - 00002383 _____ () C:\Users\Franziska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2014-02-19 19:41 - 2013-11-13 00:35 - 00001670 _____ () C:\Users\Franziska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-19 19:41 - 2013-03-11 16:23 - 00000000 ___RD () C:\Users\Franziska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-19 19:40 - 2014-02-19 19:40 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\WinZipper 2014-02-19 19:40 - 2014-02-19 19:35 - 00000000 ____D () C:\Program Files (x86)\Desk 365 2014-02-19 19:40 - 2014-02-19 19:34 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\awesomehp 2014-02-19 19:38 - 2014-02-19 19:38 - 00004216 _____ () C:\WINDOWS\System32\Tasks\DP1817-codedownloader 2014-02-19 19:38 - 2014-02-19 19:38 - 00004116 _____ () C:\WINDOWS\System32\Tasks\DP1817-enabler 2014-02-19 19:38 - 2014-02-19 19:37 - 00000000 ____D () C:\Program Files (x86)\DP1817 2014-02-19 19:35 - 2014-02-19 19:35 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\SupTab 2014-02-19 19:35 - 2014-02-19 19:35 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\Desk 365 2014-02-18 21:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-02-18 14:32 - 2013-11-09 11:39 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update 2014-02-17 19:13 - 2013-11-28 14:43 - 00000072 _____ () C:\Users\Public\LMDebug.log 2014-02-17 17:11 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-02-17 16:49 - 2013-08-14 14:28 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-17 16:47 - 2013-03-12 16:49 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-17 14:30 - 2013-03-11 16:23 - 00000000 ___RD () C:\Users\Franziska\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-17 14:16 - 2013-08-22 15:44 - 00483792 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-02-17 14:15 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2014-02-17 14:14 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-02-17 14:14 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-02-17 14:14 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-02-16 10:03 - 2014-01-02 13:53 - 00004092 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-16 10:03 - 2014-01-02 13:53 - 00003856 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-15 20:30 - 2013-11-15 18:06 - 00000000 __RDO () C:\Users\Franziska\SkyDrive (2).old 2014-02-13 17:10 - 2014-02-13 17:10 - 00000000 ____D () C:\Users\Franziska\Desktop\me 2014-02-13 00:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-02-13 00:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-02-13 00:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-02-12 14:29 - 2014-01-02 13:53 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-11 19:34 - 2014-01-02 09:03 - 00080184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys 2014-02-11 19:34 - 2013-11-09 11:39 - 01038072 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2014-02-11 19:34 - 2013-11-09 11:39 - 00421704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2014-02-11 19:34 - 2013-11-09 11:39 - 00334136 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2014-02-11 19:34 - 2013-11-09 11:39 - 00078648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2014-02-11 19:34 - 2013-11-09 11:39 - 00001984 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-02-11 19:34 - 2013-11-09 11:38 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2014-02-09 00:35 - 2014-02-09 00:35 - 00001797 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files\iTunes 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files\iPod 2014-02-09 00:35 - 2014-02-09 00:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-09 00:35 - 2013-03-11 16:34 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-07 17:12 - 2014-01-25 17:33 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-02-06 13:16 - 2014-02-12 14:48 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-12 14:48 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-12 14:48 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-12 14:48 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-12 14:48 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-12 14:48 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-12 14:48 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-12 14:48 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-06 11:49 - 2014-02-12 14:48 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-12 14:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-12 14:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-12 14:48 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-12 14:48 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-12 14:48 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-12 14:48 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-06 11:11 - 2014-02-12 14:48 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-12 14:48 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-12 14:48 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-12 14:48 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-12 14:48 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-12 14:48 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-12 14:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-12 14:48 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 10:47 - 2014-02-12 14:48 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-12 14:48 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-12 14:48 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-12 14:48 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-12 14:48 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 10:22 - 2014-02-12 14:48 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-12 14:48 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-12 14:48 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-12 14:48 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-12 14:48 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-12 14:48 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-12 14:48 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-12 14:48 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-12 14:48 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-05 20:14 - 2014-01-17 15:43 - 00767294 _____ () C:\Users\Franziska\Documents\Das politische System der USA.pptx 2014-02-05 16:39 - 2014-02-05 16:36 - 00009214 _____ () C:\Users\Franziska\Documents\london tabelle.xlsx 2014-02-04 15:56 - 2013-03-11 16:20 - 00000000 ____D () C:\Users\Franziska\AppData\Local\Packages 2014-02-02 11:55 - 2014-02-02 11:55 - 00000165 ____H () C:\Users\Franziska\Documents\~$Das politische System der USA.pptx 2014-02-01 17:21 - 2014-01-26 15:44 - 00017198 ____H () C:\Users\Franziska\Documents\~WRL0003.tmp 2014-01-30 21:47 - 2013-11-14 17:01 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-30 21:47 - 2013-11-14 17:01 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-26 11:48 - 2014-01-25 17:33 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-01-26 11:47 - 2014-01-26 11:47 - 00002770 _____ () C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2014-01-25 18:01 - 2013-03-11 16:20 - 00000000 ____D () C:\Users\Franziska\AppData\Local\VirtualStore 2014-01-25 17:37 - 2014-01-25 17:36 - 00000000 ____D () C:\Users\Franziska\AppData\Local\Smartbar 2014-01-25 17:34 - 2014-01-25 17:34 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\TuneUp Software 2014-01-25 17:34 - 2014-01-25 17:34 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-01-25 17:27 - 2014-01-25 17:27 - 00001550 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk 2014-01-25 17:27 - 2014-01-25 17:27 - 00001257 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-01-25 17:27 - 2013-03-11 16:34 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\OpenCandy 2014-01-25 17:27 - 2013-03-11 16:34 - 00000000 ____D () C:\Users\Franziska\AppData\Roaming\DVDVideoSoft 2014-01-25 17:27 - 2013-03-11 16:34 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-01-23 18:28 - 2013-10-06 18:28 - 00000000 ____D () C:\Users\Franziska\Desktop\Oma KArte 2014-01-23 18:26 - 2013-03-11 16:33 - 00000000 ____D () C:\ProgramData\Apple ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-19 21:09 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-02-2014 Ran by Franz at 2014-02-20 12:58:35 Running from C:\Users\Franziska\AppData\Local\Microsoft\Windows\INetCache\IE\JUDR16AT Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== Amazon Browser App (x32 Version: 1.0.0.0 - Amazon) AMD Accelerated Video Transcoding (Version: 12.5.100.20806 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) Apple Application Support (x32 Version: 3.0 - Apple Inc.) Apple Mobile Device Support (Version: 7.1.0.32 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) avast! Free Antivirus (x32 Version: 9.0.2013 - Avast Software) Bonjour (Version: 3.0.0.10 - Apple Inc.) Canon Utilities Digital Photo Professional 3.11 (x32 Version: 3.11.30.3 - Canon Inc.) Canon Utilities EOS Sample Music (x32 Version: 1.0.1.1 - Canon Inc.) Canon Utilities EOS Utility (x32 Version: 2.11.3.0 - Canon Inc.) Canon Utilities ImageBrowser EX (x32 Version: 1.3.0.5 - Canon Inc.) Canon Utilities PhotoStitch (x32 Version: 3.1.23.47 - Canon Inc.) Canon Utilities Picture Style Editor (x32 Version: 1.10.2.0 - Canon Inc.) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.0806.1156.19437 - Ihr Firmenname) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden CCleaner (Version: 4.07 - Piriform) CyberLink LabelPrint 2.5 (x32 Version: 2.5.5415a - CyberLink Corp.) Hidden CyberLink Media Suite 10 (x32 Version: 10.0.1.1913 - CyberLink Corp.) Hidden CyberLink Media Suite Essentials (x32 Version: 10.0 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.0.1904 - CyberLink Corp.) Hidden CyberLink PowerDirector 10 (x32 Version: 10.0.1.1904 - CyberLink Corp.) Hidden CyberLink PowerDVD 10 (x32 Version: 10.0.4318.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell Backup and Recovery - Support Software (x32 Version: 1.5.0.0 - Dell Inc.) Dell Backup and Recovery (x32 Version: 1.5.0.0 - Dell Inc.) Dell Touchpad (Version: 16.2.12.17 - Synaptics Incorporated) Die*Sims™*3 (x32 Version: 1.0.631 - Electronic Arts) DP1817 (x32 Version: 1.32.153.0 - mrlmedia) <==== ATTENTION DW WLAN Card Utility (Version: 6.30.59.74 - Dell Inc.) entrusted Toolbar (x32 Version: 6.11.2.6 - entrusted) <==== ATTENTION Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version 3.12.20.1230 (x32 Version: 3.12.20.1230 - DVDVideoSoft Ltd.) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Toolbar for Internet Explorer (x32 Version: 7.5.4805.320 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden iCloud (Version: 3.1.0.40 - Apple Inc.) Instagrille Toolbar (x32 Version: 6.11.2.6 - Instagrille) Intel(R) Control Center (x32 Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 10.18.10.3316 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden iTunes (Version: 11.1.4.62 - Apple Inc.) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 365 Home Premium - de-de (Version: 15.0.4551.1512 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SkyDrive (HKCU Version: 17.0.2003.1112 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden My Dell (Version: 3.4.6422.14 - PC-Doctor, Inc.) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Origin (x32 Version: 8.4.1.210 - Electronic Arts, Inc.) Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PowerXpressHybrid (x32 Version: 1.00.0000 - Ihr Firmenname) Hidden PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Quickset64 (Version: 10.15.012 - Dell Inc.) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6741 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (x32 Version: 6.1.8400.39030 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (Version: 10.0.0 - McAfee) TIPP10 Version 2.1.0 (x32 Version: - (c) 2006-2011, Tom Thielicke IT Solutions) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden TuneUp Utilities 2014 (x32 Version: 14.0.1000.89 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden Überwachungstool für die Intel® Turbo-Boost-Technik 2.6 (Version: 2.6.2.0 - Intel) WIDCOMM Bluetooth Software (Version: 12.0.0.3900 - Broadcom Corporation) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinZipper (x32 Version: 1.4.8 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION YAC (x32 Version: - ELEX DO BRASIL PARTICIPAÇÕES LTDA) Yahoo Community Smartbar (x32 Version: 10.179.66.13636 - Linkury Inc.) <==== ATTENTION Yahoo Community Smartbar Engine (HKCU Version: 10.179.66.13636 - Linkury Inc.) <==== ATTENTION ==================== Restore Points ========================= 05-02-2014 14:22:26 Windows Update 08-02-2014 23:23:44 Removed iTunes 11-02-2014 18:32:28 avast! antivirus system restore point 16-02-2014 17:51:33 Windows Update ==================== Hosts content: ========================== 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0F1CADA0-B85E-451E-AB25-8A054DB9E181} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-01-15] (Microsoft Corporation) Task: {0FF1ABAF-6C9B-43B7-A157-4EE3D4FE52C9} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation) Task: {1B50F755-837B-4682-A065-8184394D6149} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION Task: {204C948B-DAB3-41DA-B109-0C8C3868DDA7} - System32\Tasks\DP1817-codedownloader => C:\Program Files (x86)\DP1817\DP1817-codedownloader.exe [2014-02-19] (mrlmedia) <==== ATTENTION Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {20D0535C-A829-4EAA-9B72-0F57F9F2B70F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.) Task: {20F4D0FF-C387-4E6B-A7B5-B069FF06DF58} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {40D39706-DD45-4C8B-9F75-C3D62CC7ACA5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {4442B399-9046-4ECE-931A-C01771491853} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-02] (Google Inc.) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {5031315D-7D8D-4268-89CA-D4C892749D71} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-08-30] (TuneUp Software) Task: {67C7B751-F3E7-467D-9478-ABBF21657FDE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-02-17] (Microsoft Corporation) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {852F83D2-C548-41E8-9F38-4D79C12CD6E3} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2013-12-07] (PC-Doctor, Inc.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {93AF7AB4-1274-44D2-BDBC-85163149CA39} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-02-11] (AVAST Software) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {AFBD9961-496A-4679-BADE-F6ABE565AE0B} - System32\Tasks\DP1817-enabler => C:\Program Files (x86)\DP1817\DP1817-enabler.exe [2014-02-19] (mrlmedia) <==== ATTENTION Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {ECCBB3E1-0E50-4B8A-AA9E-C9BCAA9B4331} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2013-09-06] (PC-Doctor, Inc.) Task: {EFEA3C74-77DA-4977-934D-89886C45C1FD} - System32\Tasks\DP1817-firefoxinstaller => C:\Program Files (x86)\DP1817\DP1817-firefoxinstaller.exe [2014-02-19] (mrlmedia) <==== ATTENTION Task: C:\WINDOWS\Tasks\DP1817-codedownloader.job => C:\Program Files (x86)\DP1817\DP1817-codedownloader.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DP1817-enabler.job => C:\Program Files (x86)\DP1817\DP1817-enabler.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DP1817-firefoxinstaller.job => C:\Program Files (x86)\DP1817\DP1817-firefoxinstaller.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (whitelisted) ============= 2011-06-21 07:42 - 2011-06-21 07:42 - 00034304 _____ () C:\WINDOWS\System32\sst3cl6.dll 2012-10-29 19:00 - 2012-10-29 19:00 - 00047480 _____ () c:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll 2013-03-11 16:31 - 2013-08-23 14:45 - 00386216 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll 2013-03-11 16:31 - 2013-10-31 09:08 - 00520872 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll 2013-03-11 16:31 - 2013-10-31 09:07 - 00618152 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll 2013-02-01 03:51 - 2012-04-25 03:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2013-08-30 09:51 - 2013-08-30 09:51 - 00757048 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2013-11-20 13:14 - 2013-11-20 13:15 - 00183808 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\ErrorReporting.dll 2013-10-03 23:42 - 2013-10-03 23:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-02-01 11:35 - 2012-09-21 01:40 - 04875576 _____ () C:\Program Files\Synaptics\SynTP\DellTouchpad.exe 2013-08-10 09:22 - 2013-05-15 09:10 - 00069120 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe 2013-07-06 17:09 - 2013-04-19 23:51 - 00023328 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe 2013-07-06 17:09 - 2013-04-19 23:52 - 00049440 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\STCommonShellIntegration.dll 2014-02-18 15:40 - 2014-02-18 14:58 - 02181120 _____ () C:\Program Files\AVAST Software\Avast\defs\14021801\algo.dll 2014-02-19 19:40 - 2014-02-19 19:40 - 00612520 _____ () C:\Program Files (x86)\WinZipper\sqlite3.dll 2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-02-13 15:54 - 2014-02-13 15:54 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\1df9802ff26ff010ffa8c9346f4974df\PSIClient.ni.dll 2013-02-01 03:40 - 2012-06-25 19:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-02-19 19:41 - 2013-12-30 11:21 - 00185000 _____ () C:\Program Files (x86)\iSafe\libpng.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00034072 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00062232 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\srau.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00149784 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00111896 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 02056984 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00055064 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\spbl.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00012568 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\siem.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00048408 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\sppsm.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00727320 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00081688 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00013592 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00016664 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00030488 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\srut.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00019736 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\srsbs.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00057112 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00014104 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\srpdm.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00013592 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\sgml.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00052504 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll 2013-11-21 09:48 - 2013-11-21 09:48 - 00047384 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\MACTrackBarLib.dll 2013-11-21 09:48 - 2013-11-21 09:48 - 00025368 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\de\Smartbar.Resources.LanguageSettings.resources.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00024856 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll 2013-11-21 09:49 - 2013-11-21 09:49 - 00248088 _____ () C:\Users\Franziska\AppData\Local\Smartbar\Application\srns.dll 2013-08-10 09:22 - 2013-05-15 09:05 - 00112128 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll 2013-02-01 03:49 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2013-11-09 11:38 - 2013-11-09 11:38 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-07-06 17:09 - 2013-05-03 00:01 - 01813792 _____ () C:\Program Files (x86)\Dell Backup and Recovery\OLCoreWrapper.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Franziska\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Franziska\SkyDrive (2).old:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/20/2014 00:58:53 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d45fa Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e2fd8 ID des fehlerhaften Prozesses: 0x180c Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/20/2014 00:53:47 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: DP1817-bho.dll, Version: 1.0.0.1, Zeitstempel: 0x52a4a373 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00003c79 ID des fehlerhaften Prozesses: 0x1d10 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/20/2014 00:51:28 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d45fa Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e2fd8 ID des fehlerhaften Prozesses: 0x10f4 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/20/2014 00:50:16 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d45fa Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e2fd8 ID des fehlerhaften Prozesses: 0x1704 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:59:08 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: DP1817-bho.dll_unloaded, Version: 1.0.0.1, Zeitstempel: 0x52a4a373 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000683db ID des fehlerhaften Prozesses: 0x560c Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:58:39 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d45fa Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e2fd8 ID des fehlerhaften Prozesses: 0x4fd0 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:57:00 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: DP1817-bho.dll, Version: 1.0.0.1, Zeitstempel: 0x52a4a373 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00043d5a ID des fehlerhaften Prozesses: 0x3ccc Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:55:58 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d45fa Ausnahmecode: 0xc0000374 Fehleroffset: 0x000e2fd8 ID des fehlerhaften Prozesses: 0x4134 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:53:56 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: DP1817-bho.dll_unloaded, Version: 1.0.0.1, Zeitstempel: 0x52a4a373 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00068f18 ID des fehlerhaften Prozesses: 0x3f8 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 Error: (02/19/2014 07:53:56 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.16518, Zeitstempel: 0x52f347b2 Name des fehlerhaften Moduls: DP1817-bho.dll_unloaded, Version: 1.0.0.1, Zeitstempel: 0x52a4a373 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00068f18 ID des fehlerhaften Prozesses: 0x2a74 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5 System errors: ============= Error: (02/20/2014 00:53:02 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (02/20/2014 00:53:02 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (02/20/2014 00:48:43 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/20/2014 00:47:32 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst SftService erreicht. Error: (02/19/2014 08:58:57 PM) (Source: BugCheck) (User: ) Description: 0x0000009f (0x0000000000000004, 0x000000000000012c, 0xffffe000096ae040, 0xfffff800475e5860)C:\WINDOWS\MEMORY.DMP021914-20453-01 Error: (02/19/2014 07:49:55 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10. Error: (02/19/2014 07:49:54 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10. Error: (02/19/2014 07:49:54 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10. Error: (02/19/2014 01:02:07 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (02/19/2014 01:02:07 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Microsoft Office Sessions: ========================= Error: (02/20/2014 00:58:53 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2ntdll.dll6.3.9600.16408523d45fac0000374000e2fd8180c01cf2e31c90f6cebC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\ntdll.dll5d910952-9a26-11e3-bf37-9c2a70bd97c6 Error: (02/20/2014 00:53:47 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2DP1817-bho.dll1.0.0.152a4a373c000000500003c791d1001cf2e322eaf14ecC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Program Files (x86)\DP1817\DP1817-bho.dlla7864375-9a25-11e3-bf37-9c2a70bd97c6 Error: (02/20/2014 00:51:28 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2ntdll.dll6.3.9600.16408523d45fac0000374000e2fd810f401cf2e31ed34dd32C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\ntdll.dll54beaf21-9a25-11e3-bf37-9c2a70bd97c6 Error: (02/20/2014 00:50:16 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2ntdll.dll6.3.9600.16408523d45fac0000374000e2fd8170401cf2e31cec528ebC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\ntdll.dll296d612c-9a25-11e3-bf37-9c2a70bd97c6 Error: (02/19/2014 07:59:08 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2DP1817-bho.dll_unloaded1.0.0.152a4a373c0000005000683db560c01cf2da4a9853e4bC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEDP1817-bho.dlle892c401-9997-11e3-bf36-9c2a70bd97c6 Error: (02/19/2014 07:58:39 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2ntdll.dll6.3.9600.16408523d45fac0000374000e2fd84fd001cf2da460004877C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\ntdll.dlld7bb7d5f-9997-11e3-bf36-9c2a70bd97c6 Error: (02/19/2014 07:57:00 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2DP1817-bho.dll1.0.0.152a4a373c000000500043d5a3ccc01cf2da4544c63baC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Program Files (x86)\DP1817\DP1817-bho.dll9c936509-9997-11e3-bf36-9c2a70bd97c6 Error: (02/19/2014 07:55:58 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2ntdll.dll6.3.9600.16408523d45fac0000374000e2fd8413401cf2da4291887a3C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\ntdll.dll7787f686-9997-11e3-bf36-9c2a70bd97c6 Error: (02/19/2014 07:53:56 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2DP1817-bho.dll_unloaded1.0.0.152a4a373c000000500068f183f801cf2da3adfa8a44C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEDP1817-bho.dll2e8d738a-9997-11e3-bf36-9c2a70bd97c6 Error: (02/19/2014 07:53:56 PM) (Source: Application Error)(User: ) Description: IEXPLORE.EXE11.0.9600.1651852f347b2DP1817-bho.dll_unloaded1.0.0.152a4a373c000000500068f182a7401cf2da3cfcb777cC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEDP1817-bho.dll2e8d4c7a-9997-11e3-bf36-9c2a70bd97c6 ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 8061.27 MB Available physical RAM: 5810.05 MB Total Pagefile: 16253.27 MB Available Pagefile: 13870.25 MB Total Virtual: 131072 MB Available Virtual: 131071.78 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:916.88 GB) (Free:824.49 GB) NTFS Drive y: (WINRETOOLS) (Fixed) (Total:0.49 GB) (Free:0.2 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 15C10E01) Partition: GPT Partition Type ==================== End Of Log ============================ |
20.02.2014, 16:24 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Fehler URL:Mal... Wasist mit meiner Frage nach bisherigen Funden, oder gab es noch nie welche?
__________________ Logfiles bitte immer in CODE-Tags posten |
22.02.2014, 10:56 | #5 |
| Fehler URL:Mal... nein eig nix mehr gefunden |
22.02.2014, 13:15 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Fehler URL:Mal... Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ --> Fehler URL:Mal... |
22.02.2014, 17:14 | #7 |
| Fehler URL:Mal... Kann das nicht laden weil bei 98% stoppts immer wieder... |
22.02.2014, 17:31 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Fehler URL:Mal... Rechner neu starten nochmal probieren
__________________ Logfiles bitte immer in CODE-Tags posten |
25.02.2014, 16:41 | #9 |
| Fehler URL:Mal...Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.07.0.1009 www.malwarebytes.org Database version: v2013.10.02.12 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16518 Franz :: FRANZ [administrator] 25.02.2014 16:23:07 mbar-log-2014-02-25 (16-23-07).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 239501 Time elapsed: 14 minute(s), 31 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
25.02.2014, 23:48 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Fehler URL:Mal... Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Fehler URL:Mal... |
angezeigt, avast, awesomehp, awesomehp entfernen, dauernd, dringend, fehler, fehlercode 0xc0000005, fehlercode 0xc0000374, fehlercode 10, fehlercode 40., folge, folgender, geht nicht, geht nicht mehr, hilfe, inter, interne, internet, internet geht nicht, nicht mehr, schutz, url:mal, virenschutz, windows |